
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Windows Script Host
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Windows Script Host
Dobrý den,
cca týden mám problém s chybovým hlášením windows script host. Odkazuje na soubor, který nebyl nalezen. Obrázek přiložen. Prosím o radu. Děkuji !
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vladimír Škrna at 2015-08-02 14:36:18
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 605 GB (86%) free of 703 GB
Total RAM: 4095 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:36:25, on 2.8.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17910)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe
C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE
C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\CNYHKEY.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\AVG\AVG2015\avgui.exe
C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe
C:\Windows\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Vladimír Škrna.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: 0.0.0.1 mssplus.mcafee.com
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.7.0.147\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HP KEYBOARDx] "C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE"
O4 - HKLM\..\Run: [BATINDICATOR] C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe
O4 - HKLM\..\Run: [LaunchHPOSIAPP] C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\LaunchApp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrHelp] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} - http://dlm.tools.akamai.com/dlmanager/v ... .2.6.0.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.7.0\ViProtocol.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater18.7.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11649 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
c:\PROGRA~2\AVG\AVG2015\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-8be5-01658ec6d84f /binaryPath="C:\Program Files (x86)\AVG\AVG2015\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {F1DD80F4-E8D0-48BF-B020-AB85BBFC0916}
"C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgfws.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe"
"c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\loggingserver.exe" 72648 "C:\ProgramData\AVG Secure Search\Logger\logger.properties"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
\??\C:\Windows\system32\conhost.exe "-286110113-422627231749742059-1322996727239143129-1788402903191161855748767492
"C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe"
"C:\Program Files\Microsoft IntelliType Pro\itype.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgemca.exe"
"C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
WLIDSvcM.exe 2600
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE"
"C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
-BootProc
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\CNYHKEY.exe"
-BootProc
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe" /AUTORUN
"C:\Program Files (x86)\AVG Secure Search\vprot.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
"C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b6a1a0ba-c919-462d-9933-e838934a589d -SystemEventPortName:HostProcess-30f9685c-77d1-42f1-b40e-63e742c47757 -IoCancelEventPortName:HostProcess-80fefeb5-67f4-41d4-82f5-df2873fe424c -NonStateChangingEventPortName:HostProcess-0d946ff5-a670-43d0-af2e-0dd135174b2f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1a6edafe-0367-4c0e-aa52-7d74705daec6 -DeviceGroupId:WpdFsGroup
taskeng.exe {019BC566-278B-4A75-BEA1-A4BEF368CFA0}
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
ctfmon.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
wscript.exe "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\log.txt" "#C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\FlashUtil10b.exe#"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3528.0.1607314462\256851872" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,22,45 --disable-accelerated-video-decode --gpu-vendor-id=0x1002 --gpu-device-id=0x68f9 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.822.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Stable_HQPDemotion_HUPDecay_Enabled_V3/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_04/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="3528.4.1678062916\1775169013" --font-cache-shared-handle=4092 /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Users\Vladimír Škrna\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForVladimír Škrna.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForVladimír Škrna (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\Vladimír Škrna\AppData\Roaming\Mozilla\Firefox\Profiles\tngq7hur.default
prefs.js - "browser.startup.homepage" - "www.google.cz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.7.0\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.65.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.65.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\18.7.0.147\AVG Secure Search_toolbar.dll [2015-07-15 3543952]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"hpsysdrv"=c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [2008-11-20 62768]
"itype"=C:\Program Files\Microsoft IntelliType Pro\itype.exe [2009-11-05 2345848]
"IntelliPoint"=C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2009-11-05 2320752]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-07-17 8418584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\311~1.149\SSSCHE~1.EXE [2015-06-26 330456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Vladimír Škrna^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk]
C:\PROGRA~1\MICROS~2\Office14\ONENOTEM.EXE [2013-06-25 246472]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-02-09 336384]
"HP KEYBOARDx"=C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE [2010-02-11 710656]
"BATINDICATOR"=C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe [2009-05-09 2068992]
"LaunchHPOSIAPP"=C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\LaunchApp.exe [2009-04-04 385024]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-11 256896]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2013-05-14 139264]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2012-12-27 4522496]
"BrHelp"=C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2013-01-18 2009088]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2015-07-15 2563472]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avgui.exe [2015-07-07 3730344]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-08-02 14:36:19 ----D---- C:\Program Files\trend micro
2015-08-02 14:36:18 ----D---- C:\rsit
2015-08-02 14:26:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-08-02 14:19:42 ----D---- C:\Windows\pss
2015-08-02 14:14:20 ----D---- C:\ProgramData\McAfee
2015-08-02 13:53:20 ----SD---- C:\Windows\SYSWOW64\Microsoft
2015-08-02 13:41:17 ----A---- C:\TDSSKiller.2.8.16.0_02.08.2015_13.41.17_log.txt
2015-08-02 13:40:56 ----A---- C:\TDSSKiller.2.8.16.0_02.08.2015_13.40.56_log.txt
2015-08-02 13:40:40 ----A---- C:\AdwCleaner[S1].txt
2015-08-02 13:39:09 ----A---- C:\AdwCleaner[R4].txt
2015-08-02 12:32:03 ----D---- C:\Program Files (x86)\RegCleaner
2015-08-01 23:05:55 ----D---- C:\Program Files\McAfee Security Scan
2015-07-28 22:29:04 ----A---- C:\Windows\system32\invagent.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\generaltel.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\devinv.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-07-28 22:29:04 ----A---- C:\Windows\system32\appraiser.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\aepdu.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\aeinv.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\acmigration.dll
2015-07-23 19:25:03 ----A---- C:\AdwCleaner[R3].txt
2015-07-23 10:31:02 ----D---- C:\Users\Vladimír Škrna\AppData\Roaming\AVG2015
2015-07-23 10:27:09 ----D---- C:\ProgramData\AVG2015
2015-07-23 10:23:20 ----D---- C:\Program Files\Common Files\AV
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\lpk.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\fontsub.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\dciman32.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\atmlib.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\atmfd.dll
2015-07-15 20:50:37 ----A---- C:\Windows\SYSWOW64\cewmdm.dll
2015-07-15 20:50:37 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wups2.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wups.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wudriver.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wucltux.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuapp.exe
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuapi.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-07-15 20:50:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-07-15 20:50:33 ----A---- C:\Windows\system32\rdpcorets.dll
2015-07-15 20:50:32 ----A---- C:\Windows\system32\win32k.sys
2015-07-15 20:50:31 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-07-15 20:50:31 ----A---- C:\Windows\system32\gdi32.dll
2015-07-15 20:50:30 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-07-15 20:50:30 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-07-15 20:50:30 ----A---- C:\Windows\system32\jscript9diag.dll
2015-07-15 20:50:30 ----A---- C:\Windows\system32\jscript9.dll
2015-07-15 20:50:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-07-15 20:50:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-07-15 20:50:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-07-15 20:50:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-07-15 20:50:27 ----A---- C:\Windows\system32\urlmon.dll
2015-07-15 20:50:26 ----A---- C:\Windows\system32\mshtml.dll
2015-07-15 20:50:26 ----A---- C:\Windows\system32\ieui.dll
2015-07-15 20:50:26 ----A---- C:\Windows\system32\ieframe.dll
2015-07-15 20:50:25 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-07-15 20:50:25 ----A---- C:\Windows\system32\iertutil.dll
2015-07-15 20:50:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-07-15 20:50:04 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-07-15 20:50:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-07-15 20:50:04 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-07-15 20:50:04 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-07-15 20:50:03 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-07-15 20:50:03 ----A---- C:\Windows\system32\iernonce.dll
2015-07-15 20:50:03 ----A---- C:\Windows\system32\ie4uinit.exe
2015-07-15 20:50:02 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-07-15 20:50:02 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-07-15 20:50:02 ----A---- C:\Windows\system32\iedkcs32.dll
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-07-15 20:50:01 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-07-15 20:50:01 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-15 20:50:01 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-07-15 20:50:01 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-15 20:50:00 ----A---- C:\Windows\system32\iesetup.dll
2015-07-15 20:50:00 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-15 20:49:59 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-07-15 20:49:59 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-07-15 20:49:59 ----A---- C:\Windows\system32\vbscript.dll
2015-07-15 20:49:59 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-15 20:49:59 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-15 20:49:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-07-15 20:49:58 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\wininet.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\jscript.dll
2015-07-15 20:49:56 ----A---- C:\Windows\system32\msrating.dll
2015-07-15 20:49:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-07-15 20:49:25 ----A---- C:\Windows\system32\ole32.dll
2015-07-15 20:49:23 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-07-15 20:49:20 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-07-15 20:49:20 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-07-15 20:49:20 ----A---- C:\Windows\system32\cryptsvc.dll
2015-07-15 20:49:20 ----A---- C:\Windows\system32\crypt32.dll
2015-07-15 20:49:19 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-07-15 20:49:19 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-07-15 20:49:19 ----A---- C:\Windows\system32\wintrust.dll
2015-07-15 20:49:19 ----A---- C:\Windows\system32\cryptnet.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\wdigest.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\TSpkg.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\schannel.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\ncrypt.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\kerberos.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\cryptbase.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\sspisrv.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\sspicli.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\secur32.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\msobjs.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\msaudite.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\lsass.exe
2015-07-15 20:49:12 ----A---- C:\Windows\system32\credssp.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\auditpol.exe
2015-07-15 20:49:12 ----A---- C:\Windows\system32\adtschema.dll
2015-07-15 20:48:55 ----A---- C:\Windows\system32\msi.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\msimsg.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\msihnd.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\msiexec.exe
2015-07-15 20:48:54 ----A---- C:\Windows\system32\consent.exe
2015-07-15 20:48:54 ----A---- C:\Windows\system32\authui.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\appinfo.dll
2015-07-14 20:24:44 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2015-07-10 18:25:24 ----HD---- C:\$Windows.~BT
2015-07-06 09:59:04 ----A---- C:\ftconfig.ini
======List of files/folders modified in the last 1 month======
2015-08-02 14:36:19 ----RD---- C:\Program Files
2015-08-02 14:32:48 ----D---- C:\Windows\system32\LogFiles
2015-08-02 14:32:48 ----D---- C:\Windows\Prefetch
2015-08-02 14:32:47 ----D---- C:\Windows\temp
2015-08-02 14:32:47 ----D---- C:\Windows\System32
2015-08-02 14:32:47 ----D---- C:\Windows\inf
2015-08-02 14:32:47 ----AD---- C:\Windows
2015-08-02 14:32:13 ----D---- C:\Windows\system32\config
2015-08-02 14:26:11 ----D---- C:\Windows\Tasks
2015-08-02 14:26:11 ----D---- C:\Windows\system32\Tasks
2015-08-02 14:26:08 ----AD---- C:\Windows\SysWOW64
2015-08-02 14:14:52 ----D---- C:\ProgramData\MFAData
2015-08-02 14:14:20 ----D---- C:\ProgramData
2015-08-02 13:43:55 ----D---- C:\Windows\system32\drivers
2015-08-02 13:36:42 ----D---- C:\Program Files\Google
2015-08-02 13:36:42 ----D---- C:\Program Files (x86)\Spyware Terminator
2015-08-02 13:36:42 ----D---- C:\Program Files (x86)\Google
2015-08-02 12:32:03 ----D---- C:\Program Files (x86)
2015-08-02 12:28:39 ----SHD---- C:\System Volume Information
2015-08-02 12:22:01 ----D---- C:\ProgramData\Google
2015-08-02 12:21:54 ----SHD---- C:\Windows\Installer
2015-08-02 12:18:27 ----D---- C:\Users\Vladimír Škrna\AppData\Roaming\Spyware Terminator
2015-08-02 12:18:27 ----D---- C:\ProgramData\Spyware Terminator
2015-08-02 12:01:43 ----D---- C:\Windows\Panther
2015-08-02 07:12:09 ----A---- C:\Windows\BRRBCOM.INI
2015-08-02 06:48:28 ----D---- C:\Windows\Logs
2015-08-01 23:05:55 ----D---- C:\ProgramData\McAfee Security Scan
2015-07-31 06:50:14 ----D---- C:\Windows\system32\catroot2
2015-07-30 06:43:34 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-29 14:48:36 ----D---- C:\Windows\system32\NDF
2015-07-28 22:37:53 ----SD---- C:\Windows\system32\CompatTel
2015-07-28 22:27:44 ----D---- C:\Windows\winsxs
2015-07-28 22:27:23 ----D---- C:\Windows\SoftwareDistribution
2015-07-25 10:30:28 ----SD---- C:\Windows\system32\GWX
2015-07-23 19:35:20 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-23 19:16:21 ----D---- C:\Users\Vladimír Škrna\AppData\Roaming\uTorrent
2015-07-23 19:15:27 ----D---- C:\Windows\debug
2015-07-23 19:11:38 ----D---- C:\Program Files\CCleaner
2015-07-23 11:32:58 ----D---- C:\Program Files (x86)\AVG
2015-07-23 10:30:16 ----HD---- C:\$AVG
2015-07-23 10:30:15 ----D---- C:\Windows\SYSWOW64\drivers
2015-07-23 10:23:20 ----D---- C:\Program Files\Common Files
2015-07-22 10:27:37 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-17 23:43:18 ----SD---- C:\Windows\SYSWOW64\GWX
2015-07-16 17:46:23 ----D---- C:\Windows\rescache
2015-07-16 16:54:38 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-07-16 16:54:38 ----D---- C:\Windows\system32\cs-CZ
2015-07-16 16:54:38 ----D---- C:\Windows\PolicyDefinitions
2015-07-16 16:54:37 ----D---- C:\Windows\SYSWOW64\en-US
2015-07-16 16:54:37 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-16 16:54:36 ----D---- C:\Windows\system32\en-US
2015-07-16 16:54:36 ----D---- C:\Program Files\Internet Explorer
2015-07-16 16:54:26 ----D---- C:\Windows\system32\wbem
2015-07-16 16:54:26 ----D---- C:\Windows\system32\appraiser
2015-07-16 16:54:26 ----D---- C:\Windows\AppPatch
2015-07-15 23:41:34 ----D---- C:\ProgramData\Microsoft Help
2015-07-15 23:34:37 ----D---- C:\Windows\system32\MRT
2015-07-15 21:29:25 ----D---- C:\Program Files (x86)\AVG Secure Search
2015-07-03 08:43:04 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys [2015-05-12 253408]
R0 Avgloga;AVG Logging Driver; C:\Windows\system32\DRIVERS\avgloga.sys [2015-05-07 378336]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2015-06-10 226784]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2015-03-20 40928]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 Avgdiska;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiska.sys [2015-03-11 162784]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6a.sys [2015-04-14 67552]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys [2015-06-26 293296]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2015-06-16 259040]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2015-05-12 281568]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2014-06-23 50464]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-02-09 9078272]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-02-09 299520]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2010-11-17 115216]
R3 dc3d;MS Hardware Device Detection Driver (USB); C:\Windows\system32\DRIVERS\dc3d.sys [2009-11-05 27512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-11-23 2565736]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-06-18 25816]
R3 Point64;Microsoft IntelliPoint Filter Driver; C:\Windows\system32\DRIVERS\point64k.sys [2009-11-05 34160]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-12-28 412776]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-06-18 63704]
S3 OxPPort;OxPPort; C:\Windows\system32\drivers\OxPPort.sys [2008-07-31 98304]
S3 OxSer;OxSer; C:\Windows\system32\drivers\OxSer.sys [2009-09-16 98352]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver; C:\Windows\system32\DRIVERS\wg111v3.sys [2007-12-28 342528]
S3 trufos;trufos; C:\Windows\system32\drivers\trufos.sys [2014-07-29 350160]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-02-09 203776]
R2 avgfws;AVG Firewall; C:\Program Files (x86)\AVG\AVG2015\avgfws.exe [2015-07-07 1528432]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [2015-07-07 3518376]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [2015-07-07 314304]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-19 99128]
R2 HPClientSvc;HP Client Services; C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2010-11-22 73728]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-03-25 490280]
R2 vToolbarUpdater18.7.0;vToolbarUpdater18.7.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe [2015-07-15 1842576]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2012-10-26 282112]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26 107912]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-02 268976]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26 107912]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-06-20 114688]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe [2015-06-26 289256]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 50942144]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-03-15 148080]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-10 1255736]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
cca týden mám problém s chybovým hlášením windows script host. Odkazuje na soubor, který nebyl nalezen. Obrázek přiložen. Prosím o radu. Děkuji !
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vladimír Škrna at 2015-08-02 14:36:18
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 605 GB (86%) free of 703 GB
Total RAM: 4095 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:36:25, on 2.8.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17910)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe
C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE
C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\CNYHKEY.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\AVG\AVG2015\avgui.exe
C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe
C:\Windows\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Vladimír Škrna.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: 0.0.0.1 mssplus.mcafee.com
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.7.0.147\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HP KEYBOARDx] "C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE"
O4 - HKLM\..\Run: [BATINDICATOR] C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe
O4 - HKLM\..\Run: [LaunchHPOSIAPP] C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\LaunchApp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrHelp] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} - http://dlm.tools.akamai.com/dlmanager/v ... .2.6.0.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.7.0\ViProtocol.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater18.7.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11649 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
c:\PROGRA~2\AVG\AVG2015\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-8be5-01658ec6d84f /binaryPath="C:\Program Files (x86)\AVG\AVG2015\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {F1DD80F4-E8D0-48BF-B020-AB85BBFC0916}
"C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgfws.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe"
"c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\loggingserver.exe" 72648 "C:\ProgramData\AVG Secure Search\Logger\logger.properties"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
\??\C:\Windows\system32\conhost.exe "-286110113-422627231749742059-1322996727239143129-1788402903191161855748767492
"C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe"
"C:\Program Files\Microsoft IntelliType Pro\itype.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgemca.exe"
"C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
WLIDSvcM.exe 2600
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE"
"C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
-BootProc
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\CNYHKEY.exe"
-BootProc
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe" /AUTORUN
"C:\Program Files (x86)\AVG Secure Search\vprot.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
"C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b6a1a0ba-c919-462d-9933-e838934a589d -SystemEventPortName:HostProcess-30f9685c-77d1-42f1-b40e-63e742c47757 -IoCancelEventPortName:HostProcess-80fefeb5-67f4-41d4-82f5-df2873fe424c -NonStateChangingEventPortName:HostProcess-0d946ff5-a670-43d0-af2e-0dd135174b2f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1a6edafe-0367-4c0e-aa52-7d74705daec6 -DeviceGroupId:WpdFsGroup
taskeng.exe {019BC566-278B-4A75-BEA1-A4BEF368CFA0}
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
ctfmon.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
wscript.exe "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\log.txt" "#C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\FlashUtil10b.exe#"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3528.0.1607314462\256851872" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,22,45 --disable-accelerated-video-decode --gpu-vendor-id=0x1002 --gpu-device-id=0x68f9 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.822.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Stable_HQPDemotion_HUPDecay_Enabled_V3/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_04/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="3528.4.1678062916\1775169013" --font-cache-shared-handle=4092 /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Users\Vladimír Škrna\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForVladimír Škrna.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForVladimír Škrna (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\Vladimír Škrna\AppData\Roaming\Mozilla\Firefox\Profiles\tngq7hur.default
prefs.js - "browser.startup.homepage" - "www.google.cz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.7.0\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.65.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.65.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\18.7.0.147\AVG Secure Search_toolbar.dll [2015-07-15 3543952]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"hpsysdrv"=c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [2008-11-20 62768]
"itype"=C:\Program Files\Microsoft IntelliType Pro\itype.exe [2009-11-05 2345848]
"IntelliPoint"=C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2009-11-05 2320752]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 108144]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-07-17 8418584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~1\MCAFEE~1\311~1.149\SSSCHE~1.EXE [2015-06-26 330456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Vladimír Škrna^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk]
C:\PROGRA~1\MICROS~2\Office14\ONENOTEM.EXE [2013-06-25 246472]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-02-09 336384]
"HP KEYBOARDx"=C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE [2010-02-11 710656]
"BATINDICATOR"=C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe [2009-05-09 2068992]
"LaunchHPOSIAPP"=C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\LaunchApp.exe [2009-04-04 385024]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-11 256896]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2013-05-14 139264]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2012-12-27 4522496]
"BrHelp"=C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2013-01-18 2009088]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2015-07-15 2563472]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avgui.exe [2015-07-07 3730344]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-08-02 14:36:19 ----D---- C:\Program Files\trend micro
2015-08-02 14:36:18 ----D---- C:\rsit
2015-08-02 14:26:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-08-02 14:19:42 ----D---- C:\Windows\pss
2015-08-02 14:14:20 ----D---- C:\ProgramData\McAfee
2015-08-02 13:53:20 ----SD---- C:\Windows\SYSWOW64\Microsoft
2015-08-02 13:41:17 ----A---- C:\TDSSKiller.2.8.16.0_02.08.2015_13.41.17_log.txt
2015-08-02 13:40:56 ----A---- C:\TDSSKiller.2.8.16.0_02.08.2015_13.40.56_log.txt
2015-08-02 13:40:40 ----A---- C:\AdwCleaner[S1].txt
2015-08-02 13:39:09 ----A---- C:\AdwCleaner[R4].txt
2015-08-02 12:32:03 ----D---- C:\Program Files (x86)\RegCleaner
2015-08-01 23:05:55 ----D---- C:\Program Files\McAfee Security Scan
2015-07-28 22:29:04 ----A---- C:\Windows\system32\invagent.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\generaltel.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\devinv.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-07-28 22:29:04 ----A---- C:\Windows\system32\appraiser.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\aepdu.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\aeinv.dll
2015-07-28 22:29:04 ----A---- C:\Windows\system32\acmigration.dll
2015-07-23 19:25:03 ----A---- C:\AdwCleaner[R3].txt
2015-07-23 10:31:02 ----D---- C:\Users\Vladimír Škrna\AppData\Roaming\AVG2015
2015-07-23 10:27:09 ----D---- C:\ProgramData\AVG2015
2015-07-23 10:23:20 ----D---- C:\Program Files\Common Files\AV
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-07-20 22:39:14 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\lpk.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\fontsub.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\dciman32.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\atmlib.dll
2015-07-20 22:39:14 ----A---- C:\Windows\system32\atmfd.dll
2015-07-15 20:50:37 ----A---- C:\Windows\SYSWOW64\cewmdm.dll
2015-07-15 20:50:37 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-07-15 20:50:35 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wups2.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wups.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wudriver.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wucltux.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuapp.exe
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wuapi.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-07-15 20:50:35 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-07-15 20:50:33 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-07-15 20:50:33 ----A---- C:\Windows\system32\rdpcorets.dll
2015-07-15 20:50:32 ----A---- C:\Windows\system32\win32k.sys
2015-07-15 20:50:31 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-07-15 20:50:31 ----A---- C:\Windows\system32\gdi32.dll
2015-07-15 20:50:30 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-07-15 20:50:30 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-07-15 20:50:30 ----A---- C:\Windows\system32\jscript9diag.dll
2015-07-15 20:50:30 ----A---- C:\Windows\system32\jscript9.dll
2015-07-15 20:50:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-07-15 20:50:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-07-15 20:50:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-07-15 20:50:27 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-07-15 20:50:27 ----A---- C:\Windows\system32\urlmon.dll
2015-07-15 20:50:26 ----A---- C:\Windows\system32\mshtml.dll
2015-07-15 20:50:26 ----A---- C:\Windows\system32\ieui.dll
2015-07-15 20:50:26 ----A---- C:\Windows\system32\ieframe.dll
2015-07-15 20:50:25 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-07-15 20:50:25 ----A---- C:\Windows\system32\iertutil.dll
2015-07-15 20:50:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-07-15 20:50:04 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-07-15 20:50:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-07-15 20:50:04 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-07-15 20:50:04 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-07-15 20:50:03 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-07-15 20:50:03 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-07-15 20:50:03 ----A---- C:\Windows\system32\iernonce.dll
2015-07-15 20:50:03 ----A---- C:\Windows\system32\ie4uinit.exe
2015-07-15 20:50:02 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-07-15 20:50:02 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-07-15 20:50:02 ----A---- C:\Windows\system32\iedkcs32.dll
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-07-15 20:50:01 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-07-15 20:50:01 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-07-15 20:50:01 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-15 20:50:01 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-07-15 20:50:01 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-15 20:50:00 ----A---- C:\Windows\system32\iesetup.dll
2015-07-15 20:50:00 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-15 20:49:59 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-07-15 20:49:59 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-07-15 20:49:59 ----A---- C:\Windows\system32\vbscript.dll
2015-07-15 20:49:59 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-15 20:49:59 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-15 20:49:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-07-15 20:49:58 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\wininet.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-15 20:49:57 ----A---- C:\Windows\system32\jscript.dll
2015-07-15 20:49:56 ----A---- C:\Windows\system32\msrating.dll
2015-07-15 20:49:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-07-15 20:49:25 ----A---- C:\Windows\system32\ole32.dll
2015-07-15 20:49:23 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-07-15 20:49:20 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-07-15 20:49:20 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-07-15 20:49:20 ----A---- C:\Windows\system32\cryptsvc.dll
2015-07-15 20:49:20 ----A---- C:\Windows\system32\crypt32.dll
2015-07-15 20:49:19 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-07-15 20:49:19 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-07-15 20:49:19 ----A---- C:\Windows\system32\wintrust.dll
2015-07-15 20:49:19 ----A---- C:\Windows\system32\cryptnet.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-07-15 20:49:13 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\wdigest.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\TSpkg.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\schannel.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\ncrypt.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\kerberos.dll
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-07-15 20:49:13 ----A---- C:\Windows\system32\cryptbase.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-07-15 20:49:12 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\sspisrv.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\sspicli.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\secur32.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\msobjs.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\msaudite.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\lsass.exe
2015-07-15 20:49:12 ----A---- C:\Windows\system32\credssp.dll
2015-07-15 20:49:12 ----A---- C:\Windows\system32\auditpol.exe
2015-07-15 20:49:12 ----A---- C:\Windows\system32\adtschema.dll
2015-07-15 20:48:55 ----A---- C:\Windows\system32\msi.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-07-15 20:48:54 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\msimsg.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\msihnd.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\msiexec.exe
2015-07-15 20:48:54 ----A---- C:\Windows\system32\consent.exe
2015-07-15 20:48:54 ----A---- C:\Windows\system32\authui.dll
2015-07-15 20:48:54 ----A---- C:\Windows\system32\appinfo.dll
2015-07-14 20:24:44 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2015-07-10 18:25:24 ----HD---- C:\$Windows.~BT
2015-07-06 09:59:04 ----A---- C:\ftconfig.ini
======List of files/folders modified in the last 1 month======
2015-08-02 14:36:19 ----RD---- C:\Program Files
2015-08-02 14:32:48 ----D---- C:\Windows\system32\LogFiles
2015-08-02 14:32:48 ----D---- C:\Windows\Prefetch
2015-08-02 14:32:47 ----D---- C:\Windows\temp
2015-08-02 14:32:47 ----D---- C:\Windows\System32
2015-08-02 14:32:47 ----D---- C:\Windows\inf
2015-08-02 14:32:47 ----AD---- C:\Windows
2015-08-02 14:32:13 ----D---- C:\Windows\system32\config
2015-08-02 14:26:11 ----D---- C:\Windows\Tasks
2015-08-02 14:26:11 ----D---- C:\Windows\system32\Tasks
2015-08-02 14:26:08 ----AD---- C:\Windows\SysWOW64
2015-08-02 14:14:52 ----D---- C:\ProgramData\MFAData
2015-08-02 14:14:20 ----D---- C:\ProgramData
2015-08-02 13:43:55 ----D---- C:\Windows\system32\drivers
2015-08-02 13:36:42 ----D---- C:\Program Files\Google
2015-08-02 13:36:42 ----D---- C:\Program Files (x86)\Spyware Terminator
2015-08-02 13:36:42 ----D---- C:\Program Files (x86)\Google
2015-08-02 12:32:03 ----D---- C:\Program Files (x86)
2015-08-02 12:28:39 ----SHD---- C:\System Volume Information
2015-08-02 12:22:01 ----D---- C:\ProgramData\Google
2015-08-02 12:21:54 ----SHD---- C:\Windows\Installer
2015-08-02 12:18:27 ----D---- C:\Users\Vladimír Škrna\AppData\Roaming\Spyware Terminator
2015-08-02 12:18:27 ----D---- C:\ProgramData\Spyware Terminator
2015-08-02 12:01:43 ----D---- C:\Windows\Panther
2015-08-02 07:12:09 ----A---- C:\Windows\BRRBCOM.INI
2015-08-02 06:48:28 ----D---- C:\Windows\Logs
2015-08-01 23:05:55 ----D---- C:\ProgramData\McAfee Security Scan
2015-07-31 06:50:14 ----D---- C:\Windows\system32\catroot2
2015-07-30 06:43:34 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-29 14:48:36 ----D---- C:\Windows\system32\NDF
2015-07-28 22:37:53 ----SD---- C:\Windows\system32\CompatTel
2015-07-28 22:27:44 ----D---- C:\Windows\winsxs
2015-07-28 22:27:23 ----D---- C:\Windows\SoftwareDistribution
2015-07-25 10:30:28 ----SD---- C:\Windows\system32\GWX
2015-07-23 19:35:20 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-23 19:16:21 ----D---- C:\Users\Vladimír Škrna\AppData\Roaming\uTorrent
2015-07-23 19:15:27 ----D---- C:\Windows\debug
2015-07-23 19:11:38 ----D---- C:\Program Files\CCleaner
2015-07-23 11:32:58 ----D---- C:\Program Files (x86)\AVG
2015-07-23 10:30:16 ----HD---- C:\$AVG
2015-07-23 10:30:15 ----D---- C:\Windows\SYSWOW64\drivers
2015-07-23 10:23:20 ----D---- C:\Program Files\Common Files
2015-07-22 10:27:37 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-17 23:43:18 ----SD---- C:\Windows\SYSWOW64\GWX
2015-07-16 17:46:23 ----D---- C:\Windows\rescache
2015-07-16 16:54:38 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-07-16 16:54:38 ----D---- C:\Windows\system32\cs-CZ
2015-07-16 16:54:38 ----D---- C:\Windows\PolicyDefinitions
2015-07-16 16:54:37 ----D---- C:\Windows\SYSWOW64\en-US
2015-07-16 16:54:37 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-16 16:54:36 ----D---- C:\Windows\system32\en-US
2015-07-16 16:54:36 ----D---- C:\Program Files\Internet Explorer
2015-07-16 16:54:26 ----D---- C:\Windows\system32\wbem
2015-07-16 16:54:26 ----D---- C:\Windows\system32\appraiser
2015-07-16 16:54:26 ----D---- C:\Windows\AppPatch
2015-07-15 23:41:34 ----D---- C:\ProgramData\Microsoft Help
2015-07-15 23:34:37 ----D---- C:\Windows\system32\MRT
2015-07-15 21:29:25 ----D---- C:\Program Files (x86)\AVG Secure Search
2015-07-03 08:43:04 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys [2015-05-12 253408]
R0 Avgloga;AVG Logging Driver; C:\Windows\system32\DRIVERS\avgloga.sys [2015-05-07 378336]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2015-06-10 226784]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2015-03-20 40928]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 Avgdiska;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiska.sys [2015-03-11 162784]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6a.sys [2015-04-14 67552]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys [2015-06-26 293296]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2015-06-16 259040]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2015-05-12 281568]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2014-06-23 50464]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-02-09 9078272]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-02-09 299520]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2010-11-17 115216]
R3 dc3d;MS Hardware Device Detection Driver (USB); C:\Windows\system32\DRIVERS\dc3d.sys [2009-11-05 27512]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-11-23 2565736]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-06-18 25816]
R3 Point64;Microsoft IntelliPoint Filter Driver; C:\Windows\system32\DRIVERS\point64k.sys [2009-11-05 34160]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-12-28 412776]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-06-18 63704]
S3 OxPPort;OxPPort; C:\Windows\system32\drivers\OxPPort.sys [2008-07-31 98304]
S3 OxSer;OxSer; C:\Windows\system32\drivers\OxSer.sys [2009-09-16 98352]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver; C:\Windows\system32\DRIVERS\wg111v3.sys [2007-12-28 342528]
S3 trufos;trufos; C:\Windows\system32\drivers\trufos.sys [2014-07-29 350160]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-02-09 203776]
R2 avgfws;AVG Firewall; C:\Program Files (x86)\AVG\AVG2015\avgfws.exe [2015-07-07 1528432]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [2015-07-07 3518376]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [2015-07-07 314304]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-19 99128]
R2 HPClientSvc;HP Client Services; C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2010-11-22 73728]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-03-25 490280]
R2 vToolbarUpdater18.7.0;vToolbarUpdater18.7.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe [2015-07-15 1842576]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2012-10-26 282112]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26 107912]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-02 268976]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26 107912]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-06-20 114688]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe [2015-06-26 289256]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 50942144]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-03-15 148080]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-10 1255736]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
- Přílohy
-
- AA.JPG (19.62 KiB) Zobrazeno 2841 x
Re: Windows Script Host
Zdravim
Poprosim o tyto logy
Stahnete SytemLook http://images.malwareremoval.com/jpshor ... ok_x64.exe a ulozte jej na plochu


2015-08-02 13:41:17 ----A---- C:\TDSSKiller.2.8.16.0_02.08.2015_13.41.17_log.txt
2015-08-02 13:40:56 ----A---- C:\TDSSKiller.2.8.16.0_02.08.2015_13.40.56_log.txt
2015-08-02 13:40:40 ----A---- C:\AdwCleaner[S1].txt

- Do okna vlozte skript nize
Kód: Vybrat vše
:regfind start.vbs
- Kliknete na Look
- Tlacitko Look se zmeni na Scanning a zsedne
- Pockejte pokud se tlacitko Scanning opet nezmeni na Look - tak poznate ze SystemLook dokoncil svou praci
- Vyskoci na Vas log s nazvem SystemLook (pripadne bude ulozen na plose), jeho obsah mi sem vlozte
Re: Windows Script Host
13:41:17.0693 3728 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
13:41:19.0471 3728 ============================================================
13:41:19.0471 3728 Current date / time: 2015/08/02 13:41:19.0471
13:41:19.0471 3728 SystemInfo:
13:41:19.0471 3728
13:41:19.0471 3728 OS Version: 6.1.7601 ServicePack: 1.0
13:41:19.0471 3728 Product type: Workstation
13:41:19.0471 3728 ComputerName: VLADIMIRSKRNA
13:41:19.0471 3728 UserName: Vladimír Škrna
13:41:19.0471 3728 Windows directory: C:\Windows
13:41:19.0471 3728 System windows directory: C:\Windows
13:41:19.0471 3728 Running under WOW64
13:41:19.0471 3728 Processor architecture: Intel x64
13:41:19.0471 3728 Number of processors: 2
13:41:19.0471 3728 Page size: 0x1000
13:41:19.0471 3728 Boot type: Normal boot
13:41:19.0471 3728 ============================================================
13:41:24.0167 3728 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:41:24.0183 3728 ============================================================
13:41:24.0183 3728 \Device\Harddisk0\DR0:
13:41:24.0183 3728 MBR partitions:
13:41:24.0183 3728 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
13:41:24.0183 3728 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x55DEF800
13:41:24.0183 3728 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x55E22000, BlocksNum 0x1723800
13:41:24.0183 3728 ============================================================
13:41:24.0198 3728 C: <-> \Device\Harddisk0\DR0\Partition2
13:41:24.0370 3728 D: <-> \Device\Harddisk0\DR0\Partition3
13:41:24.0370 3728 ============================================================
13:41:24.0370 3728 Initialize success
13:41:24.0370 3728 ============================================================
13:41:38.0425 5608 ============================================================
13:41:38.0425 5608 Scan started
13:41:38.0425 5608 Mode: Manual;
13:41:38.0425 5608 ============================================================
13:41:41.0077 5608 ================ Scan system memory ========================
13:41:41.0077 5608 System memory - ok
13:41:41.0077 5608 ================ Scan services =============================
13:41:41.0748 5608 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:41:41.0764 5608 1394ohci - ok
13:41:41.0795 5608 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:41:41.0795 5608 ACPI - ok
13:41:41.0857 5608 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:41:41.0857 5608 AcpiPmi - ok
13:41:42.0076 5608 [ 013697369EAFFA675D0671607F036020 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:41:42.0076 5608 AdobeARMservice - ok
13:41:42.0138 5608 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
13:41:42.0154 5608 adp94xx - ok
13:41:42.0185 5608 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
13:41:42.0185 5608 adpahci - ok
13:41:42.0216 5608 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
13:41:42.0216 5608 adpu320 - ok
13:41:42.0263 5608 [ 83BFCCAC53795E8A5055A93672D0C46C ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:41:42.0263 5608 AeLookupSvc - ok
13:41:42.0325 5608 [ FA886682CFC5D36718D3E436AACF10B9 ] AFD C:\Windows\system32\drivers\afd.sys
13:41:42.0325 5608 AFD - ok
13:41:42.0341 5608 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
13:41:42.0341 5608 agp440 - ok
13:41:42.0372 5608 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
13:41:42.0372 5608 ALG - ok
13:41:42.0403 5608 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
13:41:42.0419 5608 aliide - ok
13:41:42.0544 5608 [ E4DA723458A20FBA693FB1F5924483DB ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
13:41:42.0544 5608 AMD External Events Utility - ok
13:41:42.0575 5608 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
13:41:42.0591 5608 amdide - ok
13:41:42.0622 5608 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
13:41:42.0637 5608 AmdK8 - ok
13:41:43.0090 5608 [ F894BFB5817718D50CE0122B7806B457 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
13:41:43.0308 5608 amdkmdag - ok
13:41:43.0355 5608 [ B12E7BE6715F3EE1A913A806F6B0AB94 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
13:41:43.0355 5608 amdkmdap - ok
13:41:43.0371 5608 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
13:41:43.0386 5608 AmdPPM - ok
13:41:43.0402 5608 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:41:43.0417 5608 amdsata - ok
13:41:43.0480 5608 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
13:41:43.0495 5608 amdsbs - ok
13:41:43.0527 5608 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:41:43.0527 5608 amdxata - ok
13:41:43.0605 5608 [ 90C53BD47979FB8814F465A08B885102 ] AppID C:\Windows\system32\drivers\appid.sys
13:41:43.0636 5608 AppID - ok
13:41:43.0651 5608 [ 72D4757510FDA69D729169C00AFC211E ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:41:43.0651 5608 AppIDSvc - ok
13:41:43.0698 5608 [ 978DC0A1FBE9CC91B21B40AF66CB396A ] Appinfo C:\Windows\System32\appinfo.dll
13:41:43.0698 5608 Appinfo - ok
13:41:43.0776 5608 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
13:41:43.0792 5608 arc - ok
13:41:43.0807 5608 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
13:41:43.0823 5608 arcsas - ok
13:41:44.0182 5608 [ F15AB80B867D3332D5DDFB0A05B9CE04 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
13:41:44.0213 5608 aspnet_state - ok
13:41:44.0244 5608 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:41:44.0244 5608 AsyncMac - ok
13:41:44.0275 5608 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
13:41:44.0275 5608 atapi - ok
13:41:44.0416 5608 [ 4BF5BCA6E2608CD8A00BC4A6673A9F47 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
13:41:44.0416 5608 AtiHDAudioService - ok
13:41:44.0509 5608 [ 6968D02DC38757C3FBE7ED7C2F9670AA ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:41:44.0509 5608 AudioEndpointBuilder - ok
13:41:44.0634 5608 [ 6968D02DC38757C3FBE7ED7C2F9670AA ] AudioSrv C:\Windows\System32\Audiosrv.dll
13:41:44.0634 5608 AudioSrv - ok
13:41:44.0743 5608 [ E7C8FBDCB1C079C332F962DD1C075E5E ] Avgdiska C:\Windows\system32\DRIVERS\avgdiska.sys
13:41:44.0743 5608 Avgdiska - ok
13:41:44.0806 5608 [ 64A90A57573D0E7421900383223AF7A5 ] Avgfwfd C:\Windows\system32\DRIVERS\avgfwd6a.sys
13:41:44.0806 5608 Avgfwfd - ok
13:41:44.0977 5608 [ BAA40C8AC63AB0497842BDAA9B43C0B6 ] avgfws C:\Program Files (x86)\AVG\AVG2015\avgfws.exe
13:41:44.0993 5608 avgfws - ok
13:41:45.0352 5608 [ E7FAE655001C18A7ECBD58B3BA971BF9 ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
13:41:45.0367 5608 AVGIDSAgent - ok
13:41:45.0477 5608 [ E3DC1089EDAD57F5279804167E6142E9 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys
13:41:45.0477 5608 AVGIDSDriver - ok
13:41:45.0555 5608 [ 54384FC2230B4469E7EDF938B7CF5FF7 ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys
13:41:45.0555 5608 AVGIDSHA - ok
13:41:45.0664 5608 [ 0CFB17D66DC1D76214F50E33C41CC8B6 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys
13:41:45.0664 5608 Avgldx64 - ok
13:41:45.0820 5608 [ 7EC2B7BBA7A30691D2E0D8478F219B90 ] Avgloga C:\Windows\system32\DRIVERS\avgloga.sys
13:41:45.0820 5608 Avgloga - ok
13:41:45.0898 5608 [ BC3016B9921753DD3A3CF1082FBCF146 ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys
13:41:45.0898 5608 Avgmfx64 - ok
13:41:45.0976 5608 [ 719EF00B1C5BED9CF5675274A4F774B9 ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys
13:41:45.0976 5608 Avgrkx64 - ok
13:41:46.0085 5608 [ EB9606C7C31E2C90BD9A81B0BEE01C28 ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys
13:41:46.0085 5608 Avgtdia - ok
13:41:46.0147 5608 [ 7688C67BDF55500C1FDC8291230C397D ] avgtp C:\Windows\system32\drivers\avgtpx64.sys
13:41:46.0147 5608 avgtp - ok
13:41:46.0241 5608 [ FE9742B20DD5FCF12D245D08BF5AAF98 ] avgwd C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
13:41:46.0241 5608 avgwd - ok
13:41:46.0319 5608 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:41:46.0335 5608 AxInstSV - ok
13:41:46.0381 5608 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
13:41:46.0397 5608 b06bdrv - ok
13:41:46.0428 5608 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
13:41:46.0444 5608 b57nd60a - ok
13:41:46.0522 5608 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
13:41:46.0537 5608 BDESVC - ok
13:41:46.0600 5608 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
13:41:46.0631 5608 Beep - ok
13:41:46.0709 5608 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
13:41:46.0725 5608 BFE - ok
13:41:46.0803 5608 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
13:41:46.0818 5608 BITS - ok
13:41:46.0865 5608 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
13:41:46.0865 5608 blbdrive - ok
13:41:46.0881 5608 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:41:46.0881 5608 bowser - ok
13:41:46.0927 5608 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
13:41:46.0927 5608 BrFiltLo - ok
13:41:46.0959 5608 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
13:41:46.0959 5608 BrFiltUp - ok
13:41:46.0974 5608 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
13:41:46.0990 5608 BridgeMP - ok
13:41:47.0021 5608 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
13:41:47.0021 5608 Browser - ok
13:41:47.0068 5608 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:41:47.0068 5608 Brserid - ok
13:41:47.0083 5608 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:41:47.0099 5608 BrSerWdm - ok
13:41:47.0115 5608 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:41:47.0130 5608 BrUsbMdm - ok
13:41:47.0146 5608 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:41:47.0161 5608 BrUsbSer - ok
13:41:47.0239 5608 [ 065818B8A2CD7F08D6DC8C598191548C ] BrYNSvc C:\Program Files (x86)\Browny02\BrYNSvc.exe
13:41:47.0239 5608 BrYNSvc - ok
13:41:47.0255 5608 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
13:41:47.0271 5608 BTHMODEM - ok
13:41:47.0302 5608 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
13:41:47.0317 5608 bthserv - ok
13:41:47.0364 5608 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:41:47.0380 5608 cdfs - ok
13:41:47.0458 5608 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:41:47.0458 5608 cdrom - ok
13:41:47.0551 5608 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
13:41:47.0551 5608 CertPropSvc - ok
13:41:47.0598 5608 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
13:41:47.0614 5608 circlass - ok
13:41:47.0723 5608 [ 404B7DF9CA4D1CB675045AF220FF3285 ] CLFS C:\Windows\system32\CLFS.sys
13:41:47.0754 5608 CLFS - ok
13:41:47.0910 5608 [ F13EC8A783E0CB0D6DC26A3CA848B7B8 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:41:47.0910 5608 clr_optimization_v2.0.50727_32 - ok
13:41:47.0957 5608 [ B4D73F04E9BC076F7CDAC4327DF636BB ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:41:47.0973 5608 clr_optimization_v2.0.50727_64 - ok
13:41:48.0300 5608 [ F5AB4D2E36625F355E81539239765107 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:41:48.0628 5608 clr_optimization_v4.0.30319_32 - ok
13:41:48.0659 5608 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:41:48.0784 5608 clr_optimization_v4.0.30319_64 - ok
13:41:48.0831 5608 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
13:41:48.0846 5608 CmBatt - ok
13:41:48.0877 5608 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:41:48.0893 5608 cmdide - ok
13:41:49.0002 5608 [ 27667A788130A7F7A5858DE27572E6D7 ] CNG C:\Windows\system32\Drivers\cng.sys
13:41:49.0033 5608 CNG - ok
13:41:49.0049 5608 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
13:41:49.0065 5608 Compbatt - ok
13:41:49.0096 5608 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:41:49.0096 5608 CompositeBus - ok
13:41:49.0111 5608 COMSysApp - ok
13:41:49.0143 5608 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
13:41:49.0174 5608 crcdisk - ok
13:41:49.0221 5608 [ 7BC3E861F7E8EB543A630090FAE779E0 ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:41:49.0236 5608 CryptSvc - ok
13:41:49.0299 5608 [ 69D0A8F65F639D752E018F256BCD3DE3 ] dc3d C:\Windows\system32\DRIVERS\dc3d.sys
13:41:49.0299 5608 dc3d - ok
13:41:49.0392 5608 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
13:41:49.0408 5608 DcomLaunch - ok
13:41:49.0486 5608 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
13:41:49.0486 5608 defragsvc - ok
13:41:49.0564 5608 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:41:49.0579 5608 DfsC - ok
13:41:49.0657 5608 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
13:41:49.0657 5608 Dhcp - ok
13:41:49.0876 5608 [ AA5319FA8602676B5D3A2B4A1355896D ] DiagTrack C:\Windows\system32\diagtrack.dll
13:41:49.0891 5608 DiagTrack - ok
13:41:49.0938 5608 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
13:41:49.0938 5608 discache - ok
13:41:49.0969 5608 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
13:41:49.0969 5608 Disk - ok
13:41:49.0985 5608 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:41:49.0985 5608 Dnscache - ok
13:41:50.0001 5608 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
13:41:50.0016 5608 dot3svc - ok
13:41:50.0032 5608 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
13:41:50.0032 5608 DPS - ok
13:41:50.0063 5608 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:41:50.0063 5608 drmkaud - ok
13:41:50.0110 5608 [ 87CE5C8965E101CCCED1F4675557E868 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:41:50.0110 5608 DXGKrnl - ok
13:41:50.0141 5608 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
13:41:50.0141 5608 EapHost - ok
13:41:50.0203 5608 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
13:41:50.0266 5608 ebdrv - ok
13:41:50.0297 5608 [ 97D879A884E7CDFED51AD63348A35254 ] EFS C:\Windows\System32\lsass.exe
13:41:50.0297 5608 EFS - ok
13:41:50.0422 5608 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:41:50.0422 5608 ehRecvr - ok
13:41:50.0484 5608 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
13:41:50.0484 5608 ehSched - ok
13:41:50.0562 5608 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
13:41:50.0578 5608 elxstor - ok
13:41:50.0609 5608 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:41:50.0625 5608 ErrDev - ok
13:41:50.0781 5608 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
13:41:50.0796 5608 EventSystem - ok
13:41:50.0859 5608 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
13:41:50.0874 5608 exfat - ok
13:41:50.0905 5608 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:41:50.0921 5608 fastfat - ok
13:41:51.0030 5608 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
13:41:51.0046 5608 Fax - ok
13:41:51.0077 5608 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
13:41:51.0077 5608 fdc - ok
13:41:51.0108 5608 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
13:41:51.0108 5608 fdPHost - ok
13:41:51.0139 5608 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
13:41:51.0171 5608 FDResPub - ok
13:41:51.0202 5608 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:41:51.0202 5608 FileInfo - ok
13:41:51.0233 5608 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:41:51.0233 5608 Filetrace - ok
13:41:51.0264 5608 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
13:41:51.0280 5608 flpydisk - ok
13:41:51.0342 5608 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:41:51.0342 5608 FltMgr - ok
13:41:51.0420 5608 [ E612E86FA15EA1EF9A52433A2743C447 ] FontCache C:\Windows\system32\FntCache.dll
13:41:51.0436 5608 FontCache - ok
13:41:51.0498 5608 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:41:51.0498 5608 FontCache3.0.0.0 - ok
13:41:51.0545 5608 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:41:51.0561 5608 FsDepends - ok
13:41:51.0592 5608 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:41:51.0592 5608 Fs_Rec - ok
13:41:51.0701 5608 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:41:51.0701 5608 fvevol - ok
13:41:51.0763 5608 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
13:41:51.0779 5608 gagp30kx - ok
13:41:51.0888 5608 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
13:41:51.0888 5608 gpsvc - ok
13:41:52.0044 5608 [ 51508F0C2476177E50C31B0BBFBF1BDB ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:41:52.0044 5608 gupdate - ok
13:41:52.0044 5608 [ 51508F0C2476177E50C31B0BBFBF1BDB ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:41:52.0060 5608 gupdatem - ok
13:41:52.0075 5608 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:41:52.0091 5608 hcw85cir - ok
13:41:52.0185 5608 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:41:52.0200 5608 HdAudAddService - ok
13:41:52.0247 5608 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
13:41:52.0278 5608 HDAudBus - ok
13:41:52.0294 5608 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
13:41:52.0294 5608 HidBatt - ok
13:41:52.0372 5608 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
13:41:52.0372 5608 HidBth - ok
13:41:52.0450 5608 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
13:41:52.0465 5608 HidIr - ok
13:41:52.0481 5608 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
13:41:52.0497 5608 hidserv - ok
13:41:52.0590 5608 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
13:41:52.0621 5608 HidUsb - ok
13:41:52.0653 5608 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:41:52.0668 5608 hkmsvc - ok
13:41:52.0684 5608 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:41:52.0699 5608 HomeGroupListener - ok
13:41:52.0746 5608 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:41:52.0762 5608 HomeGroupProvider - ok
13:41:52.0871 5608 [ 77E81E788CC63E65272A7D247F441505 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
13:41:52.0871 5608 HP Support Assistant Service - ok
13:41:52.0965 5608 [ 6A181452D4E240B8ECC7614B9A19BDE9 ] HPClientSvc C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
13:41:52.0965 5608 HPClientSvc - ok
13:41:53.0043 5608 [ D2946D9F020AE76E9CEF9B4A6DF838C0 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
13:41:53.0074 5608 hpqwmiex - ok
13:41:53.0121 5608 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:41:53.0121 5608 HpSAMD - ok
13:41:53.0199 5608 [ F61634BEC53F73702A10DE69F6DCAF57 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:41:53.0214 5608 HTTP - ok
13:41:53.0261 5608 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:41:53.0261 5608 hwpolicy - ok
13:41:53.0308 5608 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:41:53.0308 5608 i8042prt - ok
13:41:53.0417 5608 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:41:53.0417 5608 iaStorV - ok
13:41:53.0542 5608 [ C98A5B9D932430AD8EEBD3EF73756EF7 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:41:53.0589 5608 idsvc - ok
13:41:53.0651 5608 IEEtwCollectorService - ok
13:41:53.0994 5608 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
13:41:54.0119 5608 igfx - ok
13:41:54.0150 5608 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
13:41:54.0150 5608 iirsp - ok
13:41:54.0197 5608 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT C:\Windows\System32\ikeext.dll
13:41:54.0213 5608 IKEEXT - ok
13:41:54.0369 5608 [ 589B94A9B73A0E819FF873743A480834 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:41:54.0384 5608 IntcAzAudAddService - ok
13:41:54.0415 5608 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
13:41:54.0415 5608 intelide - ok
13:41:54.0447 5608 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:41:54.0447 5608 intelppm - ok
13:41:54.0478 5608 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:41:54.0478 5608 IPBusEnum - ok
13:41:54.0493 5608 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:41:54.0509 5608 IpFilterDriver - ok
13:41:54.0587 5608 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:41:54.0587 5608 iphlpsvc - ok
13:41:54.0634 5608 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:41:54.0634 5608 IPMIDRV - ok
13:41:54.0681 5608 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:41:54.0696 5608 IPNAT - ok
13:41:54.0743 5608 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:41:54.0743 5608 IRENUM - ok
13:41:54.0759 5608 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:41:54.0774 5608 isapnp - ok
13:41:54.0805 5608 [ 96BB922A0981BC7432C8CF52B5410FE6 ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:41:54.0821 5608 iScsiPrt - ok
13:41:54.0852 5608 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
13:41:54.0852 5608 kbdclass - ok
13:41:54.0899 5608 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
13:41:54.0915 5608 kbdhid - ok
13:41:54.0930 5608 [ 97D879A884E7CDFED51AD63348A35254 ] KeyIso C:\Windows\system32\lsass.exe
13:41:54.0930 5608 KeyIso - ok
13:41:54.0961 5608 [ C0A6C3D6E02B61B5D100FE17306C276F ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:41:54.0961 5608 KSecDD - ok
13:41:54.0977 5608 [ 7A7328E427694CC7244235C3BC299F80 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:41:54.0977 5608 KSecPkg - ok
13:41:55.0008 5608 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
13:41:55.0008 5608 ksthunk - ok
13:41:55.0039 5608 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
13:41:55.0039 5608 KtmRm - ok
13:41:55.0071 5608 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
13:41:55.0071 5608 LanmanServer - ok
13:41:55.0086 5608 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:41:55.0102 5608 LanmanWorkstation - ok
13:41:55.0133 5608 [ FA4A45C179AB0E0F1A31B9751D4B18D7 ] LightScribeService c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
13:41:55.0164 5608 LightScribeService - ok
13:41:55.0211 5608 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:41:55.0211 5608 lltdio - ok
13:41:55.0273 5608 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:41:55.0289 5608 lltdsvc - ok
13:41:55.0320 5608 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:41:55.0320 5608 lmhosts - ok
13:41:55.0398 5608 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
13:41:55.0414 5608 LSI_FC - ok
13:41:55.0445 5608 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
13:41:55.0445 5608 LSI_SAS - ok
13:41:55.0461 5608 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
13:41:55.0492 5608 LSI_SAS2 - ok
13:41:55.0507 5608 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
13:41:55.0523 5608 LSI_SCSI - ok
13:41:55.0570 5608 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
13:41:55.0570 5608 luafv - ok
13:41:55.0663 5608 [ A8D28D5B3E2A528D1EF0E338E44F2820 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
13:41:55.0663 5608 MBAMProtector - ok
13:41:55.0835 5608 [ 83C982A395D00BAFF6515FB38424EA76 ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
13:41:55.0835 5608 MBAMService - ok
13:41:55.0897 5608 [ AE757332EA130E94E646621CC695B52A ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
13:41:55.0897 5608 MBAMWebAccessControl - ok
13:41:56.0100 5608 [ 61E27025735991FB61E2B5324357CEE5 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe
13:41:56.0116 5608 McComponentHostService - ok
13:41:56.0163 5608 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:41:56.0178 5608 Mcx2Svc - ok
13:41:56.0194 5608 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
13:41:56.0194 5608 megasas - ok
13:41:56.0225 5608 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
13:41:56.0225 5608 MegaSR - ok
13:41:56.0319 5608 Microsoft SharePoint Workspace Audit Service - ok
13:41:56.0350 5608 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
13:41:56.0350 5608 MMCSS - ok
13:41:56.0397 5608 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
13:41:56.0397 5608 Modem - ok
13:41:56.0428 5608 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:41:56.0428 5608 monitor - ok
13:41:56.0443 5608 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:41:56.0459 5608 mouclass - ok
13:41:56.0475 5608 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:41:56.0475 5608 mouhid - ok
13:41:56.0521 5608 [ 87BCD1034CBF33537D4D4C251D39BA26 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:41:56.0521 5608 mountmgr - ok
13:41:56.0553 5608 [ 81E8AF6407EC3F41908FE37F054353EA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:41:56.0553 5608 MozillaMaintenance - ok
13:41:56.0584 5608 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
13:41:56.0584 5608 mpio - ok
13:41:56.0631 5608 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:41:56.0631 5608 mpsdrv - ok
13:41:56.0677 5608 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:41:56.0677 5608 MpsSvc - ok
13:41:56.0724 5608 [ AE3334958D8F631FF14A0AEB3D7EFB3A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:41:56.0724 5608 MRxDAV - ok
13:41:56.0755 5608 [ 1877EB1495CFBDAB27D6A32F6DDF3818 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:41:56.0771 5608 mrxsmb - ok
13:41:56.0787 5608 [ 21AF322605D8C7F2A627C22634D1C9C9 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:41:56.0787 5608 mrxsmb10 - ok
13:41:56.0818 5608 [ 45A03A0B6461EFBEE77E0A6AC2816EDA ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:41:56.0818 5608 mrxsmb20 - ok
13:41:56.0833 5608 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
13:41:56.0849 5608 msahci - ok
13:41:56.0865 5608 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:41:56.0865 5608 msdsm - ok
13:41:56.0880 5608 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
13:41:56.0896 5608 MSDTC - ok
13:41:56.0911 5608 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:41:56.0911 5608 Msfs - ok
13:41:56.0958 5608 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:41:56.0958 5608 mshidkmdf - ok
13:41:56.0989 5608 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:41:56.0989 5608 msisadrv - ok
13:41:57.0067 5608 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:41:57.0083 5608 MSiSCSI - ok
13:41:57.0099 5608 msiserver - ok
13:41:57.0145 5608 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:41:57.0161 5608 MSKSSRV - ok
13:41:57.0192 5608 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:41:57.0192 5608 MSPCLOCK - ok
13:41:57.0223 5608 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:41:57.0239 5608 MSPQM - ok
13:41:57.0270 5608 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:41:57.0270 5608 MsRPC - ok
13:41:57.0301 5608 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:41:57.0301 5608 mssmbios - ok
13:41:57.0333 5608 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:41:57.0333 5608 MSTEE - ok
13:41:57.0348 5608 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
13:41:57.0348 5608 MTConfig - ok
13:41:57.0364 5608 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
13:41:57.0988 5608 Mup - ok
13:41:58.0066 5608 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
13:41:58.0066 5608 napagent - ok
13:41:58.0113 5608 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:41:58.0113 5608 NativeWifiP - ok
13:41:58.0253 5608 [ E4534BCCDD1EA7A7A256BB9D6688A5FC ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe
13:41:58.0269 5608 NAUpdate - ok
13:41:58.0315 5608 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:41:58.0331 5608 NDIS - ok
13:41:58.0362 5608 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:41:58.0378 5608 NdisCap - ok
13:41:58.0393 5608 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:41:58.0409 5608 NdisTapi - ok
13:41:58.0409 5608 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:41:58.0425 5608 Ndisuio - ok
13:41:58.0425 5608 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:41:58.0440 5608 NdisWan - ok
13:41:58.0471 5608 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:41:58.0471 5608 NDProxy - ok
13:41:58.0487 5608 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:41:58.0487 5608 NetBIOS - ok
13:41:58.0503 5608 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:41:58.0503 5608 NetBT - ok
13:41:58.0518 5608 [ 97D879A884E7CDFED51AD63348A35254 ] Netlogon C:\Windows\system32\lsass.exe
13:41:58.0518 5608 Netlogon - ok
13:41:58.0549 5608 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
13:41:58.0549 5608 Netman - ok
13:41:58.0581 5608 [ E58808846B62041BFB05395E1CED6499 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0596 5608 NetMsmqActivator - ok
13:41:58.0596 5608 [ E58808846B62041BFB05395E1CED6499 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0612 5608 NetPipeActivator - ok
13:41:58.0659 5608 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
13:41:58.0659 5608 netprofm - ok
13:41:58.0659 5608 [ E58808846B62041BFB05395E1CED6499 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0659 5608 NetTcpActivator - ok
13:41:58.0674 5608 [ E58808846B62041BFB05395E1CED6499 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0674 5608 NetTcpPortSharing - ok
13:41:58.0705 5608 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
13:41:58.0721 5608 nfrd960 - ok
13:41:58.0752 5608 [ 8B301D474B478E9A92823BAB50A7BC49 ] NlaSvc C:\Windows\System32\nlasvc.dll
13:41:58.0752 5608 NlaSvc - ok
13:41:58.0783 5608 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:41:58.0783 5608 Npfs - ok
13:41:58.0799 5608 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
13:41:58.0815 5608 nsi - ok
13:41:58.0815 5608 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:41:58.0815 5608 nsiproxy - ok
13:41:58.0908 5608 [ 1A29A59A4C5BA6F8C85062A613B7E2B2 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:41:58.0939 5608 Ntfs - ok
13:41:58.0971 5608 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
13:41:58.0971 5608 Null - ok
13:41:59.0002 5608 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:41:59.0002 5608 nvraid - ok
13:41:59.0017 5608 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:41:59.0033 5608 nvstor - ok
13:41:59.0064 5608 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:41:59.0080 5608 nv_agp - ok
13:41:59.0111 5608 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:41:59.0111 5608 ohci1394 - ok
13:41:59.0158 5608 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:41:59.0173 5608 ose64 - ok
13:41:59.0470 5608 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:41:59.0563 5608 osppsvc - ok
13:41:59.0610 5608 [ DC3FA0B732B5EF07C0CDE1682F6D0824 ] OxPPort C:\Windows\system32\drivers\OxPPort.sys
13:41:59.0610 5608 OxPPort - ok
13:41:59.0641 5608 [ 65DCD72F2EE5BA10DC8C7FADA562C456 ] OxSer C:\Windows\system32\drivers\OxSer.sys
13:41:59.0641 5608 OxSer - ok
13:41:59.0657 5608 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:41:59.0673 5608 p2pimsvc - ok
13:41:59.0704 5608 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
13:41:59.0704 5608 p2psvc - ok
13:41:59.0735 5608 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
13:41:59.0735 5608 Parport - ok
13:41:59.0766 5608 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:41:59.0766 5608 partmgr - ok
13:41:59.0813 5608 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C ] PcaSvc C:\Windows\System32\pcasvc.dll
13:41:59.0813 5608 PcaSvc - ok
13:41:59.0829 5608 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
13:41:59.0844 5608 pci - ok
13:41:59.0875 5608 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
13:41:59.0891 5608 pciide - ok
13:41:59.0922 5608 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
13:41:59.0922 5608 pcmcia - ok
13:41:59.0953 5608 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
13:41:59.0953 5608 pcw - ok
13:42:00.0000 5608 [ ED6E75158D28D33A2E2A020AC5B2B59D ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:42:00.0000 5608 PEAUTH - ok
13:42:00.0125 5608 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
13:42:00.0125 5608 PerfHost - ok
13:42:00.0172 5608 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
13:42:00.0203 5608 pla - ok
13:42:00.0250 5608 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:42:00.0250 5608 PlugPlay - ok
13:42:00.0297 5608 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:42:00.0297 5608 PNRPAutoReg - ok
13:42:00.0312 5608 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:42:00.0312 5608 PNRPsvc - ok
13:42:00.0343 5608 [ 9ABFF71FF6F3B9492686D3403FA5DCDB ] Point64 C:\Windows\system32\DRIVERS\point64k.sys
13:42:00.0343 5608 Point64 - ok
13:42:00.0421 5608 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:42:00.0421 5608 PolicyAgent - ok
13:42:00.0453 5608 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
13:42:00.0468 5608 Power - ok
13:42:00.0515 5608 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:42:00.0515 5608 PptpMiniport - ok
13:42:00.0531 5608 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
13:42:00.0531 5608 Processor - ok
13:42:00.0562 5608 [ B6A58491307B4CADA572583D863DC602 ] ProfSvc C:\Windows\system32\profsvc.dll
13:42:00.0577 5608 ProfSvc - ok
13:42:00.0593 5608 [ 97D879A884E7CDFED51AD63348A35254 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:42:00.0593 5608 ProtectedStorage - ok
13:42:00.0609 5608 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:42:00.0609 5608 Psched - ok
13:42:00.0687 5608 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
13:42:00.0733 5608 ql2300 - ok
13:42:00.0749 5608 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
13:42:00.0749 5608 ql40xx - ok
13:42:00.0811 5608 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
13:42:00.0811 5608 QWAVE - ok
13:42:00.0827 5608 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:42:00.0827 5608 QWAVEdrv - ok
13:42:00.0843 5608 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:42:00.0843 5608 RasAcd - ok
13:42:00.0858 5608 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:42:00.0858 5608 RasAgileVpn - ok
13:42:00.0874 5608 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
13:42:00.0874 5608 RasAuto - ok
13:42:00.0889 5608 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:42:00.0889 5608 Rasl2tp - ok
13:42:00.0905 5608 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
13:42:00.0905 5608 RasMan - ok
13:42:00.0921 5608 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:42:00.0921 5608 RasPppoe - ok
13:42:00.0936 5608 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:42:00.0936 5608 RasSstp - ok
13:42:00.0952 5608 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:42:00.0967 5608 rdbss - ok
13:42:00.0983 5608 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
13:42:00.0983 5608 rdpbus - ok
13:42:01.0014 5608 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:42:01.0014 5608 RDPCDD - ok
13:42:01.0045 5608 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:42:01.0045 5608 RDPENCDD - ok
13:42:01.0077 5608 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:42:01.0077 5608 RDPREFMP - ok
13:42:01.0186 5608 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:42:01.0186 5608 RdpVideoMiniport - ok
13:42:01.0217 5608 [ FE571E088C2D83619D2D48D4E961BF41 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:42:01.0233 5608 RDPWD - ok
13:42:01.0248 5608 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:42:01.0248 5608 rdyboost - ok
13:42:01.0279 5608 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
13:42:01.0279 5608 RemoteAccess - ok
13:42:01.0311 5608 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:42:01.0311 5608 RemoteRegistry - ok
13:42:01.0342 5608 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:42:01.0342 5608 RpcEptMapper - ok
13:42:01.0357 5608 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
13:42:01.0357 5608 RpcLocator - ok
13:42:01.0451 5608 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
13:42:01.0482 5608 RpcSs - ok
13:42:01.0513 5608 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:42:01.0513 5608 rspndr - ok
13:42:01.0562 5608 [ AFC12DFA4C7B089673AD67402CA19EDB ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
13:42:01.0562 5608 RTL8167 - ok
13:42:01.0593 5608 [ C979AB0ECAE51A091770A54CF64D791B ] RTL8187B C:\Windows\system32\DRIVERS\wg111v3.sys
13:42:01.0593 5608 RTL8187B - ok
13:42:01.0609 5608 [ 97D879A884E7CDFED51AD63348A35254 ] SamSs C:\Windows\system32\lsass.exe
13:42:01.0609 5608 SamSs - ok
13:42:01.0656 5608 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:42:01.0671 5608 sbp2port - ok
13:42:01.0687 5608 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:42:01.0703 5608 SCardSvr - ok
13:42:01.0718 5608 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:42:01.0718 5608 scfilter - ok
13:42:01.0781 5608 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
13:42:01.0796 5608 Schedule - ok
13:42:01.0812 5608 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:42:01.0812 5608 SCPolicySvc - ok
13:42:01.0827 5608 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:42:01.0827 5608 SDRSVC - ok
13:42:01.0859 5608 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:42:01.0859 5608 secdrv - ok
13:42:01.0859 5608 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
13:42:01.0859 5608 seclogon - ok
13:42:01.0874 5608 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
13:42:01.0874 5608 SENS - ok
13:42:01.0890 5608 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:42:01.0905 5608 SensrSvc - ok
13:42:01.0921 5608 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys
13:42:01.0921 5608 Serenum - ok
13:42:01.0952 5608 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys
13:42:01.0952 5608 Serial - ok
13:42:01.0952 5608 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
13:42:01.0952 5608 sermouse - ok
13:42:01.0983 5608 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
13:42:01.0983 5608 SessionEnv - ok
13:42:02.0015 5608 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
13:42:02.0030 5608 sffdisk - ok
13:42:02.0046 5608 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:42:02.0046 5608 sffp_mmc - ok
13:42:02.0061 5608 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
13:42:02.0061 5608 sffp_sd - ok
13:42:02.0093 5608 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
13:42:02.0093 5608 sfloppy - ok
13:42:02.0124 5608 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:42:02.0124 5608 SharedAccess - ok
13:42:02.0155 5608 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:42:02.0155 5608 ShellHWDetection - ok
13:42:02.0186 5608 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
13:42:02.0186 5608 SiSRaid2 - ok
13:42:02.0202 5608 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
13:42:02.0202 5608 SiSRaid4 - ok
13:42:02.0217 5608 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:42:02.0217 5608 Smb - ok
13:42:02.0249 5608 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:42:02.0249 5608 SNMPTRAP - ok
13:42:02.0249 5608 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
13:42:02.0264 5608 spldr - ok
13:42:02.0327 5608 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
13:42:02.0327 5608 Spooler - ok
13:42:02.0389 5608 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
13:42:02.0467 5608 sppsvc - ok
13:42:02.0483 5608 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:42:02.0498 5608 sppuinotify - ok
13:42:02.0529 5608 sp_rssrv - ok
13:42:02.0592 5608 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
13:42:02.0607 5608 srv - ok
13:42:02.0623 5608 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:42:02.0623 5608 srv2 - ok
13:42:02.0639 5608 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:42:02.0639 5608 srvnet - ok
13:42:02.0670 5608 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:42:02.0685 5608 SSDPSRV - ok
13:42:02.0701 5608 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:42:02.0701 5608 SstpSvc - ok
13:42:02.0732 5608 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
13:42:02.0748 5608 stexstor - ok
13:42:02.0795 5608 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
13:42:02.0810 5608 stisvc - ok
13:42:02.0826 5608 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
13:42:02.0826 5608 swenum - ok
13:42:02.0857 5608 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
13:42:02.0873 5608 swprv - ok
13:42:02.0904 5608 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
13:42:02.0919 5608 SysMain - ok
13:42:02.0935 5608 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:42:02.0935 5608 TabletInputService - ok
13:42:02.0951 5608 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
13:42:02.0951 5608 TapiSrv - ok
13:42:02.0966 5608 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
13:42:02.0966 5608 TBS - ok
13:42:03.0075 5608 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:42:03.0091 5608 Tcpip - ok
13:42:03.0153 5608 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:42:03.0153 5608 TCPIP6 - ok
13:42:03.0185 5608 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:42:03.0185 5608 tcpipreg - ok
13:42:03.0247 5608 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:42:03.0247 5608 TDPIPE - ok
13:42:03.0309 5608 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:42:03.0309 5608 TDTCP - ok
13:42:03.0356 5608 [ 70988118145F5F10EF24720B97F35F65 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:42:03.0387 5608 tdx - ok
13:42:03.0434 5608 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:42:03.0434 5608 TermDD - ok
13:42:03.0528 5608 [ 008CD4EBFABCF78D0F19B3778492648C ] TermService C:\Windows\System32\termsrv.dll
13:42:03.0559 5608 TermService - ok
13:42:03.0590 5608 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
13:42:03.0590 5608 Themes - ok
13:42:03.0606 5608 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
13:42:03.0621 5608 THREADORDER - ok
13:42:03.0637 5608 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
13:42:03.0637 5608 TrkWks - ok
13:42:03.0777 5608 [ B66EE1D68197DFB9AA24F961E68ACDCC ] trufos C:\Windows\system32\drivers\trufos.sys
13:42:03.0793 5608 trufos - ok
13:42:03.0871 5608 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:42:03.0871 5608 TrustedInstaller - ok
13:42:03.0918 5608 [ E232A3B43A894BB327FC161529BD9ED1 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:42:03.0918 5608 tssecsrv - ok
13:42:03.0980 5608 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:42:04.0011 5608 TsUsbFlt - ok
13:42:04.0043 5608 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
13:42:04.0074 5608 TsUsbGD - ok
13:42:04.0121 5608 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:42:04.0152 5608 tunnel - ok
13:42:04.0167 5608 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
13:42:04.0183 5608 uagp35 - ok
13:42:04.0199 5608 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:42:04.0230 5608 udfs - ok
13:42:04.0277 5608 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:42:04.0292 5608 UI0Detect - ok
13:42:04.0308 5608 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:42:04.0323 5608 uliagpkx - ok
13:42:04.0370 5608 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
13:42:04.0370 5608 umbus - ok
13:42:04.0401 5608 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
13:42:04.0433 5608 UmPass - ok
13:42:04.0495 5608 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
13:42:04.0526 5608 upnphost - ok
13:42:04.0557 5608 [ DCA68B0943D6FA415F0C56C92158A83A ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:42:04.0573 5608 usbccgp - ok
13:42:04.0635 5608 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys
13:42:04.0651 5608 usbcir - ok
13:42:04.0682 5608 [ 18A85013A3E0F7E1755365D287443965 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
13:42:04.0682 5608 usbehci - ok
13:42:04.0760 5608 [ 8D1196CFBB223621F2C67D45710F25BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:42:04.0776 5608 usbhub - ok
13:42:04.0776 5608 [ 765A92D428A8DB88B960DA5A8D6089DC ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:42:04.0776 5608 usbohci - ok
13:42:04.0807 5608 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:42:04.0807 5608 usbprint - ok
13:42:04.0838 5608 [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
13:42:04.0854 5608 usbscan - ok
13:42:04.0869 5608 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:42:04.0869 5608 USBSTOR - ok
13:42:04.0901 5608 [ DD253AFC3BC6CBA412342DE60C3647F3 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
13:42:04.0901 5608 usbuhci - ok
13:42:04.0916 5608 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
13:42:04.0932 5608 UxSms - ok
13:42:04.0947 5608 [ 97D879A884E7CDFED51AD63348A35254 ] VaultSvc C:\Windows\system32\lsass.exe
13:42:04.0947 5608 VaultSvc - ok
13:42:04.0963 5608 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:42:04.0963 5608 vdrvroot - ok
13:42:04.0994 5608 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
13:42:04.0994 5608 vds - ok
13:42:05.0025 5608 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:42:05.0025 5608 vga - ok
13:42:05.0041 5608 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
13:42:05.0057 5608 VgaSave - ok
13:42:05.0072 5608 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:42:05.0072 5608 vhdmp - ok
13:42:05.0103 5608 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
13:42:05.0103 5608 viaide - ok
13:42:05.0119 5608 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:42:05.0135 5608 volmgr - ok
13:42:05.0166 5608 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:42:05.0166 5608 volmgrx - ok
13:42:05.0181 5608 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:42:05.0181 5608 volsnap - ok
13:42:05.0244 5608 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
13:42:05.0259 5608 vsmraid - ok
13:42:05.0291 5608 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
13:42:05.0322 5608 VSS - ok
13:42:05.0540 5608 [ 09E2679BC114A4B4CF99517CCA848F0D ] vToolbarUpdater18.7.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe
13:42:05.0540 5608 vToolbarUpdater18.7.0 - ok
13:42:05.0571 5608 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:42:05.0587 5608 vwifibus - ok
13:42:05.0603 5608 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
13:42:05.0603 5608 W32Time - ok
13:42:05.0618 5608 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
13:42:05.0634 5608 WacomPen - ok
13:42:05.0649 5608 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:42:05.0649 5608 WANARP - ok
13:42:05.0649 5608 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:42:05.0649 5608 Wanarpv6 - ok
13:42:05.0759 5608 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:42:05.0805 5608 WatAdminSvc - ok
13:42:05.0837 5608 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
13:42:05.0883 5608 wbengine - ok
13:42:05.0899 5608 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:42:05.0899 5608 WbioSrvc - ok
13:42:05.0915 5608 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:42:05.0915 5608 wcncsvc - ok
13:42:05.0946 5608 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:42:05.0946 5608 WcsPlugInService - ok
13:42:05.0977 5608 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
13:42:05.0993 5608 Wd - ok
13:42:06.0039 5608 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:42:06.0039 5608 Wdf01000 - ok
13:42:06.0071 5608 [ C6F7473B55510F0B93961DA03D8E3B38 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:42:06.0086 5608 WdiServiceHost - ok
13:42:06.0102 5608 [ C6F7473B55510F0B93961DA03D8E3B38 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:42:06.0102 5608 WdiSystemHost - ok
13:42:06.0149 5608 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll
13:42:06.0164 5608 WebClient - ok
13:42:06.0180 5608 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:42:06.0195 5608 Wecsvc - ok
13:42:06.0211 5608 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:42:06.0211 5608 wercplsupport - ok
13:42:06.0258 5608 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
13:42:06.0258 5608 WerSvc - ok
13:42:06.0289 5608 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:42:06.0305 5608 WfpLwf - ok
13:42:06.0305 5608 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:42:06.0320 5608 WIMMount - ok
13:42:06.0336 5608 WinDefend - ok
13:42:06.0351 5608 WinHttpAutoProxySvc - ok
13:42:06.0461 5608 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:42:06.0476 5608 Winmgmt - ok
13:42:06.0523 5608 [ D929ABD465A2DED963DA8B30946A8D5C ] WinRM C:\Windows\system32\WsmSvc.dll
13:42:06.0601 5608 WinRM - ok
13:42:06.0648 5608 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\drivers\WinUsb.sys
13:42:06.0648 5608 WinUsb - ok
13:42:06.0679 5608 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
13:42:06.0679 5608 Wlansvc - ok
13:42:06.0819 5608 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:42:06.0882 5608 wlidsvc - ok
13:42:06.0913 5608 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:42:06.0929 5608 WmiAcpi - ok
13:42:06.0960 5608 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:42:06.0960 5608 wmiApSrv - ok
13:42:07.0007 5608 WMPNetworkSvc - ok
13:42:07.0007 5608 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:42:07.0022 5608 WPCSvc - ok
13:42:07.0022 5608 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:42:07.0038 5608 WPDBusEnum - ok
13:42:07.0053 5608 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:42:07.0053 5608 ws2ifsl - ok
13:42:07.0069 5608 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
13:42:07.0085 5608 wscsvc - ok
13:42:07.0085 5608 WSearch - ok
13:42:07.0397 5608 [ AA3E844A2595B1AA5825C70CA50D963E ] wuauserv C:\Windows\system32\wuaueng.dll
13:42:07.0443 5608 wuauserv - ok
13:42:07.0506 5608 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:42:07.0506 5608 WudfPf - ok
13:42:07.0537 5608 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\drivers\WUDFRd.sys
13:42:07.0537 5608 WUDFRd - ok
13:42:07.0584 5608 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:42:07.0584 5608 wudfsvc - ok
13:42:07.0631 5608 [ 04F82965C09CBDF646B487E145060301 ] WwanSvc C:\Windows\System32\wwansvc.dll
13:42:07.0631 5608 WwanSvc - ok
13:42:07.0693 5608 ================ Scan global ===============================
13:42:07.0740 5608 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
13:42:07.0787 5608 [ 2313AF8D5A9CEB4A55400A01DD311A95 ] C:\Windows\system32\winsrv.dll
13:42:07.0802 5608 [ 2313AF8D5A9CEB4A55400A01DD311A95 ] C:\Windows\system32\winsrv.dll
13:42:07.0833 5608 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
13:42:07.0880 5608 [ 71C85477DF9347FE8E7BC55768473FCA ] C:\Windows\system32\services.exe
13:42:07.0880 5608 [Global] - ok
13:42:07.0880 5608 ================ Scan MBR ==================================
13:42:07.0896 5608 [ DD2240E25BB8B36369185729A6F4CD16 ] \Device\Harddisk0\DR0
13:42:08.0442 5608 \Device\Harddisk0\DR0 - ok
13:42:08.0442 5608 ================ Scan VBR ==================================
13:42:08.0457 5608 [ 764AC93A7E2609A62E27E9C63C148BF5 ] \Device\Harddisk0\DR0\Partition1
13:42:08.0473 5608 \Device\Harddisk0\DR0\Partition1 - ok
13:42:08.0489 5608 [ 9EF33B9CC48E61EDB10EAA8FD5C03EBA ] \Device\Harddisk0\DR0\Partition2
13:42:08.0520 5608 \Device\Harddisk0\DR0\Partition2 - ok
13:42:08.0551 5608 [ 4F99FD7A00055575289990ED4D4ECAC7 ] \Device\Harddisk0\DR0\Partition3
13:42:08.0551 5608 \Device\Harddisk0\DR0\Partition3 - ok
13:42:08.0567 5608 ============================================================
13:42:08.0567 5608 Scan finished
13:42:08.0567 5608 ============================================================
13:42:08.0582 5628 Detected object count: 0
13:42:08.0582 5628 Actual detected object count: 0
13:42:13.0761 3700 Deinitialize success
# AdwCleaner v2.304 - Log vytvooen 02/08/2015 v 13:40:40
# Aktualizováno 03/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Vladimír Škrna - VLADIMIRSKRNA
# Spuštin systém : Normální
# Spuštino z : C:\Users\Vladimír Škrna\Desktop\adwcleaner.exe
# Volba [Vymazat]
***** [Služby] *****
ystemLook 30.07.11 by jpshortstuff
Log created at 15:00 on 02/08/2015 by Vladimír Škrna
Administrator - Elevation successful
========== regfind ==========
Searching for "start.vbs"
No data found.
-= EOF =-
13:41:19.0471 3728 ============================================================
13:41:19.0471 3728 Current date / time: 2015/08/02 13:41:19.0471
13:41:19.0471 3728 SystemInfo:
13:41:19.0471 3728
13:41:19.0471 3728 OS Version: 6.1.7601 ServicePack: 1.0
13:41:19.0471 3728 Product type: Workstation
13:41:19.0471 3728 ComputerName: VLADIMIRSKRNA
13:41:19.0471 3728 UserName: Vladimír Škrna
13:41:19.0471 3728 Windows directory: C:\Windows
13:41:19.0471 3728 System windows directory: C:\Windows
13:41:19.0471 3728 Running under WOW64
13:41:19.0471 3728 Processor architecture: Intel x64
13:41:19.0471 3728 Number of processors: 2
13:41:19.0471 3728 Page size: 0x1000
13:41:19.0471 3728 Boot type: Normal boot
13:41:19.0471 3728 ============================================================
13:41:24.0167 3728 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:41:24.0183 3728 ============================================================
13:41:24.0183 3728 \Device\Harddisk0\DR0:
13:41:24.0183 3728 MBR partitions:
13:41:24.0183 3728 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
13:41:24.0183 3728 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x55DEF800
13:41:24.0183 3728 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x55E22000, BlocksNum 0x1723800
13:41:24.0183 3728 ============================================================
13:41:24.0198 3728 C: <-> \Device\Harddisk0\DR0\Partition2
13:41:24.0370 3728 D: <-> \Device\Harddisk0\DR0\Partition3
13:41:24.0370 3728 ============================================================
13:41:24.0370 3728 Initialize success
13:41:24.0370 3728 ============================================================
13:41:38.0425 5608 ============================================================
13:41:38.0425 5608 Scan started
13:41:38.0425 5608 Mode: Manual;
13:41:38.0425 5608 ============================================================
13:41:41.0077 5608 ================ Scan system memory ========================
13:41:41.0077 5608 System memory - ok
13:41:41.0077 5608 ================ Scan services =============================
13:41:41.0748 5608 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:41:41.0764 5608 1394ohci - ok
13:41:41.0795 5608 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:41:41.0795 5608 ACPI - ok
13:41:41.0857 5608 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:41:41.0857 5608 AcpiPmi - ok
13:41:42.0076 5608 [ 013697369EAFFA675D0671607F036020 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:41:42.0076 5608 AdobeARMservice - ok
13:41:42.0138 5608 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
13:41:42.0154 5608 adp94xx - ok
13:41:42.0185 5608 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
13:41:42.0185 5608 adpahci - ok
13:41:42.0216 5608 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
13:41:42.0216 5608 adpu320 - ok
13:41:42.0263 5608 [ 83BFCCAC53795E8A5055A93672D0C46C ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:41:42.0263 5608 AeLookupSvc - ok
13:41:42.0325 5608 [ FA886682CFC5D36718D3E436AACF10B9 ] AFD C:\Windows\system32\drivers\afd.sys
13:41:42.0325 5608 AFD - ok
13:41:42.0341 5608 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
13:41:42.0341 5608 agp440 - ok
13:41:42.0372 5608 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
13:41:42.0372 5608 ALG - ok
13:41:42.0403 5608 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
13:41:42.0419 5608 aliide - ok
13:41:42.0544 5608 [ E4DA723458A20FBA693FB1F5924483DB ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
13:41:42.0544 5608 AMD External Events Utility - ok
13:41:42.0575 5608 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
13:41:42.0591 5608 amdide - ok
13:41:42.0622 5608 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
13:41:42.0637 5608 AmdK8 - ok
13:41:43.0090 5608 [ F894BFB5817718D50CE0122B7806B457 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
13:41:43.0308 5608 amdkmdag - ok
13:41:43.0355 5608 [ B12E7BE6715F3EE1A913A806F6B0AB94 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
13:41:43.0355 5608 amdkmdap - ok
13:41:43.0371 5608 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
13:41:43.0386 5608 AmdPPM - ok
13:41:43.0402 5608 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:41:43.0417 5608 amdsata - ok
13:41:43.0480 5608 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
13:41:43.0495 5608 amdsbs - ok
13:41:43.0527 5608 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:41:43.0527 5608 amdxata - ok
13:41:43.0605 5608 [ 90C53BD47979FB8814F465A08B885102 ] AppID C:\Windows\system32\drivers\appid.sys
13:41:43.0636 5608 AppID - ok
13:41:43.0651 5608 [ 72D4757510FDA69D729169C00AFC211E ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:41:43.0651 5608 AppIDSvc - ok
13:41:43.0698 5608 [ 978DC0A1FBE9CC91B21B40AF66CB396A ] Appinfo C:\Windows\System32\appinfo.dll
13:41:43.0698 5608 Appinfo - ok
13:41:43.0776 5608 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
13:41:43.0792 5608 arc - ok
13:41:43.0807 5608 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
13:41:43.0823 5608 arcsas - ok
13:41:44.0182 5608 [ F15AB80B867D3332D5DDFB0A05B9CE04 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
13:41:44.0213 5608 aspnet_state - ok
13:41:44.0244 5608 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:41:44.0244 5608 AsyncMac - ok
13:41:44.0275 5608 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
13:41:44.0275 5608 atapi - ok
13:41:44.0416 5608 [ 4BF5BCA6E2608CD8A00BC4A6673A9F47 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
13:41:44.0416 5608 AtiHDAudioService - ok
13:41:44.0509 5608 [ 6968D02DC38757C3FBE7ED7C2F9670AA ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:41:44.0509 5608 AudioEndpointBuilder - ok
13:41:44.0634 5608 [ 6968D02DC38757C3FBE7ED7C2F9670AA ] AudioSrv C:\Windows\System32\Audiosrv.dll
13:41:44.0634 5608 AudioSrv - ok
13:41:44.0743 5608 [ E7C8FBDCB1C079C332F962DD1C075E5E ] Avgdiska C:\Windows\system32\DRIVERS\avgdiska.sys
13:41:44.0743 5608 Avgdiska - ok
13:41:44.0806 5608 [ 64A90A57573D0E7421900383223AF7A5 ] Avgfwfd C:\Windows\system32\DRIVERS\avgfwd6a.sys
13:41:44.0806 5608 Avgfwfd - ok
13:41:44.0977 5608 [ BAA40C8AC63AB0497842BDAA9B43C0B6 ] avgfws C:\Program Files (x86)\AVG\AVG2015\avgfws.exe
13:41:44.0993 5608 avgfws - ok
13:41:45.0352 5608 [ E7FAE655001C18A7ECBD58B3BA971BF9 ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
13:41:45.0367 5608 AVGIDSAgent - ok
13:41:45.0477 5608 [ E3DC1089EDAD57F5279804167E6142E9 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys
13:41:45.0477 5608 AVGIDSDriver - ok
13:41:45.0555 5608 [ 54384FC2230B4469E7EDF938B7CF5FF7 ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys
13:41:45.0555 5608 AVGIDSHA - ok
13:41:45.0664 5608 [ 0CFB17D66DC1D76214F50E33C41CC8B6 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys
13:41:45.0664 5608 Avgldx64 - ok
13:41:45.0820 5608 [ 7EC2B7BBA7A30691D2E0D8478F219B90 ] Avgloga C:\Windows\system32\DRIVERS\avgloga.sys
13:41:45.0820 5608 Avgloga - ok
13:41:45.0898 5608 [ BC3016B9921753DD3A3CF1082FBCF146 ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys
13:41:45.0898 5608 Avgmfx64 - ok
13:41:45.0976 5608 [ 719EF00B1C5BED9CF5675274A4F774B9 ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys
13:41:45.0976 5608 Avgrkx64 - ok
13:41:46.0085 5608 [ EB9606C7C31E2C90BD9A81B0BEE01C28 ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys
13:41:46.0085 5608 Avgtdia - ok
13:41:46.0147 5608 [ 7688C67BDF55500C1FDC8291230C397D ] avgtp C:\Windows\system32\drivers\avgtpx64.sys
13:41:46.0147 5608 avgtp - ok
13:41:46.0241 5608 [ FE9742B20DD5FCF12D245D08BF5AAF98 ] avgwd C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
13:41:46.0241 5608 avgwd - ok
13:41:46.0319 5608 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:41:46.0335 5608 AxInstSV - ok
13:41:46.0381 5608 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
13:41:46.0397 5608 b06bdrv - ok
13:41:46.0428 5608 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
13:41:46.0444 5608 b57nd60a - ok
13:41:46.0522 5608 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
13:41:46.0537 5608 BDESVC - ok
13:41:46.0600 5608 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
13:41:46.0631 5608 Beep - ok
13:41:46.0709 5608 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
13:41:46.0725 5608 BFE - ok
13:41:46.0803 5608 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
13:41:46.0818 5608 BITS - ok
13:41:46.0865 5608 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
13:41:46.0865 5608 blbdrive - ok
13:41:46.0881 5608 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:41:46.0881 5608 bowser - ok
13:41:46.0927 5608 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
13:41:46.0927 5608 BrFiltLo - ok
13:41:46.0959 5608 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
13:41:46.0959 5608 BrFiltUp - ok
13:41:46.0974 5608 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
13:41:46.0990 5608 BridgeMP - ok
13:41:47.0021 5608 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
13:41:47.0021 5608 Browser - ok
13:41:47.0068 5608 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:41:47.0068 5608 Brserid - ok
13:41:47.0083 5608 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:41:47.0099 5608 BrSerWdm - ok
13:41:47.0115 5608 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:41:47.0130 5608 BrUsbMdm - ok
13:41:47.0146 5608 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:41:47.0161 5608 BrUsbSer - ok
13:41:47.0239 5608 [ 065818B8A2CD7F08D6DC8C598191548C ] BrYNSvc C:\Program Files (x86)\Browny02\BrYNSvc.exe
13:41:47.0239 5608 BrYNSvc - ok
13:41:47.0255 5608 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
13:41:47.0271 5608 BTHMODEM - ok
13:41:47.0302 5608 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
13:41:47.0317 5608 bthserv - ok
13:41:47.0364 5608 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:41:47.0380 5608 cdfs - ok
13:41:47.0458 5608 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:41:47.0458 5608 cdrom - ok
13:41:47.0551 5608 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
13:41:47.0551 5608 CertPropSvc - ok
13:41:47.0598 5608 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
13:41:47.0614 5608 circlass - ok
13:41:47.0723 5608 [ 404B7DF9CA4D1CB675045AF220FF3285 ] CLFS C:\Windows\system32\CLFS.sys
13:41:47.0754 5608 CLFS - ok
13:41:47.0910 5608 [ F13EC8A783E0CB0D6DC26A3CA848B7B8 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:41:47.0910 5608 clr_optimization_v2.0.50727_32 - ok
13:41:47.0957 5608 [ B4D73F04E9BC076F7CDAC4327DF636BB ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:41:47.0973 5608 clr_optimization_v2.0.50727_64 - ok
13:41:48.0300 5608 [ F5AB4D2E36625F355E81539239765107 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:41:48.0628 5608 clr_optimization_v4.0.30319_32 - ok
13:41:48.0659 5608 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:41:48.0784 5608 clr_optimization_v4.0.30319_64 - ok
13:41:48.0831 5608 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
13:41:48.0846 5608 CmBatt - ok
13:41:48.0877 5608 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:41:48.0893 5608 cmdide - ok
13:41:49.0002 5608 [ 27667A788130A7F7A5858DE27572E6D7 ] CNG C:\Windows\system32\Drivers\cng.sys
13:41:49.0033 5608 CNG - ok
13:41:49.0049 5608 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
13:41:49.0065 5608 Compbatt - ok
13:41:49.0096 5608 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:41:49.0096 5608 CompositeBus - ok
13:41:49.0111 5608 COMSysApp - ok
13:41:49.0143 5608 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
13:41:49.0174 5608 crcdisk - ok
13:41:49.0221 5608 [ 7BC3E861F7E8EB543A630090FAE779E0 ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:41:49.0236 5608 CryptSvc - ok
13:41:49.0299 5608 [ 69D0A8F65F639D752E018F256BCD3DE3 ] dc3d C:\Windows\system32\DRIVERS\dc3d.sys
13:41:49.0299 5608 dc3d - ok
13:41:49.0392 5608 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
13:41:49.0408 5608 DcomLaunch - ok
13:41:49.0486 5608 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
13:41:49.0486 5608 defragsvc - ok
13:41:49.0564 5608 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:41:49.0579 5608 DfsC - ok
13:41:49.0657 5608 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
13:41:49.0657 5608 Dhcp - ok
13:41:49.0876 5608 [ AA5319FA8602676B5D3A2B4A1355896D ] DiagTrack C:\Windows\system32\diagtrack.dll
13:41:49.0891 5608 DiagTrack - ok
13:41:49.0938 5608 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
13:41:49.0938 5608 discache - ok
13:41:49.0969 5608 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
13:41:49.0969 5608 Disk - ok
13:41:49.0985 5608 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:41:49.0985 5608 Dnscache - ok
13:41:50.0001 5608 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
13:41:50.0016 5608 dot3svc - ok
13:41:50.0032 5608 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
13:41:50.0032 5608 DPS - ok
13:41:50.0063 5608 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:41:50.0063 5608 drmkaud - ok
13:41:50.0110 5608 [ 87CE5C8965E101CCCED1F4675557E868 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:41:50.0110 5608 DXGKrnl - ok
13:41:50.0141 5608 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
13:41:50.0141 5608 EapHost - ok
13:41:50.0203 5608 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
13:41:50.0266 5608 ebdrv - ok
13:41:50.0297 5608 [ 97D879A884E7CDFED51AD63348A35254 ] EFS C:\Windows\System32\lsass.exe
13:41:50.0297 5608 EFS - ok
13:41:50.0422 5608 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:41:50.0422 5608 ehRecvr - ok
13:41:50.0484 5608 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
13:41:50.0484 5608 ehSched - ok
13:41:50.0562 5608 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
13:41:50.0578 5608 elxstor - ok
13:41:50.0609 5608 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:41:50.0625 5608 ErrDev - ok
13:41:50.0781 5608 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
13:41:50.0796 5608 EventSystem - ok
13:41:50.0859 5608 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
13:41:50.0874 5608 exfat - ok
13:41:50.0905 5608 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:41:50.0921 5608 fastfat - ok
13:41:51.0030 5608 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
13:41:51.0046 5608 Fax - ok
13:41:51.0077 5608 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
13:41:51.0077 5608 fdc - ok
13:41:51.0108 5608 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
13:41:51.0108 5608 fdPHost - ok
13:41:51.0139 5608 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
13:41:51.0171 5608 FDResPub - ok
13:41:51.0202 5608 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:41:51.0202 5608 FileInfo - ok
13:41:51.0233 5608 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:41:51.0233 5608 Filetrace - ok
13:41:51.0264 5608 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
13:41:51.0280 5608 flpydisk - ok
13:41:51.0342 5608 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:41:51.0342 5608 FltMgr - ok
13:41:51.0420 5608 [ E612E86FA15EA1EF9A52433A2743C447 ] FontCache C:\Windows\system32\FntCache.dll
13:41:51.0436 5608 FontCache - ok
13:41:51.0498 5608 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:41:51.0498 5608 FontCache3.0.0.0 - ok
13:41:51.0545 5608 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:41:51.0561 5608 FsDepends - ok
13:41:51.0592 5608 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:41:51.0592 5608 Fs_Rec - ok
13:41:51.0701 5608 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:41:51.0701 5608 fvevol - ok
13:41:51.0763 5608 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
13:41:51.0779 5608 gagp30kx - ok
13:41:51.0888 5608 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
13:41:51.0888 5608 gpsvc - ok
13:41:52.0044 5608 [ 51508F0C2476177E50C31B0BBFBF1BDB ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:41:52.0044 5608 gupdate - ok
13:41:52.0044 5608 [ 51508F0C2476177E50C31B0BBFBF1BDB ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:41:52.0060 5608 gupdatem - ok
13:41:52.0075 5608 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:41:52.0091 5608 hcw85cir - ok
13:41:52.0185 5608 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:41:52.0200 5608 HdAudAddService - ok
13:41:52.0247 5608 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
13:41:52.0278 5608 HDAudBus - ok
13:41:52.0294 5608 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
13:41:52.0294 5608 HidBatt - ok
13:41:52.0372 5608 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
13:41:52.0372 5608 HidBth - ok
13:41:52.0450 5608 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
13:41:52.0465 5608 HidIr - ok
13:41:52.0481 5608 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
13:41:52.0497 5608 hidserv - ok
13:41:52.0590 5608 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
13:41:52.0621 5608 HidUsb - ok
13:41:52.0653 5608 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:41:52.0668 5608 hkmsvc - ok
13:41:52.0684 5608 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:41:52.0699 5608 HomeGroupListener - ok
13:41:52.0746 5608 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:41:52.0762 5608 HomeGroupProvider - ok
13:41:52.0871 5608 [ 77E81E788CC63E65272A7D247F441505 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
13:41:52.0871 5608 HP Support Assistant Service - ok
13:41:52.0965 5608 [ 6A181452D4E240B8ECC7614B9A19BDE9 ] HPClientSvc C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
13:41:52.0965 5608 HPClientSvc - ok
13:41:53.0043 5608 [ D2946D9F020AE76E9CEF9B4A6DF838C0 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
13:41:53.0074 5608 hpqwmiex - ok
13:41:53.0121 5608 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:41:53.0121 5608 HpSAMD - ok
13:41:53.0199 5608 [ F61634BEC53F73702A10DE69F6DCAF57 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:41:53.0214 5608 HTTP - ok
13:41:53.0261 5608 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:41:53.0261 5608 hwpolicy - ok
13:41:53.0308 5608 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
13:41:53.0308 5608 i8042prt - ok
13:41:53.0417 5608 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:41:53.0417 5608 iaStorV - ok
13:41:53.0542 5608 [ C98A5B9D932430AD8EEBD3EF73756EF7 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:41:53.0589 5608 idsvc - ok
13:41:53.0651 5608 IEEtwCollectorService - ok
13:41:53.0994 5608 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
13:41:54.0119 5608 igfx - ok
13:41:54.0150 5608 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
13:41:54.0150 5608 iirsp - ok
13:41:54.0197 5608 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT C:\Windows\System32\ikeext.dll
13:41:54.0213 5608 IKEEXT - ok
13:41:54.0369 5608 [ 589B94A9B73A0E819FF873743A480834 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:41:54.0384 5608 IntcAzAudAddService - ok
13:41:54.0415 5608 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
13:41:54.0415 5608 intelide - ok
13:41:54.0447 5608 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:41:54.0447 5608 intelppm - ok
13:41:54.0478 5608 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:41:54.0478 5608 IPBusEnum - ok
13:41:54.0493 5608 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:41:54.0509 5608 IpFilterDriver - ok
13:41:54.0587 5608 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:41:54.0587 5608 iphlpsvc - ok
13:41:54.0634 5608 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:41:54.0634 5608 IPMIDRV - ok
13:41:54.0681 5608 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:41:54.0696 5608 IPNAT - ok
13:41:54.0743 5608 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:41:54.0743 5608 IRENUM - ok
13:41:54.0759 5608 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:41:54.0774 5608 isapnp - ok
13:41:54.0805 5608 [ 96BB922A0981BC7432C8CF52B5410FE6 ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:41:54.0821 5608 iScsiPrt - ok
13:41:54.0852 5608 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
13:41:54.0852 5608 kbdclass - ok
13:41:54.0899 5608 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
13:41:54.0915 5608 kbdhid - ok
13:41:54.0930 5608 [ 97D879A884E7CDFED51AD63348A35254 ] KeyIso C:\Windows\system32\lsass.exe
13:41:54.0930 5608 KeyIso - ok
13:41:54.0961 5608 [ C0A6C3D6E02B61B5D100FE17306C276F ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:41:54.0961 5608 KSecDD - ok
13:41:54.0977 5608 [ 7A7328E427694CC7244235C3BC299F80 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:41:54.0977 5608 KSecPkg - ok
13:41:55.0008 5608 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
13:41:55.0008 5608 ksthunk - ok
13:41:55.0039 5608 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
13:41:55.0039 5608 KtmRm - ok
13:41:55.0071 5608 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
13:41:55.0071 5608 LanmanServer - ok
13:41:55.0086 5608 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:41:55.0102 5608 LanmanWorkstation - ok
13:41:55.0133 5608 [ FA4A45C179AB0E0F1A31B9751D4B18D7 ] LightScribeService c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
13:41:55.0164 5608 LightScribeService - ok
13:41:55.0211 5608 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:41:55.0211 5608 lltdio - ok
13:41:55.0273 5608 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:41:55.0289 5608 lltdsvc - ok
13:41:55.0320 5608 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:41:55.0320 5608 lmhosts - ok
13:41:55.0398 5608 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
13:41:55.0414 5608 LSI_FC - ok
13:41:55.0445 5608 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
13:41:55.0445 5608 LSI_SAS - ok
13:41:55.0461 5608 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
13:41:55.0492 5608 LSI_SAS2 - ok
13:41:55.0507 5608 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
13:41:55.0523 5608 LSI_SCSI - ok
13:41:55.0570 5608 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
13:41:55.0570 5608 luafv - ok
13:41:55.0663 5608 [ A8D28D5B3E2A528D1EF0E338E44F2820 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
13:41:55.0663 5608 MBAMProtector - ok
13:41:55.0835 5608 [ 83C982A395D00BAFF6515FB38424EA76 ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
13:41:55.0835 5608 MBAMService - ok
13:41:55.0897 5608 [ AE757332EA130E94E646621CC695B52A ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
13:41:55.0897 5608 MBAMWebAccessControl - ok
13:41:56.0100 5608 [ 61E27025735991FB61E2B5324357CEE5 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe
13:41:56.0116 5608 McComponentHostService - ok
13:41:56.0163 5608 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:41:56.0178 5608 Mcx2Svc - ok
13:41:56.0194 5608 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
13:41:56.0194 5608 megasas - ok
13:41:56.0225 5608 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
13:41:56.0225 5608 MegaSR - ok
13:41:56.0319 5608 Microsoft SharePoint Workspace Audit Service - ok
13:41:56.0350 5608 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
13:41:56.0350 5608 MMCSS - ok
13:41:56.0397 5608 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
13:41:56.0397 5608 Modem - ok
13:41:56.0428 5608 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:41:56.0428 5608 monitor - ok
13:41:56.0443 5608 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:41:56.0459 5608 mouclass - ok
13:41:56.0475 5608 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:41:56.0475 5608 mouhid - ok
13:41:56.0521 5608 [ 87BCD1034CBF33537D4D4C251D39BA26 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:41:56.0521 5608 mountmgr - ok
13:41:56.0553 5608 [ 81E8AF6407EC3F41908FE37F054353EA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:41:56.0553 5608 MozillaMaintenance - ok
13:41:56.0584 5608 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
13:41:56.0584 5608 mpio - ok
13:41:56.0631 5608 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:41:56.0631 5608 mpsdrv - ok
13:41:56.0677 5608 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:41:56.0677 5608 MpsSvc - ok
13:41:56.0724 5608 [ AE3334958D8F631FF14A0AEB3D7EFB3A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:41:56.0724 5608 MRxDAV - ok
13:41:56.0755 5608 [ 1877EB1495CFBDAB27D6A32F6DDF3818 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:41:56.0771 5608 mrxsmb - ok
13:41:56.0787 5608 [ 21AF322605D8C7F2A627C22634D1C9C9 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:41:56.0787 5608 mrxsmb10 - ok
13:41:56.0818 5608 [ 45A03A0B6461EFBEE77E0A6AC2816EDA ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:41:56.0818 5608 mrxsmb20 - ok
13:41:56.0833 5608 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
13:41:56.0849 5608 msahci - ok
13:41:56.0865 5608 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:41:56.0865 5608 msdsm - ok
13:41:56.0880 5608 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
13:41:56.0896 5608 MSDTC - ok
13:41:56.0911 5608 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:41:56.0911 5608 Msfs - ok
13:41:56.0958 5608 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:41:56.0958 5608 mshidkmdf - ok
13:41:56.0989 5608 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:41:56.0989 5608 msisadrv - ok
13:41:57.0067 5608 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:41:57.0083 5608 MSiSCSI - ok
13:41:57.0099 5608 msiserver - ok
13:41:57.0145 5608 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:41:57.0161 5608 MSKSSRV - ok
13:41:57.0192 5608 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:41:57.0192 5608 MSPCLOCK - ok
13:41:57.0223 5608 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:41:57.0239 5608 MSPQM - ok
13:41:57.0270 5608 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:41:57.0270 5608 MsRPC - ok
13:41:57.0301 5608 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:41:57.0301 5608 mssmbios - ok
13:41:57.0333 5608 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:41:57.0333 5608 MSTEE - ok
13:41:57.0348 5608 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
13:41:57.0348 5608 MTConfig - ok
13:41:57.0364 5608 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
13:41:57.0988 5608 Mup - ok
13:41:58.0066 5608 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
13:41:58.0066 5608 napagent - ok
13:41:58.0113 5608 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:41:58.0113 5608 NativeWifiP - ok
13:41:58.0253 5608 [ E4534BCCDD1EA7A7A256BB9D6688A5FC ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe
13:41:58.0269 5608 NAUpdate - ok
13:41:58.0315 5608 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:41:58.0331 5608 NDIS - ok
13:41:58.0362 5608 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:41:58.0378 5608 NdisCap - ok
13:41:58.0393 5608 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:41:58.0409 5608 NdisTapi - ok
13:41:58.0409 5608 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:41:58.0425 5608 Ndisuio - ok
13:41:58.0425 5608 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:41:58.0440 5608 NdisWan - ok
13:41:58.0471 5608 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:41:58.0471 5608 NDProxy - ok
13:41:58.0487 5608 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:41:58.0487 5608 NetBIOS - ok
13:41:58.0503 5608 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:41:58.0503 5608 NetBT - ok
13:41:58.0518 5608 [ 97D879A884E7CDFED51AD63348A35254 ] Netlogon C:\Windows\system32\lsass.exe
13:41:58.0518 5608 Netlogon - ok
13:41:58.0549 5608 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
13:41:58.0549 5608 Netman - ok
13:41:58.0581 5608 [ E58808846B62041BFB05395E1CED6499 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0596 5608 NetMsmqActivator - ok
13:41:58.0596 5608 [ E58808846B62041BFB05395E1CED6499 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0612 5608 NetPipeActivator - ok
13:41:58.0659 5608 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
13:41:58.0659 5608 netprofm - ok
13:41:58.0659 5608 [ E58808846B62041BFB05395E1CED6499 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0659 5608 NetTcpActivator - ok
13:41:58.0674 5608 [ E58808846B62041BFB05395E1CED6499 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:41:58.0674 5608 NetTcpPortSharing - ok
13:41:58.0705 5608 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
13:41:58.0721 5608 nfrd960 - ok
13:41:58.0752 5608 [ 8B301D474B478E9A92823BAB50A7BC49 ] NlaSvc C:\Windows\System32\nlasvc.dll
13:41:58.0752 5608 NlaSvc - ok
13:41:58.0783 5608 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:41:58.0783 5608 Npfs - ok
13:41:58.0799 5608 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
13:41:58.0815 5608 nsi - ok
13:41:58.0815 5608 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:41:58.0815 5608 nsiproxy - ok
13:41:58.0908 5608 [ 1A29A59A4C5BA6F8C85062A613B7E2B2 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:41:58.0939 5608 Ntfs - ok
13:41:58.0971 5608 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
13:41:58.0971 5608 Null - ok
13:41:59.0002 5608 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:41:59.0002 5608 nvraid - ok
13:41:59.0017 5608 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:41:59.0033 5608 nvstor - ok
13:41:59.0064 5608 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:41:59.0080 5608 nv_agp - ok
13:41:59.0111 5608 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:41:59.0111 5608 ohci1394 - ok
13:41:59.0158 5608 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:41:59.0173 5608 ose64 - ok
13:41:59.0470 5608 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:41:59.0563 5608 osppsvc - ok
13:41:59.0610 5608 [ DC3FA0B732B5EF07C0CDE1682F6D0824 ] OxPPort C:\Windows\system32\drivers\OxPPort.sys
13:41:59.0610 5608 OxPPort - ok
13:41:59.0641 5608 [ 65DCD72F2EE5BA10DC8C7FADA562C456 ] OxSer C:\Windows\system32\drivers\OxSer.sys
13:41:59.0641 5608 OxSer - ok
13:41:59.0657 5608 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:41:59.0673 5608 p2pimsvc - ok
13:41:59.0704 5608 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
13:41:59.0704 5608 p2psvc - ok
13:41:59.0735 5608 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
13:41:59.0735 5608 Parport - ok
13:41:59.0766 5608 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:41:59.0766 5608 partmgr - ok
13:41:59.0813 5608 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C ] PcaSvc C:\Windows\System32\pcasvc.dll
13:41:59.0813 5608 PcaSvc - ok
13:41:59.0829 5608 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
13:41:59.0844 5608 pci - ok
13:41:59.0875 5608 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
13:41:59.0891 5608 pciide - ok
13:41:59.0922 5608 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
13:41:59.0922 5608 pcmcia - ok
13:41:59.0953 5608 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
13:41:59.0953 5608 pcw - ok
13:42:00.0000 5608 [ ED6E75158D28D33A2E2A020AC5B2B59D ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:42:00.0000 5608 PEAUTH - ok
13:42:00.0125 5608 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
13:42:00.0125 5608 PerfHost - ok
13:42:00.0172 5608 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
13:42:00.0203 5608 pla - ok
13:42:00.0250 5608 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:42:00.0250 5608 PlugPlay - ok
13:42:00.0297 5608 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:42:00.0297 5608 PNRPAutoReg - ok
13:42:00.0312 5608 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:42:00.0312 5608 PNRPsvc - ok
13:42:00.0343 5608 [ 9ABFF71FF6F3B9492686D3403FA5DCDB ] Point64 C:\Windows\system32\DRIVERS\point64k.sys
13:42:00.0343 5608 Point64 - ok
13:42:00.0421 5608 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:42:00.0421 5608 PolicyAgent - ok
13:42:00.0453 5608 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
13:42:00.0468 5608 Power - ok
13:42:00.0515 5608 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:42:00.0515 5608 PptpMiniport - ok
13:42:00.0531 5608 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
13:42:00.0531 5608 Processor - ok
13:42:00.0562 5608 [ B6A58491307B4CADA572583D863DC602 ] ProfSvc C:\Windows\system32\profsvc.dll
13:42:00.0577 5608 ProfSvc - ok
13:42:00.0593 5608 [ 97D879A884E7CDFED51AD63348A35254 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:42:00.0593 5608 ProtectedStorage - ok
13:42:00.0609 5608 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:42:00.0609 5608 Psched - ok
13:42:00.0687 5608 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
13:42:00.0733 5608 ql2300 - ok
13:42:00.0749 5608 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
13:42:00.0749 5608 ql40xx - ok
13:42:00.0811 5608 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
13:42:00.0811 5608 QWAVE - ok
13:42:00.0827 5608 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:42:00.0827 5608 QWAVEdrv - ok
13:42:00.0843 5608 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:42:00.0843 5608 RasAcd - ok
13:42:00.0858 5608 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:42:00.0858 5608 RasAgileVpn - ok
13:42:00.0874 5608 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
13:42:00.0874 5608 RasAuto - ok
13:42:00.0889 5608 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:42:00.0889 5608 Rasl2tp - ok
13:42:00.0905 5608 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
13:42:00.0905 5608 RasMan - ok
13:42:00.0921 5608 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:42:00.0921 5608 RasPppoe - ok
13:42:00.0936 5608 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:42:00.0936 5608 RasSstp - ok
13:42:00.0952 5608 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:42:00.0967 5608 rdbss - ok
13:42:00.0983 5608 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
13:42:00.0983 5608 rdpbus - ok
13:42:01.0014 5608 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:42:01.0014 5608 RDPCDD - ok
13:42:01.0045 5608 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:42:01.0045 5608 RDPENCDD - ok
13:42:01.0077 5608 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:42:01.0077 5608 RDPREFMP - ok
13:42:01.0186 5608 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:42:01.0186 5608 RdpVideoMiniport - ok
13:42:01.0217 5608 [ FE571E088C2D83619D2D48D4E961BF41 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:42:01.0233 5608 RDPWD - ok
13:42:01.0248 5608 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:42:01.0248 5608 rdyboost - ok
13:42:01.0279 5608 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
13:42:01.0279 5608 RemoteAccess - ok
13:42:01.0311 5608 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:42:01.0311 5608 RemoteRegistry - ok
13:42:01.0342 5608 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:42:01.0342 5608 RpcEptMapper - ok
13:42:01.0357 5608 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
13:42:01.0357 5608 RpcLocator - ok
13:42:01.0451 5608 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
13:42:01.0482 5608 RpcSs - ok
13:42:01.0513 5608 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:42:01.0513 5608 rspndr - ok
13:42:01.0562 5608 [ AFC12DFA4C7B089673AD67402CA19EDB ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
13:42:01.0562 5608 RTL8167 - ok
13:42:01.0593 5608 [ C979AB0ECAE51A091770A54CF64D791B ] RTL8187B C:\Windows\system32\DRIVERS\wg111v3.sys
13:42:01.0593 5608 RTL8187B - ok
13:42:01.0609 5608 [ 97D879A884E7CDFED51AD63348A35254 ] SamSs C:\Windows\system32\lsass.exe
13:42:01.0609 5608 SamSs - ok
13:42:01.0656 5608 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:42:01.0671 5608 sbp2port - ok
13:42:01.0687 5608 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:42:01.0703 5608 SCardSvr - ok
13:42:01.0718 5608 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:42:01.0718 5608 scfilter - ok
13:42:01.0781 5608 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
13:42:01.0796 5608 Schedule - ok
13:42:01.0812 5608 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:42:01.0812 5608 SCPolicySvc - ok
13:42:01.0827 5608 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:42:01.0827 5608 SDRSVC - ok
13:42:01.0859 5608 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:42:01.0859 5608 secdrv - ok
13:42:01.0859 5608 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
13:42:01.0859 5608 seclogon - ok
13:42:01.0874 5608 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
13:42:01.0874 5608 SENS - ok
13:42:01.0890 5608 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:42:01.0905 5608 SensrSvc - ok
13:42:01.0921 5608 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys
13:42:01.0921 5608 Serenum - ok
13:42:01.0952 5608 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys
13:42:01.0952 5608 Serial - ok
13:42:01.0952 5608 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
13:42:01.0952 5608 sermouse - ok
13:42:01.0983 5608 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
13:42:01.0983 5608 SessionEnv - ok
13:42:02.0015 5608 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
13:42:02.0030 5608 sffdisk - ok
13:42:02.0046 5608 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:42:02.0046 5608 sffp_mmc - ok
13:42:02.0061 5608 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
13:42:02.0061 5608 sffp_sd - ok
13:42:02.0093 5608 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
13:42:02.0093 5608 sfloppy - ok
13:42:02.0124 5608 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:42:02.0124 5608 SharedAccess - ok
13:42:02.0155 5608 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:42:02.0155 5608 ShellHWDetection - ok
13:42:02.0186 5608 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
13:42:02.0186 5608 SiSRaid2 - ok
13:42:02.0202 5608 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
13:42:02.0202 5608 SiSRaid4 - ok
13:42:02.0217 5608 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:42:02.0217 5608 Smb - ok
13:42:02.0249 5608 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:42:02.0249 5608 SNMPTRAP - ok
13:42:02.0249 5608 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
13:42:02.0264 5608 spldr - ok
13:42:02.0327 5608 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
13:42:02.0327 5608 Spooler - ok
13:42:02.0389 5608 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
13:42:02.0467 5608 sppsvc - ok
13:42:02.0483 5608 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:42:02.0498 5608 sppuinotify - ok
13:42:02.0529 5608 sp_rssrv - ok
13:42:02.0592 5608 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
13:42:02.0607 5608 srv - ok
13:42:02.0623 5608 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:42:02.0623 5608 srv2 - ok
13:42:02.0639 5608 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:42:02.0639 5608 srvnet - ok
13:42:02.0670 5608 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:42:02.0685 5608 SSDPSRV - ok
13:42:02.0701 5608 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:42:02.0701 5608 SstpSvc - ok
13:42:02.0732 5608 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
13:42:02.0748 5608 stexstor - ok
13:42:02.0795 5608 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
13:42:02.0810 5608 stisvc - ok
13:42:02.0826 5608 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
13:42:02.0826 5608 swenum - ok
13:42:02.0857 5608 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
13:42:02.0873 5608 swprv - ok
13:42:02.0904 5608 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
13:42:02.0919 5608 SysMain - ok
13:42:02.0935 5608 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:42:02.0935 5608 TabletInputService - ok
13:42:02.0951 5608 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
13:42:02.0951 5608 TapiSrv - ok
13:42:02.0966 5608 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
13:42:02.0966 5608 TBS - ok
13:42:03.0075 5608 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:42:03.0091 5608 Tcpip - ok
13:42:03.0153 5608 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:42:03.0153 5608 TCPIP6 - ok
13:42:03.0185 5608 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:42:03.0185 5608 tcpipreg - ok
13:42:03.0247 5608 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:42:03.0247 5608 TDPIPE - ok
13:42:03.0309 5608 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:42:03.0309 5608 TDTCP - ok
13:42:03.0356 5608 [ 70988118145F5F10EF24720B97F35F65 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:42:03.0387 5608 tdx - ok
13:42:03.0434 5608 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:42:03.0434 5608 TermDD - ok
13:42:03.0528 5608 [ 008CD4EBFABCF78D0F19B3778492648C ] TermService C:\Windows\System32\termsrv.dll
13:42:03.0559 5608 TermService - ok
13:42:03.0590 5608 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
13:42:03.0590 5608 Themes - ok
13:42:03.0606 5608 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
13:42:03.0621 5608 THREADORDER - ok
13:42:03.0637 5608 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
13:42:03.0637 5608 TrkWks - ok
13:42:03.0777 5608 [ B66EE1D68197DFB9AA24F961E68ACDCC ] trufos C:\Windows\system32\drivers\trufos.sys
13:42:03.0793 5608 trufos - ok
13:42:03.0871 5608 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:42:03.0871 5608 TrustedInstaller - ok
13:42:03.0918 5608 [ E232A3B43A894BB327FC161529BD9ED1 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:42:03.0918 5608 tssecsrv - ok
13:42:03.0980 5608 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:42:04.0011 5608 TsUsbFlt - ok
13:42:04.0043 5608 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
13:42:04.0074 5608 TsUsbGD - ok
13:42:04.0121 5608 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:42:04.0152 5608 tunnel - ok
13:42:04.0167 5608 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
13:42:04.0183 5608 uagp35 - ok
13:42:04.0199 5608 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:42:04.0230 5608 udfs - ok
13:42:04.0277 5608 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:42:04.0292 5608 UI0Detect - ok
13:42:04.0308 5608 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:42:04.0323 5608 uliagpkx - ok
13:42:04.0370 5608 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
13:42:04.0370 5608 umbus - ok
13:42:04.0401 5608 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
13:42:04.0433 5608 UmPass - ok
13:42:04.0495 5608 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
13:42:04.0526 5608 upnphost - ok
13:42:04.0557 5608 [ DCA68B0943D6FA415F0C56C92158A83A ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:42:04.0573 5608 usbccgp - ok
13:42:04.0635 5608 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys
13:42:04.0651 5608 usbcir - ok
13:42:04.0682 5608 [ 18A85013A3E0F7E1755365D287443965 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
13:42:04.0682 5608 usbehci - ok
13:42:04.0760 5608 [ 8D1196CFBB223621F2C67D45710F25BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:42:04.0776 5608 usbhub - ok
13:42:04.0776 5608 [ 765A92D428A8DB88B960DA5A8D6089DC ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:42:04.0776 5608 usbohci - ok
13:42:04.0807 5608 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:42:04.0807 5608 usbprint - ok
13:42:04.0838 5608 [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
13:42:04.0854 5608 usbscan - ok
13:42:04.0869 5608 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:42:04.0869 5608 USBSTOR - ok
13:42:04.0901 5608 [ DD253AFC3BC6CBA412342DE60C3647F3 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
13:42:04.0901 5608 usbuhci - ok
13:42:04.0916 5608 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
13:42:04.0932 5608 UxSms - ok
13:42:04.0947 5608 [ 97D879A884E7CDFED51AD63348A35254 ] VaultSvc C:\Windows\system32\lsass.exe
13:42:04.0947 5608 VaultSvc - ok
13:42:04.0963 5608 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:42:04.0963 5608 vdrvroot - ok
13:42:04.0994 5608 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
13:42:04.0994 5608 vds - ok
13:42:05.0025 5608 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:42:05.0025 5608 vga - ok
13:42:05.0041 5608 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
13:42:05.0057 5608 VgaSave - ok
13:42:05.0072 5608 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:42:05.0072 5608 vhdmp - ok
13:42:05.0103 5608 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
13:42:05.0103 5608 viaide - ok
13:42:05.0119 5608 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:42:05.0135 5608 volmgr - ok
13:42:05.0166 5608 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:42:05.0166 5608 volmgrx - ok
13:42:05.0181 5608 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:42:05.0181 5608 volsnap - ok
13:42:05.0244 5608 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
13:42:05.0259 5608 vsmraid - ok
13:42:05.0291 5608 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
13:42:05.0322 5608 VSS - ok
13:42:05.0540 5608 [ 09E2679BC114A4B4CF99517CCA848F0D ] vToolbarUpdater18.7.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.7.0\ToolbarUpdater.exe
13:42:05.0540 5608 vToolbarUpdater18.7.0 - ok
13:42:05.0571 5608 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:42:05.0587 5608 vwifibus - ok
13:42:05.0603 5608 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
13:42:05.0603 5608 W32Time - ok
13:42:05.0618 5608 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
13:42:05.0634 5608 WacomPen - ok
13:42:05.0649 5608 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:42:05.0649 5608 WANARP - ok
13:42:05.0649 5608 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:42:05.0649 5608 Wanarpv6 - ok
13:42:05.0759 5608 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:42:05.0805 5608 WatAdminSvc - ok
13:42:05.0837 5608 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
13:42:05.0883 5608 wbengine - ok
13:42:05.0899 5608 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:42:05.0899 5608 WbioSrvc - ok
13:42:05.0915 5608 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:42:05.0915 5608 wcncsvc - ok
13:42:05.0946 5608 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:42:05.0946 5608 WcsPlugInService - ok
13:42:05.0977 5608 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
13:42:05.0993 5608 Wd - ok
13:42:06.0039 5608 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:42:06.0039 5608 Wdf01000 - ok
13:42:06.0071 5608 [ C6F7473B55510F0B93961DA03D8E3B38 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:42:06.0086 5608 WdiServiceHost - ok
13:42:06.0102 5608 [ C6F7473B55510F0B93961DA03D8E3B38 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:42:06.0102 5608 WdiSystemHost - ok
13:42:06.0149 5608 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll
13:42:06.0164 5608 WebClient - ok
13:42:06.0180 5608 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:42:06.0195 5608 Wecsvc - ok
13:42:06.0211 5608 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:42:06.0211 5608 wercplsupport - ok
13:42:06.0258 5608 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
13:42:06.0258 5608 WerSvc - ok
13:42:06.0289 5608 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:42:06.0305 5608 WfpLwf - ok
13:42:06.0305 5608 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:42:06.0320 5608 WIMMount - ok
13:42:06.0336 5608 WinDefend - ok
13:42:06.0351 5608 WinHttpAutoProxySvc - ok
13:42:06.0461 5608 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:42:06.0476 5608 Winmgmt - ok
13:42:06.0523 5608 [ D929ABD465A2DED963DA8B30946A8D5C ] WinRM C:\Windows\system32\WsmSvc.dll
13:42:06.0601 5608 WinRM - ok
13:42:06.0648 5608 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\drivers\WinUsb.sys
13:42:06.0648 5608 WinUsb - ok
13:42:06.0679 5608 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
13:42:06.0679 5608 Wlansvc - ok
13:42:06.0819 5608 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:42:06.0882 5608 wlidsvc - ok
13:42:06.0913 5608 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:42:06.0929 5608 WmiAcpi - ok
13:42:06.0960 5608 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:42:06.0960 5608 wmiApSrv - ok
13:42:07.0007 5608 WMPNetworkSvc - ok
13:42:07.0007 5608 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:42:07.0022 5608 WPCSvc - ok
13:42:07.0022 5608 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:42:07.0038 5608 WPDBusEnum - ok
13:42:07.0053 5608 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:42:07.0053 5608 ws2ifsl - ok
13:42:07.0069 5608 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
13:42:07.0085 5608 wscsvc - ok
13:42:07.0085 5608 WSearch - ok
13:42:07.0397 5608 [ AA3E844A2595B1AA5825C70CA50D963E ] wuauserv C:\Windows\system32\wuaueng.dll
13:42:07.0443 5608 wuauserv - ok
13:42:07.0506 5608 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:42:07.0506 5608 WudfPf - ok
13:42:07.0537 5608 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\drivers\WUDFRd.sys
13:42:07.0537 5608 WUDFRd - ok
13:42:07.0584 5608 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:42:07.0584 5608 wudfsvc - ok
13:42:07.0631 5608 [ 04F82965C09CBDF646B487E145060301 ] WwanSvc C:\Windows\System32\wwansvc.dll
13:42:07.0631 5608 WwanSvc - ok
13:42:07.0693 5608 ================ Scan global ===============================
13:42:07.0740 5608 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
13:42:07.0787 5608 [ 2313AF8D5A9CEB4A55400A01DD311A95 ] C:\Windows\system32\winsrv.dll
13:42:07.0802 5608 [ 2313AF8D5A9CEB4A55400A01DD311A95 ] C:\Windows\system32\winsrv.dll
13:42:07.0833 5608 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
13:42:07.0880 5608 [ 71C85477DF9347FE8E7BC55768473FCA ] C:\Windows\system32\services.exe
13:42:07.0880 5608 [Global] - ok
13:42:07.0880 5608 ================ Scan MBR ==================================
13:42:07.0896 5608 [ DD2240E25BB8B36369185729A6F4CD16 ] \Device\Harddisk0\DR0
13:42:08.0442 5608 \Device\Harddisk0\DR0 - ok
13:42:08.0442 5608 ================ Scan VBR ==================================
13:42:08.0457 5608 [ 764AC93A7E2609A62E27E9C63C148BF5 ] \Device\Harddisk0\DR0\Partition1
13:42:08.0473 5608 \Device\Harddisk0\DR0\Partition1 - ok
13:42:08.0489 5608 [ 9EF33B9CC48E61EDB10EAA8FD5C03EBA ] \Device\Harddisk0\DR0\Partition2
13:42:08.0520 5608 \Device\Harddisk0\DR0\Partition2 - ok
13:42:08.0551 5608 [ 4F99FD7A00055575289990ED4D4ECAC7 ] \Device\Harddisk0\DR0\Partition3
13:42:08.0551 5608 \Device\Harddisk0\DR0\Partition3 - ok
13:42:08.0567 5608 ============================================================
13:42:08.0567 5608 Scan finished
13:42:08.0567 5608 ============================================================
13:42:08.0582 5628 Detected object count: 0
13:42:08.0582 5628 Actual detected object count: 0
13:42:13.0761 3700 Deinitialize success
# AdwCleaner v2.304 - Log vytvooen 02/08/2015 v 13:40:40
# Aktualizováno 03/07/2013 Xplode
# Operaení systém : Windows 7 Home Premium Service Pack 1 (64 bits)
# Uživatel : Vladimír Škrna - VLADIMIRSKRNA
# Spuštin systém : Normální
# Spuštino z : C:\Users\Vladimír Škrna\Desktop\adwcleaner.exe
# Volba [Vymazat]
***** [Služby] *****
ystemLook 30.07.11 by jpshortstuff
Log created at 15:00 on 02/08/2015 by Vladimír Škrna
Administrator - Elevation successful
========== regfind ==========
Searching for "start.vbs"
No data found.
-= EOF =-
Re: Windows Script Host
MBAM nic nenalezl.
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 5.8.2015
Čas skenování: 15:41
Protokol: mbam.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.05.04
Databáze rootkitů: v2015.08.04.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Vladimír Škrna
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 422968
Uplynulý čas: 31 min, 35 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 5.8.2015
Čas skenování: 15:41
Protokol: mbam.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.05.04
Databáze rootkitů: v2015.08.04.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Vladimír Škrna
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 422968
Uplynulý čas: 31 min, 35 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Varovat
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: Windows Script Host
Dobry den. Prozatim zadna zmena. Prosim o radu. Dekuji.
Re: Windows Script Host
Dejte novy log z FRST
Re: Windows Script Host
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-08-2015 01
Ran by Vladimír Škrna (administrator) on VLADIMIRSKRNA (16-08-2015 10:44:45)
Running from C:\Users\Vladimír Škrna\Desktop
Loaded Profiles: Vladimír Škrna (Available Profiles: Vladimír Škrna)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\ToolbarUpdater.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\loggingserver.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
() C:\Program Files (x86)\AVG Secure Search\vprot.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
() C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\CNYHKEY.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
() C:\Program Files (x86)\NemExpress AC\NemExpressRT.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\WINWORD.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [itype] => C:\Program Files\Microsoft IntelliType Pro\itype.exe [2345848 2009-11-05] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2320752 2009-11-05] (Microsoft Corporation)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-02-09] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HP KEYBOARDx] => C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE [710656 2010-02-11] (Hewlett-Packard)
HKLM-x32\...\Run: [BATINDICATOR] => C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe [2068992 2009-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [LaunchHPOSIAPP] => C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\LaunchApp.exe [385024 2009-04-04] (Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-05-14] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496 2012-12-27] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088 2013-01-18] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2567568 2015-08-13] ()
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3730344 2015-07-07] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
BootExecute: autocheck autochk *
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://seznam.cz/
SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {383B7DCB-58BF-47D7-89DA-4323039A3BC3} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=Searchmodule_1
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {BB5F0233-CA00-435A-8658-E78E1980FE36} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.8.0.180\AVG Secure Search_toolbar.dll [2015-08-13] (AVG Secure Search)
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: HKLM-x32 {4871A87A-BFDD-4106-8153-FFDE2BAC2967} hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.6.0.cab
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.8.0\ViProtocol.dll [2015-08-13] (AVG Secure Search)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{79DA6CBA-E2A5-47C0-BAB9-5932F015D144}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{B60763AC-5980-40F1-AB32-2B906BE7A2FE}: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Users\Vladimír Škrna\AppData\Roaming\Mozilla\Firefox\Profiles\tngq7hur.default
FF Homepage: www.google.cz
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2011-08-10] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.8.0\\npsitesafety.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-07-11] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-07-11] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2011-08-10] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Vladimír Škrna\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Chrome Web Store Payments) - C:\Users\Vladimír Škrna\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-24]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgfws; C:\Program Files (x86)\AVG\AVG2015\avgfws.exe [1528432 2015-07-07] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3518376 2015-07-07] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [314304 2015-07-07] (AVG Technologies CZ, s.r.o.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 LightScribeService; c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2010-11-22] (Hewlett-Packard Company) [File not signed]
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe [289256 2015-06-26] (McAfee, Inc.)
R2 vToolbarUpdater18.8.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\ToolbarUpdater.exe [1861520 2015-08-13] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162784 2015-03-11] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [67552 2015-04-14] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [293296 2015-06-26] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [253408 2015-05-12] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [259040 2015-06-16] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [378336 2015-05-07] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [226784 2015-06-10] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [40928 2015-03-20] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [281568 2015-05-12] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-06-23] (AVG Technologies)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 OxPPort; C:\Windows\system32\drivers\OxPPort.sys [98304 2008-07-31] (OEM)
S3 OxSer; C:\Windows\system32\drivers\OxSer.sys [98352 2009-09-16] (OEM)
S3 trufos; C:\Windows\System32\drivers\trufos.sys [350160 2014-07-29] (BitDefender S.R.L.)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-16 10:44 - 2015-08-16 10:45 - 00018534 _____ C:\Users\Vladimír Škrna\Desktop\FRST.txt
2015-08-16 10:44 - 2015-08-16 10:44 - 00000000 ____D C:\FRST
2015-08-16 10:43 - 2015-08-16 10:43 - 02173952 _____ (Farbar) C:\Users\Vladimír Škrna\Desktop\FRST64.exe
2015-08-14 23:57 - 2015-08-14 23:57 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\14.8.2015
2015-08-12 23:37 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 23:37 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 11:29 - 2015-07-28 22:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-12 11:29 - 2015-07-28 22:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-12 11:29 - 2015-07-28 21:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-12 11:29 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-08-12 11:29 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-08-12 11:29 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-08-12 11:29 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-12 11:29 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-08-12 11:29 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-08-12 11:29 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-08-12 11:29 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-08-12 11:29 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-08-12 11:29 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-08-12 11:29 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-08-12 11:29 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-12 11:29 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-12 11:29 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-12 11:29 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-12 11:29 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-12 11:29 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-12 11:29 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-08-12 11:29 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-08-12 11:29 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-08-12 11:29 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-12 11:29 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-12 11:29 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-12 11:28 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-08-12 11:28 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-08-12 11:28 - 2015-07-16 23:14 - 25192448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-12 11:28 - 2015-07-16 22:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-08-12 11:28 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-08-12 11:28 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-08-12 11:28 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-12 11:28 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-12 11:28 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-08-12 11:28 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-12 11:28 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-08-12 11:28 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-12 11:28 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-12 11:28 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-08-12 11:28 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-12 11:28 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-12 11:28 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-08-12 11:28 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-12 11:28 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-08-12 11:28 - 2015-07-16 22:20 - 19870208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-12 11:28 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-12 11:28 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-12 11:28 - 2015-07-16 22:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-12 11:28 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-12 11:28 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-08-12 11:28 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-12 11:28 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-12 11:28 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-12 11:28 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-08-12 11:28 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-12 11:28 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-08-12 11:28 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-08-12 11:28 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-12 11:28 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-12 11:28 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-08-12 11:28 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-12 11:28 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-12 11:28 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-12 11:28 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-08-12 11:28 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-12 11:28 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-08-12 11:28 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-12 11:28 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-08-12 11:28 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-12 11:28 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-12 11:28 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-08-12 11:28 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-08-12 11:28 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-12 11:28 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-12 11:28 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-12 11:28 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-12 11:28 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-12 11:28 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-12 11:28 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-12 11:28 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-08-12 11:28 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-12 11:28 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-08-12 11:28 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-12 11:28 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-12 11:28 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-08-12 11:28 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-08-12 11:27 - 2015-07-30 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-08-12 11:27 - 2015-07-30 18:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-08-12 11:27 - 2015-07-30 18:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-08-12 11:27 - 2015-07-30 18:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-12 11:27 - 2015-07-20 20:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-12 11:27 - 2015-07-20 20:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-12 11:27 - 2015-07-20 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-08-12 11:27 - 2015-07-16 21:12 - 04922368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-12 11:27 - 2015-07-16 21:12 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-08-12 11:27 - 2015-07-16 21:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-12 11:27 - 2015-07-16 21:11 - 05779456 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-12 11:27 - 2015-07-16 21:11 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-08-12 11:27 - 2015-07-16 21:11 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-08-12 11:27 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-08-12 11:27 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-08-12 11:27 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-08-12 11:27 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-08-12 11:27 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-08-12 11:27 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-08-12 11:27 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-08-12 11:27 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-08-12 11:27 - 2015-07-10 19:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-08-12 11:27 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-08-12 11:27 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-08-12 11:27 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-12 11:27 - 2015-07-09 19:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-08-12 11:27 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-12 11:27 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-08-12 11:27 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-12 11:27 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-12 11:26 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-08-07 18:18 - 2015-08-07 18:23 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\ŘÍKOVICE 140(7.8.2015)
2015-08-06 18:18 - 2015-08-06 18:18 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\V.Karlovice-Kasárna-6.8.2015-výlet
2015-08-05 17:32 - 2015-08-05 19:22 - 993697792 _____ C:\Users\Vladimír Škrna\Downloads\Pokuseni.2009.BRRip.XviD.CZ.avi
2015-08-05 16:59 - 2015-08-05 18:24 - 979525632 _____ C:\Users\Vladimír Škrna\Downloads\Počátek CZ.avi
2015-08-05 16:40 - 2015-08-05 16:40 - 00019514 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Pokuseni_Chloe_2009_.torrent
2015-08-05 16:14 - 2015-08-05 18:29 - 991879956 _____ C:\Users\Vladimír Škrna\Downloads\Fair Play 2014.avi
2015-08-05 16:14 - 2015-08-05 18:21 - 1550321664 _____ C:\Users\Vladimír Škrna\Downloads\Ranhojic.avi
2015-08-05 16:14 - 2015-08-05 16:59 - 1270824960 _____ C:\Users\Vladimír Škrna\Downloads\Gone.Girl.2014.BDRip.XviD.CZ-4play.avi
2015-08-05 16:14 - 2015-08-05 16:14 - 00001157 _____ C:\Users\Vladimír Škrna\Desktop\mbam.txt
2015-08-05 16:13 - 2015-08-05 17:52 - 00000000 ____D C:\Users\Vladimír Škrna\Downloads\The.100.Year.Old.Man.Who.Climbed.Out.the.Window.and.Disappeared.2013.BDRip.XViD.MP3.CZ-GRiNGO
2015-08-05 16:13 - 2015-08-05 17:30 - 1442211840 _____ C:\Users\Vladimír Škrna\Downloads\Interstellar 2014 Cz dab..avi
2015-08-05 16:13 - 2015-08-05 16:13 - 00019460 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Fair_Play_2014_CZ_.torrent
2015-08-05 16:13 - 2015-08-05 16:13 - 00019239 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Pocatek_Inception.torrent
2015-08-05 16:13 - 2015-08-05 16:13 - 00015443 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Ranhojic_The_Physician_2013_CZ_.torrent
2015-08-05 16:13 - 2015-08-05 16:13 - 00012682 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Zmizela_Gone_Girl_2014_CZ_.torrent
2015-08-05 16:12 - 2015-08-05 16:12 - 00014313 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Interstellar_2014_CZ_.torrent
2015-08-05 16:12 - 2015-08-05 16:12 - 00013320 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Stolety_starik_ktery_vylezl_z_okna_a_zmizel_Hundra_ringen_som_klev_ut_genom_fonstret_och_forsvann_2013_CZ_.torrent
2015-08-05 15:16 - 2015-08-05 15:16 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\Hrubá Voda 32-5.8.2015
2015-08-05 15:14 - 2015-08-10 17:14 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\Věrovany 1-5.8.2015
2015-08-05 06:44 - 2015-08-11 14:00 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\R.Lokoč-Horka
2015-08-02 23:23 - 2015-08-02 23:23 - 00109672 _____ C:\Users\Vladimír Škrna\AppData\Local\GDIPFONTCACHEV1.DAT
2015-08-02 23:22 - 2015-08-16 06:40 - 00001064 _____ C:\Windows\setupact.log
2015-08-02 23:22 - 2015-08-13 21:57 - 00411336 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-02 23:22 - 2015-08-02 23:22 - 00000000 _____ C:\Windows\setuperr.log
2015-08-02 15:00 - 2015-08-02 15:00 - 00000436 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook.txt
2015-08-02 14:59 - 2015-08-02 14:59 - 00165376 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook_x64.exe
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\rsit
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\Program Files\trend micro
2015-08-02 14:36 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Desktop\RSITx64.exe
2015-08-02 14:35 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Downloads\RSITx64.exe
2015-08-02 14:26 - 2015-08-16 10:42 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-08-02 14:26 - 2015-08-12 11:42 - 00778440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-08-02 14:26 - 2015-08-12 11:42 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-08-02 14:26 - 2015-08-12 11:42 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-08-02 14:19 - 2015-08-02 14:19 - 00000000 ____D C:\Windows\pss
2015-08-02 14:14 - 2015-08-02 14:14 - 00000000 ____D C:\ProgramData\McAfee
2015-08-02 13:45 - 2015-08-02 13:45 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player (1).exe
2015-08-02 13:43 - 2015-08-02 13:43 - 00001557 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_08022015_134357.txt
2015-08-02 13:40 - 2015-08-02 13:40 - 00000346 _____ C:\AdwCleaner[S1].txt
2015-08-02 13:39 - 2015-08-02 13:39 - 00005112 _____ C:\AdwCleaner[R4].txt
2015-08-02 12:47 - 2015-08-02 12:48 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player.exe
2015-08-02 12:32 - 2015-08-02 12:32 - 00000924 _____ C:\Users\Vladimír Škrna\Desktop\RegCleaner.lnk
2015-08-02 12:32 - 2015-08-02 12:32 - 00000000 ____D C:\Program Files (x86)\RegCleaner
2015-08-02 12:30 - 2015-08-02 12:31 - 07889888 _____ C:\Users\Vladimír Škrna\Downloads\RegCleaner.exe
2015-08-01 23:05 - 2015-08-01 23:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-08-01 23:05 - 2015-08-01 23:05 - 00000000 ____D C:\Program Files\McAfee Security Scan
2015-07-23 19:27 - 2015-07-23 19:27 - 00001603 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_07232015_192714.txt
2015-07-23 19:25 - 2015-07-23 19:27 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\RK_Quarantine
2015-07-23 19:25 - 2015-07-23 19:25 - 00005051 _____ C:\AdwCleaner[R3].txt
2015-07-23 10:31 - 2015-08-02 12:43 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\Avg2015
2015-07-23 10:31 - 2015-07-23 10:31 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Roaming\AVG2015
2015-07-23 10:28 - 2015-07-23 10:28 - 00000939 _____ C:\Users\Public\Desktop\AVG 2015.lnk
2015-07-23 10:27 - 2015-07-23 10:29 - 00000000 ____D C:\ProgramData\AVG2015
2015-07-23 10:23 - 2015-07-23 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-07-23 10:23 - 2015-07-23 10:29 - 00000000 ____D C:\Program Files\Common Files\AV
2015-07-22 15:02 - 2015-07-22 15:02 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\CEF
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-16 10:41 - 2015-01-10 08:59 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\POSUDKY 2015
2015-08-16 10:41 - 2011-08-10 19:44 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-16 08:45 - 2011-10-17 16:37 - 00000000 ____D C:\ProgramData\MFAData
2015-08-16 07:29 - 2011-08-10 18:58 - 00004026 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{D213E89D-72CA-47C6-BCE1-6F3A9648E6E8}
2015-08-16 06:56 - 2009-07-14 06:45 - 00028928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-16 06:56 - 2009-07-14 06:45 - 00028928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-16 06:45 - 2014-07-26 12:10 - 02062364 _____ C:\Windows\WindowsUpdate.log
2015-08-16 06:41 - 2011-08-10 19:44 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-16 06:40 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-15 14:12 - 2015-04-10 14:14 - 00007887 _____ C:\Windows\BRRBCOM.INI
2015-08-14 17:39 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2015-08-14 16:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-08-14 14:24 - 2011-08-11 17:15 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2015-08-13 21:58 - 2015-06-11 18:08 - 00000000 ____D C:\Program Files (x86)\AVG Secure Search
2015-08-13 21:55 - 2014-12-12 12:12 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-13 21:55 - 2014-05-06 23:20 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-12 23:38 - 2011-08-11 17:28 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-12 23:38 - 2009-07-14 04:34 - 00000855 _____ C:\Windows\win.ini
2015-08-12 23:36 - 2013-03-13 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-12 23:35 - 2013-03-13 17:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-12 23:35 - 2013-03-13 17:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-08-12 23:28 - 2013-08-01 23:31 - 00000000 ____D C:\Windows\system32\MRT
2015-08-12 23:24 - 2011-08-10 19:44 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-08-11 22:52 - 2013-11-24 12:01 - 00002145 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-11 22:51 - 2012-01-14 10:40 - 00000000 ____D C:\Users\Vladimír Škrna\Documents\Posudky a Odhady
2015-08-11 14:48 - 2014-12-16 17:47 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\FAKTURY 2015
2015-08-10 17:12 - 2011-08-16 16:22 - 00000000 ___RD C:\Users\Vladimír Škrna\Desktop\FOTO K ODHADŮM
2015-08-08 15:53 - 2011-05-21 02:05 - 00668866 _____ C:\Windows\system32\perfh005.dat
2015-08-08 15:53 - 2011-05-21 02:05 - 00141526 _____ C:\Windows\system32\perfc005.dat
2015-08-08 15:53 - 2009-07-14 07:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-08 14:47 - 2015-02-21 09:22 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\Šimi 2015
2015-08-08 12:23 - 2011-08-11 19:03 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Roaming\uTorrent
2015-08-07 18:20 - 2011-11-19 15:21 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\NORSKA
2015-08-05 15:41 - 2014-07-02 15:55 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-02 14:26 - 2011-08-10 19:53 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\Adobe
2015-08-02 13:36 - 2012-12-27 17:33 - 00000000 ____D C:\Program Files (x86)\Spyware Terminator
2015-08-02 13:36 - 2011-08-10 19:44 - 00000000 ____D C:\Program Files\Google
2015-08-02 13:36 - 2011-08-10 19:43 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-02 13:26 - 2015-07-10 18:25 - 00000000 ___HD C:\$Windows.~BT
2015-08-02 12:22 - 2011-08-10 19:44 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\Google
2015-08-02 12:22 - 2011-08-10 19:43 - 00000000 ____D C:\ProgramData\Google
2015-08-02 12:18 - 2012-12-27 17:33 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Roaming\Spyware Terminator
2015-08-02 12:18 - 2012-12-27 17:33 - 00000000 ____D C:\ProgramData\Spyware Terminator
2015-08-02 12:01 - 2011-02-11 19:00 - 00000000 ____D C:\Windows\Panther
2015-08-01 23:05 - 2013-12-14 15:12 - 00001936 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2015-08-01 23:05 - 2013-12-14 15:12 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2015-07-30 06:43 - 2013-04-18 17:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-25 10:30 - 2015-04-04 23:16 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-23 19:35 - 2014-07-02 15:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-23 19:24 - 2014-07-02 15:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-07-23 19:24 - 2013-06-24 17:25 - 00001068 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-07-23 19:15 - 2011-08-16 23:35 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\CrashDumps
2015-07-23 19:11 - 2011-08-10 19:54 - 00000000 ____D C:\Program Files\CCleaner
2015-07-23 11:32 - 2011-10-17 16:44 - 00000000 ____D C:\Program Files (x86)\AVG
2015-07-23 10:30 - 2012-02-17 17:54 - 00000000 ___HD C:\$AVG
2015-07-22 10:21 - 2011-11-19 15:34 - 00000000 ___RD C:\Users\Vladimír Škrna\Desktop\POSUDKY-z flešky
2015-07-22 10:15 - 2011-11-19 15:38 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\POSUDKY 420 - 815
2015-07-17 23:43 - 2015-04-04 23:16 - 00000000 ___SD C:\Windows\SysWOW64\GWX
==================== Files in the root of some directories =======
2013-06-26 22:52 - 2014-06-23 08:01 - 0003728 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml
2011-11-01 10:54 - 2011-11-01 13:19 - 0000857 _____ () C:\Users\Vladimír Škrna\AppData\Local\SRDownloader.err
2011-11-01 10:25 - 2011-12-25 13:58 - 0001016 _____ () C:\Users\Vladimír Škrna\AppData\Local\SRDownloader.nast
Files to move or delete:
====================
C:\Users\Vladimír Škrna\Microsoft Office Professional Plus 2010 x64 czech final .exe
Some zero byte size files/folders:
==========================
C:\Windows\logo1_.exe
C:\Windows\logo_1.exe
C:\Windows\RUNDL132.EXE
C:\Windows\rundll16.exe
C:\Windows\VDLL.DLL
C:\Windows\SysWOW64\runouce.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-12 12:04
==================== End of log ============================
Ran by Vladimír Škrna (administrator) on VLADIMIRSKRNA (16-08-2015 10:44:45)
Running from C:\Users\Vladimír Škrna\Desktop
Loaded Profiles: Vladimír Škrna (Available Profiles: Vladimír Škrna)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\ToolbarUpdater.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\loggingserver.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
() C:\Program Files (x86)\AVG Secure Search\vprot.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
() C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\CNYHKEY.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\wscript.exe
() C:\Program Files (x86)\NemExpress AC\NemExpressRT.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\WINWORD.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [itype] => C:\Program Files\Microsoft IntelliType Pro\itype.exe [2345848 2009-11-05] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2320752 2009-11-05] (Microsoft Corporation)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-02-09] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HP KEYBOARDx] => C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\HPKEYBOARDx.EXE [710656 2010-02-11] (Hewlett-Packard)
HKLM-x32\...\Run: [BATINDICATOR] => C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe [2068992 2009-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [LaunchHPOSIAPP] => C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\LaunchApp.exe [385024 2009-04-04] (Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-05-14] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496 2012-12-27] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088 2013-01-18] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2567568 2015-08-13] ()
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3730344 2015-07-07] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
BootExecute: autocheck autochk *
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://seznam.cz/
SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {383B7DCB-58BF-47D7-89DA-4323039A3BC3} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=Searchmodule_1
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {BB5F0233-CA00-435A-8658-E78E1980FE36} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.8.0.180\AVG Secure Search_toolbar.dll [2015-08-13] (AVG Secure Search)
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: HKLM-x32 {4871A87A-BFDD-4106-8153-FFDE2BAC2967} hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.6.0.cab
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.8.0\ViProtocol.dll [2015-08-13] (AVG Secure Search)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{79DA6CBA-E2A5-47C0-BAB9-5932F015D144}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{B60763AC-5980-40F1-AB32-2B906BE7A2FE}: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Users\Vladimír Škrna\AppData\Roaming\Mozilla\Firefox\Profiles\tngq7hur.default
FF Homepage: www.google.cz
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2011-08-10] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.8.0\\npsitesafety.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-07-11] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-07-11] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll [2011-08-10] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Vladimír Škrna\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Chrome Web Store Payments) - C:\Users\Vladimír Škrna\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-24]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgfws; C:\Program Files (x86)\AVG\AVG2015\avgfws.exe [1528432 2015-07-07] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3518376 2015-07-07] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [314304 2015-07-07] (AVG Technologies CZ, s.r.o.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 LightScribeService; c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2010-11-22] (Hewlett-Packard Company) [File not signed]
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe [289256 2015-06-26] (McAfee, Inc.)
R2 vToolbarUpdater18.8.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\ToolbarUpdater.exe [1861520 2015-08-13] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162784 2015-03-11] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [67552 2015-04-14] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [293296 2015-06-26] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [253408 2015-05-12] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [259040 2015-06-16] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [378336 2015-05-07] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [226784 2015-06-10] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [40928 2015-03-20] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [281568 2015-05-12] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-06-23] (AVG Technologies)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 OxPPort; C:\Windows\system32\drivers\OxPPort.sys [98304 2008-07-31] (OEM)
S3 OxSer; C:\Windows\system32\drivers\OxSer.sys [98352 2009-09-16] (OEM)
S3 trufos; C:\Windows\System32\drivers\trufos.sys [350160 2014-07-29] (BitDefender S.R.L.)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-16 10:44 - 2015-08-16 10:45 - 00018534 _____ C:\Users\Vladimír Škrna\Desktop\FRST.txt
2015-08-16 10:44 - 2015-08-16 10:44 - 00000000 ____D C:\FRST
2015-08-16 10:43 - 2015-08-16 10:43 - 02173952 _____ (Farbar) C:\Users\Vladimír Škrna\Desktop\FRST64.exe
2015-08-14 23:57 - 2015-08-14 23:57 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\14.8.2015
2015-08-12 23:37 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 23:37 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 11:29 - 2015-07-28 22:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-12 11:29 - 2015-07-28 22:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-08-12 11:29 - 2015-07-28 22:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-12 11:29 - 2015-07-28 21:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-12 11:29 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-08-12 11:29 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-08-12 11:29 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-08-12 11:29 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-12 11:29 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-08-12 11:29 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-08-12 11:29 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-08-12 11:29 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-08-12 11:29 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-08-12 11:29 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-08-12 11:29 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-08-12 11:29 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-08-12 11:29 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-08-12 11:29 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-12 11:29 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-12 11:29 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-12 11:29 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-12 11:29 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-12 11:29 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-12 11:29 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-12 11:29 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-12 11:29 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-12 11:29 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-08-12 11:29 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-08-12 11:29 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-08-12 11:29 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-12 11:29 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-12 11:29 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-12 11:29 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-12 11:28 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-08-12 11:28 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-08-12 11:28 - 2015-07-16 23:14 - 25192448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-12 11:28 - 2015-07-16 22:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-08-12 11:28 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-08-12 11:28 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-08-12 11:28 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-12 11:28 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-12 11:28 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-08-12 11:28 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-12 11:28 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-08-12 11:28 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-12 11:28 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-12 11:28 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-08-12 11:28 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-12 11:28 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-12 11:28 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-08-12 11:28 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-12 11:28 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-08-12 11:28 - 2015-07-16 22:20 - 19870208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-12 11:28 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-12 11:28 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-12 11:28 - 2015-07-16 22:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-12 11:28 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-12 11:28 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-08-12 11:28 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-12 11:28 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-12 11:28 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-12 11:28 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-08-12 11:28 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-12 11:28 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-08-12 11:28 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-08-12 11:28 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-12 11:28 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-12 11:28 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-08-12 11:28 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-12 11:28 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-12 11:28 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-12 11:28 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-08-12 11:28 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-12 11:28 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-08-12 11:28 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-12 11:28 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-08-12 11:28 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-12 11:28 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-12 11:28 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-08-12 11:28 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-08-12 11:28 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-12 11:28 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-12 11:28 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-12 11:28 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-12 11:28 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-12 11:28 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-12 11:28 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-12 11:28 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-08-12 11:28 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-12 11:28 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-08-12 11:28 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-12 11:28 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-12 11:28 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-08-12 11:28 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-08-12 11:27 - 2015-07-30 20:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-08-12 11:27 - 2015-07-30 19:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-08-12 11:27 - 2015-07-30 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-08-12 11:27 - 2015-07-30 18:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-08-12 11:27 - 2015-07-30 18:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-08-12 11:27 - 2015-07-30 18:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-12 11:27 - 2015-07-20 20:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-12 11:27 - 2015-07-20 20:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-08-12 11:27 - 2015-07-20 20:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-12 11:27 - 2015-07-20 19:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-12 11:27 - 2015-07-20 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-08-12 11:27 - 2015-07-16 21:12 - 04922368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-12 11:27 - 2015-07-16 21:12 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-08-12 11:27 - 2015-07-16 21:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-12 11:27 - 2015-07-16 21:11 - 05779456 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-12 11:27 - 2015-07-16 21:11 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-08-12 11:27 - 2015-07-16 21:11 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-08-12 11:27 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-08-12 11:27 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-08-12 11:27 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-08-12 11:27 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-08-12 11:27 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-08-12 11:27 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-08-12 11:27 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-08-12 11:27 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-08-12 11:27 - 2015-07-10 19:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-08-12 11:27 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-08-12 11:27 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-08-12 11:27 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-12 11:27 - 2015-07-09 19:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-08-12 11:27 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-12 11:27 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-08-12 11:27 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-12 11:27 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-12 11:26 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-08-07 18:18 - 2015-08-07 18:23 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\ŘÍKOVICE 140(7.8.2015)
2015-08-06 18:18 - 2015-08-06 18:18 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\V.Karlovice-Kasárna-6.8.2015-výlet
2015-08-05 17:32 - 2015-08-05 19:22 - 993697792 _____ C:\Users\Vladimír Škrna\Downloads\Pokuseni.2009.BRRip.XviD.CZ.avi
2015-08-05 16:59 - 2015-08-05 18:24 - 979525632 _____ C:\Users\Vladimír Škrna\Downloads\Počátek CZ.avi
2015-08-05 16:40 - 2015-08-05 16:40 - 00019514 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Pokuseni_Chloe_2009_.torrent
2015-08-05 16:14 - 2015-08-05 18:29 - 991879956 _____ C:\Users\Vladimír Škrna\Downloads\Fair Play 2014.avi
2015-08-05 16:14 - 2015-08-05 18:21 - 1550321664 _____ C:\Users\Vladimír Škrna\Downloads\Ranhojic.avi
2015-08-05 16:14 - 2015-08-05 16:59 - 1270824960 _____ C:\Users\Vladimír Škrna\Downloads\Gone.Girl.2014.BDRip.XviD.CZ-4play.avi
2015-08-05 16:14 - 2015-08-05 16:14 - 00001157 _____ C:\Users\Vladimír Škrna\Desktop\mbam.txt
2015-08-05 16:13 - 2015-08-05 17:52 - 00000000 ____D C:\Users\Vladimír Škrna\Downloads\The.100.Year.Old.Man.Who.Climbed.Out.the.Window.and.Disappeared.2013.BDRip.XViD.MP3.CZ-GRiNGO
2015-08-05 16:13 - 2015-08-05 17:30 - 1442211840 _____ C:\Users\Vladimír Škrna\Downloads\Interstellar 2014 Cz dab..avi
2015-08-05 16:13 - 2015-08-05 16:13 - 00019460 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Fair_Play_2014_CZ_.torrent
2015-08-05 16:13 - 2015-08-05 16:13 - 00019239 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Pocatek_Inception.torrent
2015-08-05 16:13 - 2015-08-05 16:13 - 00015443 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Ranhojic_The_Physician_2013_CZ_.torrent
2015-08-05 16:13 - 2015-08-05 16:13 - 00012682 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Zmizela_Gone_Girl_2014_CZ_.torrent
2015-08-05 16:12 - 2015-08-05 16:12 - 00014313 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Interstellar_2014_CZ_.torrent
2015-08-05 16:12 - 2015-08-05 16:12 - 00013320 _____ C:\Users\Vladimír Škrna\Downloads\[CzT]Stolety_starik_ktery_vylezl_z_okna_a_zmizel_Hundra_ringen_som_klev_ut_genom_fonstret_och_forsvann_2013_CZ_.torrent
2015-08-05 15:16 - 2015-08-05 15:16 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\Hrubá Voda 32-5.8.2015
2015-08-05 15:14 - 2015-08-10 17:14 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\Věrovany 1-5.8.2015
2015-08-05 06:44 - 2015-08-11 14:00 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\R.Lokoč-Horka
2015-08-02 23:23 - 2015-08-02 23:23 - 00109672 _____ C:\Users\Vladimír Škrna\AppData\Local\GDIPFONTCACHEV1.DAT
2015-08-02 23:22 - 2015-08-16 06:40 - 00001064 _____ C:\Windows\setupact.log
2015-08-02 23:22 - 2015-08-13 21:57 - 00411336 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-02 23:22 - 2015-08-02 23:22 - 00000000 _____ C:\Windows\setuperr.log
2015-08-02 15:00 - 2015-08-02 15:00 - 00000436 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook.txt
2015-08-02 14:59 - 2015-08-02 14:59 - 00165376 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook_x64.exe
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\rsit
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\Program Files\trend micro
2015-08-02 14:36 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Desktop\RSITx64.exe
2015-08-02 14:35 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Downloads\RSITx64.exe
2015-08-02 14:26 - 2015-08-16 10:42 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-08-02 14:26 - 2015-08-12 11:42 - 00778440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-08-02 14:26 - 2015-08-12 11:42 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-08-02 14:26 - 2015-08-12 11:42 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-08-02 14:19 - 2015-08-02 14:19 - 00000000 ____D C:\Windows\pss
2015-08-02 14:14 - 2015-08-02 14:14 - 00000000 ____D C:\ProgramData\McAfee
2015-08-02 13:45 - 2015-08-02 13:45 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player (1).exe
2015-08-02 13:43 - 2015-08-02 13:43 - 00001557 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_08022015_134357.txt
2015-08-02 13:40 - 2015-08-02 13:40 - 00000346 _____ C:\AdwCleaner[S1].txt
2015-08-02 13:39 - 2015-08-02 13:39 - 00005112 _____ C:\AdwCleaner[R4].txt
2015-08-02 12:47 - 2015-08-02 12:48 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player.exe
2015-08-02 12:32 - 2015-08-02 12:32 - 00000924 _____ C:\Users\Vladimír Škrna\Desktop\RegCleaner.lnk
2015-08-02 12:32 - 2015-08-02 12:32 - 00000000 ____D C:\Program Files (x86)\RegCleaner
2015-08-02 12:30 - 2015-08-02 12:31 - 07889888 _____ C:\Users\Vladimír Škrna\Downloads\RegCleaner.exe
2015-08-01 23:05 - 2015-08-01 23:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-08-01 23:05 - 2015-08-01 23:05 - 00000000 ____D C:\Program Files\McAfee Security Scan
2015-07-23 19:27 - 2015-07-23 19:27 - 00001603 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_07232015_192714.txt
2015-07-23 19:25 - 2015-07-23 19:27 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\RK_Quarantine
2015-07-23 19:25 - 2015-07-23 19:25 - 00005051 _____ C:\AdwCleaner[R3].txt
2015-07-23 10:31 - 2015-08-02 12:43 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\Avg2015
2015-07-23 10:31 - 2015-07-23 10:31 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Roaming\AVG2015
2015-07-23 10:28 - 2015-07-23 10:28 - 00000939 _____ C:\Users\Public\Desktop\AVG 2015.lnk
2015-07-23 10:27 - 2015-07-23 10:29 - 00000000 ____D C:\ProgramData\AVG2015
2015-07-23 10:23 - 2015-07-23 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-07-23 10:23 - 2015-07-23 10:29 - 00000000 ____D C:\Program Files\Common Files\AV
2015-07-22 15:02 - 2015-07-22 15:02 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\CEF
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-16 10:41 - 2015-01-10 08:59 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\POSUDKY 2015
2015-08-16 10:41 - 2011-08-10 19:44 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-16 08:45 - 2011-10-17 16:37 - 00000000 ____D C:\ProgramData\MFAData
2015-08-16 07:29 - 2011-08-10 18:58 - 00004026 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{D213E89D-72CA-47C6-BCE1-6F3A9648E6E8}
2015-08-16 06:56 - 2009-07-14 06:45 - 00028928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-16 06:56 - 2009-07-14 06:45 - 00028928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-16 06:45 - 2014-07-26 12:10 - 02062364 _____ C:\Windows\WindowsUpdate.log
2015-08-16 06:41 - 2011-08-10 19:44 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-16 06:40 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-15 14:12 - 2015-04-10 14:14 - 00007887 _____ C:\Windows\BRRBCOM.INI
2015-08-14 17:39 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2015-08-14 16:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-08-14 14:24 - 2011-08-11 17:15 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2015-08-13 21:58 - 2015-06-11 18:08 - 00000000 ____D C:\Program Files (x86)\AVG Secure Search
2015-08-13 21:55 - 2014-12-12 12:12 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-13 21:55 - 2014-05-06 23:20 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-12 23:38 - 2011-08-11 17:28 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-12 23:38 - 2009-07-14 04:34 - 00000855 _____ C:\Windows\win.ini
2015-08-12 23:36 - 2013-03-13 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-12 23:35 - 2013-03-13 17:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-12 23:35 - 2013-03-13 17:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-08-12 23:28 - 2013-08-01 23:31 - 00000000 ____D C:\Windows\system32\MRT
2015-08-12 23:24 - 2011-08-10 19:44 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-08-11 22:52 - 2013-11-24 12:01 - 00002145 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-11 22:51 - 2012-01-14 10:40 - 00000000 ____D C:\Users\Vladimír Škrna\Documents\Posudky a Odhady
2015-08-11 14:48 - 2014-12-16 17:47 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\FAKTURY 2015
2015-08-10 17:12 - 2011-08-16 16:22 - 00000000 ___RD C:\Users\Vladimír Škrna\Desktop\FOTO K ODHADŮM
2015-08-08 15:53 - 2011-05-21 02:05 - 00668866 _____ C:\Windows\system32\perfh005.dat
2015-08-08 15:53 - 2011-05-21 02:05 - 00141526 _____ C:\Windows\system32\perfc005.dat
2015-08-08 15:53 - 2009-07-14 07:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-08 14:47 - 2015-02-21 09:22 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\Šimi 2015
2015-08-08 12:23 - 2011-08-11 19:03 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Roaming\uTorrent
2015-08-07 18:20 - 2011-11-19 15:21 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\NORSKA
2015-08-05 15:41 - 2014-07-02 15:55 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-02 14:26 - 2011-08-10 19:53 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\Adobe
2015-08-02 13:36 - 2012-12-27 17:33 - 00000000 ____D C:\Program Files (x86)\Spyware Terminator
2015-08-02 13:36 - 2011-08-10 19:44 - 00000000 ____D C:\Program Files\Google
2015-08-02 13:36 - 2011-08-10 19:43 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-02 13:26 - 2015-07-10 18:25 - 00000000 ___HD C:\$Windows.~BT
2015-08-02 12:22 - 2011-08-10 19:44 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\Google
2015-08-02 12:22 - 2011-08-10 19:43 - 00000000 ____D C:\ProgramData\Google
2015-08-02 12:18 - 2012-12-27 17:33 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Roaming\Spyware Terminator
2015-08-02 12:18 - 2012-12-27 17:33 - 00000000 ____D C:\ProgramData\Spyware Terminator
2015-08-02 12:01 - 2011-02-11 19:00 - 00000000 ____D C:\Windows\Panther
2015-08-01 23:05 - 2013-12-14 15:12 - 00001936 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2015-08-01 23:05 - 2013-12-14 15:12 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2015-07-30 06:43 - 2013-04-18 17:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-25 10:30 - 2015-04-04 23:16 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-23 19:35 - 2014-07-02 15:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-23 19:24 - 2014-07-02 15:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-07-23 19:24 - 2013-06-24 17:25 - 00001068 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-07-23 19:15 - 2011-08-16 23:35 - 00000000 ____D C:\Users\Vladimír Škrna\AppData\Local\CrashDumps
2015-07-23 19:11 - 2011-08-10 19:54 - 00000000 ____D C:\Program Files\CCleaner
2015-07-23 11:32 - 2011-10-17 16:44 - 00000000 ____D C:\Program Files (x86)\AVG
2015-07-23 10:30 - 2012-02-17 17:54 - 00000000 ___HD C:\$AVG
2015-07-22 10:21 - 2011-11-19 15:34 - 00000000 ___RD C:\Users\Vladimír Škrna\Desktop\POSUDKY-z flešky
2015-07-22 10:15 - 2011-11-19 15:38 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\POSUDKY 420 - 815
2015-07-17 23:43 - 2015-04-04 23:16 - 00000000 ___SD C:\Windows\SysWOW64\GWX
==================== Files in the root of some directories =======
2013-06-26 22:52 - 2014-06-23 08:01 - 0003728 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml
2011-11-01 10:54 - 2011-11-01 13:19 - 0000857 _____ () C:\Users\Vladimír Škrna\AppData\Local\SRDownloader.err
2011-11-01 10:25 - 2011-12-25 13:58 - 0001016 _____ () C:\Users\Vladimír Škrna\AppData\Local\SRDownloader.nast
Files to move or delete:
====================
C:\Users\Vladimír Škrna\Microsoft Office Professional Plus 2010 x64 czech final .exe
Some zero byte size files/folders:
==========================
C:\Windows\logo1_.exe
C:\Windows\logo_1.exe
C:\Windows\RUNDL132.EXE
C:\Windows\rundll16.exe
C:\Windows\VDLL.DLL
C:\Windows\SysWOW64\runouce.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-12 12:04
==================== End of log ============================
Re: Windows Script Host
Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-08-2015 01
Ran by Vladimír Škrna (2015-08-16 10:45:26)
Running from C:\Users\Vladimír Škrna\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3333189145-4007620545-1223867362-500 - Administrator - Disabled)
Guest (S-1-5-21-3333189145-4007620545-1223867362-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3333189145-4007620545-1223867362-1002 - Limited - Enabled)
Vladimír Škrna (S-1-5-21-3333189145-4007620545-1223867362-1000 - Administrator - Enabled) => C:\Users\Vladimír Škrna
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: AVG Internet Security 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Internet Security 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
FW: AVG Internet Security 2015 (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKLM-x32\...\uTorrent) (Version: 3.0.0 - )
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated)
Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
ATI Catalyst Install Manager (HKLM\...\{3660F98C-4F87-28C7-1A5A-5E1C6D525253}) (Version: 3.0.812.0 - ATI Technologies, Inc.)
ATI Stream SDK v2 Developer (HKLM\...\{22441735-5983-AD2A-5CC5-FA2CCD7EF732}) (Version: 2.3.0.0 - ATI Technologies Inc.)
AVG 2015 (HKLM\...\AVG) (Version: 2015.0.6086 - AVG Technologies CZ, s.r.o.)
AVG 2015 (Version: 15.0.4392 - AVG Technologies CZ, s.r.o.) Hidden
AVG 2015 (Version: 15.0.6086 - AVG Technologies CZ, s.r.o.) Hidden
AVG Security Toolbar (HKLM-x32\...\AVG Secure Search) (Version: 18.8.0.180 - AVG Technologies)
Brother MFL-Pro Suite DCP-J105 (HKLM-x32\...\{B742757A-7658-4E09-A51A-085CF0F7F4D3}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
ccc-core-static (x32 Version: 2011.0208.2202.39516 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4291 - CDBurnerXP)
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
ffdshow v1.2.4422 [2012-04-09] (HKLM-x32\...\ffdshow_is1) (Version: 1.2.4422.0 - )
FormatFactory 3.1.1 (HKLM-x32\...\FormatFactory) (Version: 3.1.1 - Free Time)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
High-Definition Video Playback 10 (x32 Version: 7.0.11400.29.0 - Nero AG) Hidden
HP Connect Solutions (HKLM-x32\...\{BE1C9464-DEBB-4DA6-B19A-8EC634F22D73}) (Version: 1.0.0.4 - Hewlett-Packard)
HP Desktop Keyboard (HKLM-x32\...\HP Keyboard_is1) (Version: 1.0.0.13 - Hewlett-Packard)
HP MAINSTREAM KEYBOARD (HKLM-x32\...\{B40D7926-AE5F-41EA-8AC6-56C0E2F00E9D}) (Version: 1.4.3.0 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Remote Solution (HKLM-x32\...\HP Remote Solution) (Version: 1.1.14.0 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{03046EBB-CB7C-4B98-BEFB-690EB955DA22}) (Version: 8.5.4526.3645 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13253.3682 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.5.0.0 - Hewlett-Packard)
HydraVision (x32 Version: 4.2.184.0 - ATI Technologies Inc.) Hidden
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.650 - Oracle)
K-Lite Mega Codec Pack 7.6.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.6.0 - )
LightScribe System Software (HKLM-x32\...\{FD7F0DB8-0E96-4D64-AD4D-9B5A936AF2A8}) (Version: 1.18.20.1 - LightScribe)
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.149.2 - McAfee, Inc.)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft IntelliPoint 7.1 (HKLM\...\{5EBE0F1F-45DF-4298-AC6B-E8E54EAEC834}) (Version: 7.10.344.0 - Microsoft)
Microsoft IntelliType Pro 7.1 (HKLM\...\{E6B7BD80-A921-4C72-A68B-44A9EB438BE4}) (Version: 7.10.344.0 - Microsoft)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 36.0.1 (x86 cs) (HKLM-x32\...\Mozilla Firefox 36.0.1 (x86 cs)) (Version: 36.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NEM3000 (HKLM-x32\...\NEM3000) (Version: NEM3000 version 2.95 - PLUTO-OLT)
NEMExpress AC (HKLM-x32\...\NemExpress AC) (Version: NemExpress version 3.0.1 - PLUTO-OLT spol. s r. o.)
NemKalk 7.9 (HKLM-x32\...\NemKalk7_is1) (Version: - )
Nero BackItUp 10 (HKLM-x32\...\{68AB6930-5BFF-4FF6-923B-516A91984FE6}) (Version: 5.4.11600.19.100 - Nero AG)
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.0.11100.10.100 - Nero AG)
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.0.11000.12.100 - Nero AG)
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.0.10900.11.100 - Nero AG)
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.0.10800.7.100 - Nero AG)
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.0.11000.10.100 - Nero AG)
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.0.10800.8.100 - Nero AG)
Nero MediaHub 10 (HKLM-x32\...\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}) (Version: 1.0.13400.11.100 - Nero AG)
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.0.13100 - Nero AG)
Nero Recode 10 (HKLM-x32\...\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}) (Version: 4.6.10900.4.100 - Nero AG)
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.0.10900.9.100 - Nero AG)
Nero SoundTrax 10 (HKLM-x32\...\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}) (Version: 4.6.10600.2.100 - Nero AG)
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.0.11200.12.100 - Nero AG)
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0017 - Nero AG)
Nero Vision 10 (HKLM-x32\...\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}) (Version: 7.0.11100.8.100 - Nero AG)
Nero WaveEditor 10 (HKLM-x32\...\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}) (Version: 5.6.10600.2.100 - Nero AG)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.)
Recovery Manager (x32 Version: 5.5.3621 - CyberLink Corp.) Hidden
Recuva (HKLM\...\Recuva) (Version: 1.47 - Piriform)
Revo Uninstaller 1.93 (HKLM-x32\...\Revo Uninstaller) (Version: 1.93 - VS Revo Group)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: - )
Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
Windows Phone app for desktop (HKLM-x32\...\{CE9BDD0F-BAF3-474D-B6D8-15B84BDAB229}) (Version: 1.1.2726.0 - Microsoft Corporation)
WinRAR 4.01 beta 1 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.01.1 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Restore Points =========================
02-08-2015 06:48:02 Windows Update
02-08-2015 12:12:39 Revo Uninstaller's restore point - Spyware Terminator
02-08-2015 12:19:17 Revo Uninstaller's restore point - Google Toolbar for Internet Explorer
02-08-2015 12:27:40 Revo Uninstaller's restore point - Adobe Flash Player 18 ActiveX
06-08-2015 05:58:03 Windows Update
09-08-2015 10:31:43 Windows Update
12-08-2015 11:28:25 Windows Update
12-08-2015 23:22:52 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:34 - 2015-08-01 23:06 - 00000057 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
0.0.0.1 mssplus.mcafee.com
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0848CC13-C595-4556-999D-1D830D10A2C5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {0BEC67D9-35B5-45D8-B6B7-4373D16BA12B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated)
Task: {10BEE9D7-EF74-43DF-8EB3-1ACF5169B6EB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd)
Task: {29858989-153F-4493-AA33-01DD861387EC} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {30B66FD5-263E-48F5-BAAF-79D5236C2370} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {38B1DAD9-2B10-4B46-972A-BECEC7A1C234} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {3997960E-9190-4E35-9EEB-211742E7D9A0} - System32\Tasks\{AEDB8689-4B3A-4C06-AD63-115FA0A10FC2} => pcalua.exe -a E:\NEM3000\Setup.exe -d E:\NEM3000
Task: {47202A15-90C0-422F-99D8-C2EB1B424F59} - System32\Tasks\{5729FD10-3165-4C4A-8CD2-A7BCE541E77C} => pcalua.exe -a E:\SETUP.EXE -d E:\
Task: {5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42} - System32\Tasks\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3} => pcalua.exe -a G:\SpywareTerminatorSetup.exe -d "C:\Users\Vladimír Škrna\Desktop" -c "C:\Users\Vladimír Škrna\Desktop\P1020971.JPG"
Task: {60E179AF-9D25-41D3-8BF7-C7ABACAE802B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {94A542F6-E122-4433-840D-02C9FF8A2F12} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {A3AFD33C-1A9E-46B5-AA9C-23ADDC8EC89E} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-25] ()
Task: {AC6BCAE3-97FC-4039-B600-019ACAA26EB9} - System32\Tasks\Adobe Flash Player Updater v17.053 => Wscript.exe "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\log.txt" "#C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\FlashUtil10b.exe#"
Task: {B5636B58-6069-419B-A6EE-C9B0406146F7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
Task: {B911F343-FAA5-44D6-9E29-8AF4BB12825C} - System32\Tasks\HPOSIAPP64 => C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe [2009-02-28] ()
Task: {BAD0F3F7-2301-40A3-B85C-308F0A5E48A4} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2009-11-05] (Microsoft Corporation)
Task: {D22A2FAA-0E1E-462F-9CA0-714914376620} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {E1031194-0AB2-4F51-9DBB-AC0583259B08} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => C:\Program Files\Microsoft IntelliType Pro\IType.exe [2009-11-05] (Microsoft Corporation)
Task: {E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7} - System32\Tasks\{D7D0344F-1F2F-4036-BB41-94015C144BB0} => pcalua.exe -a "C:\Users\Vladimír Škrna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDKQGHRF\NXPSetup.exe" -d "C:\Users\Vladimír Škrna\Desktop"
Task: {EAB86003-4817-4B8C-9D9B-9260D82675D8} - System32\Tasks\RMCreator => C:\Program Files (x86)\Hewlett-Packard\Recovery\Reminder.exe [2010-12-22] (CyberLink)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2011-08-13 08:36 - 2009-07-13 17:03 - 00059904 _____ () C:\Windows\System32\REE6AM.DLL
2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2011-08-11 18:39 - 2011-05-10 17:37 - 00164864 _____ () C:\Program Files\WinRAR\rarext.dll
2011-05-21 02:40 - 2009-02-28 04:13 - 00053248 _____ () C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe
2015-08-13 21:58 - 2015-08-13 21:58 - 00152064 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\loggingserver.exe
2015-06-11 18:08 - 2015-08-13 21:58 - 02567568 _____ () C:\Program Files (x86)\AVG Secure Search\vprot.exe
2011-05-21 02:39 - 2009-07-02 23:58 - 00406016 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe
2015-07-17 19:34 - 2015-07-17 19:34 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2011-02-09 07:01 - 2011-02-09 07:01 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-04-13 00:59 - 2010-04-13 00:59 - 00098304 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2010-12-22 18:54 - 2010-12-22 18:54 - 00028672 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\BrandingResources.dll
2014-01-17 15:44 - 2015-06-01 15:55 - 18363920 _____ () C:\Program Files (x86)\NemExpress AC\NemExpressRT.exe
2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-08-13 21:58 - 2015-08-13 21:58 - 00512000 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\log4cplusU.dll
2015-04-10 14:09 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2011-05-21 02:40 - 2009-02-20 02:22 - 00028672 _____ () C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\WMINPUT.DLL
2012-01-14 10:40 - 2006-06-13 08:15 - 00120832 _____ () C:\Program Files (x86)\NemExpress AC\SEE32.DLL
2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2012-01-14 10:40 - 2011-11-22 17:21 - 00532992 _____ () C:\Program Files (x86)\Common Files\PLUTO-OLT\LexCom.dll
2015-08-11 22:52 - 2015-08-08 02:13 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\libglesv2.dll
2015-08-11 22:52 - 2015-08-08 02:13 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:0B4227B4
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Vladimír Škrna\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Vladimír Škrna^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk => C:\Windows\pss\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk.Startup
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{2ABC244B-2AF6-4D82-ABB8-344844FF6323}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{37D696DE-B802-41AD-963D-BD7779720944}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{C746FEE9-EA9B-4EA6-BF14-403EB4607E9D}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{B7CC8130-CE6C-44A2-B7DB-982D47705783}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [TCP Query User{07552394-849E-44B0-ACCF-2594B3C40756}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{F2FE31E1-28F2-40BB-B149-59D49696FC65}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{644CDEE3-7CE1-4B69-BA05-E9A9DD1A064E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{44168809-9C0E-442F-AF29-481B318CD9DD}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{17305977-156E-487F-9938-B0B367FB108A}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{007E3A35-1E0E-4773-89C3-02B43028EE07}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{9CF6927E-9E77-45F6-B525-A09741A5973E}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{9389FADF-C2AE-4F8E-B730-B1A7FB041DA4}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{0A87646A-D07C-49B2-B604-CCD7EE109F36}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{2C4744A7-4FDB-4CCE-8F26-2CAC714057FF}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{3EDB1D43-D929-4E5B-A22D-1A308DFACF08}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{DAE096FF-217E-46E1-8860-FE4B7B58CCD7}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{DAB4C7AD-2CBE-4DD1-9328-4C1D9CE03048}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/16/2015 07:35:59 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/16/2015 06:42:25 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 10:37:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 09:56:57 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 90080108
Error: (08/15/2015 06:42:51 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/14/2015 03:07:08 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/14/2015 02:13:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/13/2015 09:58:13 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/12/2015 11:05:13 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/11/2015 06:57:10 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (08/15/2015 10:41:42 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/14/2015 11:59:28 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/13/2015 10:12:01 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/13/2015 10:04:03 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Windows Update přestala během spouštění reagovat.
Error: (08/12/2015 11:41:13 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/11/2015 07:01:07 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/10/2015 09:39:18 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/10/2015 09:24:01 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MBAMService neuspěla při spuštění v důsledku následující chyby:
%%1053
Error: (08/10/2015 09:24:01 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby MBAMService bylo dosaženo časového limitu (30000 ms).
Error: (08/09/2015 10:32:21 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Microsoft Office:
=========================
Error: (08/16/2015 07:35:59 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/16/2015 06:42:25 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 10:37:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 09:56:57 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 90080108
Error: (08/15/2015 06:42:51 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/14/2015 03:07:08 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/14/2015 02:13:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/13/2015 09:58:13 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/12/2015 11:05:13 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/11/2015 06:57:10 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
CodeIntegrity:
===================================
Date: 2015-08-02 12:10:56.629
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:56.624
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:56.619
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:56.613
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.385
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.320
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.247
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.194
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:54.344
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:54.317
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
==================== Memory info ===========================
Processor: Pentium(R) Dual-Core CPU E5800 @ 3.20GHz
Percentage of memory in use: 36%
Total physical RAM: 4095.24 MB
Available physical RAM: 2599.29 MB
Total Virtual: 8188.69 MB
Available Virtual: 5556.23 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:686.97 GB) (Free:579.59 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:11.57 GB) (Free:1.38 GB) NTFS ==>[system with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 698.6 GB) (Disk ID: 105E4491)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=687 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=11.6 GB) - (Type=07 NTFS)
==================== End of log ============================
Ran by Vladimír Škrna (2015-08-16 10:45:26)
Running from C:\Users\Vladimír Škrna\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3333189145-4007620545-1223867362-500 - Administrator - Disabled)
Guest (S-1-5-21-3333189145-4007620545-1223867362-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3333189145-4007620545-1223867362-1002 - Limited - Enabled)
Vladimír Škrna (S-1-5-21-3333189145-4007620545-1223867362-1000 - Administrator - Enabled) => C:\Users\Vladimír Škrna
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: AVG Internet Security 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Internet Security 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
FW: AVG Internet Security 2015 (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKLM-x32\...\uTorrent) (Version: 3.0.0 - )
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated)
Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
ATI Catalyst Install Manager (HKLM\...\{3660F98C-4F87-28C7-1A5A-5E1C6D525253}) (Version: 3.0.812.0 - ATI Technologies, Inc.)
ATI Stream SDK v2 Developer (HKLM\...\{22441735-5983-AD2A-5CC5-FA2CCD7EF732}) (Version: 2.3.0.0 - ATI Technologies Inc.)
AVG 2015 (HKLM\...\AVG) (Version: 2015.0.6086 - AVG Technologies CZ, s.r.o.)
AVG 2015 (Version: 15.0.4392 - AVG Technologies CZ, s.r.o.) Hidden
AVG 2015 (Version: 15.0.6086 - AVG Technologies CZ, s.r.o.) Hidden
AVG Security Toolbar (HKLM-x32\...\AVG Secure Search) (Version: 18.8.0.180 - AVG Technologies)
Brother MFL-Pro Suite DCP-J105 (HKLM-x32\...\{B742757A-7658-4E09-A51A-085CF0F7F4D3}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
ccc-core-static (x32 Version: 2011.0208.2202.39516 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4291 - CDBurnerXP)
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
ffdshow v1.2.4422 [2012-04-09] (HKLM-x32\...\ffdshow_is1) (Version: 1.2.4422.0 - )
FormatFactory 3.1.1 (HKLM-x32\...\FormatFactory) (Version: 3.1.1 - Free Time)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
High-Definition Video Playback 10 (x32 Version: 7.0.11400.29.0 - Nero AG) Hidden
HP Connect Solutions (HKLM-x32\...\{BE1C9464-DEBB-4DA6-B19A-8EC634F22D73}) (Version: 1.0.0.4 - Hewlett-Packard)
HP Desktop Keyboard (HKLM-x32\...\HP Keyboard_is1) (Version: 1.0.0.13 - Hewlett-Packard)
HP MAINSTREAM KEYBOARD (HKLM-x32\...\{B40D7926-AE5F-41EA-8AC6-56C0E2F00E9D}) (Version: 1.4.3.0 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Remote Solution (HKLM-x32\...\HP Remote Solution) (Version: 1.1.14.0 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{03046EBB-CB7C-4B98-BEFB-690EB955DA22}) (Version: 8.5.4526.3645 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13253.3682 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.5.0.0 - Hewlett-Packard)
HydraVision (x32 Version: 4.2.184.0 - ATI Technologies Inc.) Hidden
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.650 - Oracle)
K-Lite Mega Codec Pack 7.6.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.6.0 - )
LightScribe System Software (HKLM-x32\...\{FD7F0DB8-0E96-4D64-AD4D-9B5A936AF2A8}) (Version: 1.18.20.1 - LightScribe)
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.149.2 - McAfee, Inc.)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft IntelliPoint 7.1 (HKLM\...\{5EBE0F1F-45DF-4298-AC6B-E8E54EAEC834}) (Version: 7.10.344.0 - Microsoft)
Microsoft IntelliType Pro 7.1 (HKLM\...\{E6B7BD80-A921-4C72-A68B-44A9EB438BE4}) (Version: 7.10.344.0 - Microsoft)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 36.0.1 (x86 cs) (HKLM-x32\...\Mozilla Firefox 36.0.1 (x86 cs)) (Version: 36.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NEM3000 (HKLM-x32\...\NEM3000) (Version: NEM3000 version 2.95 - PLUTO-OLT)
NEMExpress AC (HKLM-x32\...\NemExpress AC) (Version: NemExpress version 3.0.1 - PLUTO-OLT spol. s r. o.)
NemKalk 7.9 (HKLM-x32\...\NemKalk7_is1) (Version: - )
Nero BackItUp 10 (HKLM-x32\...\{68AB6930-5BFF-4FF6-923B-516A91984FE6}) (Version: 5.4.11600.19.100 - Nero AG)
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.0.11100.10.100 - Nero AG)
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.0.11000.12.100 - Nero AG)
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.0.10900.11.100 - Nero AG)
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.0.10800.7.100 - Nero AG)
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.0.11000.10.100 - Nero AG)
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.0.10800.8.100 - Nero AG)
Nero MediaHub 10 (HKLM-x32\...\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}) (Version: 1.0.13400.11.100 - Nero AG)
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.0.13100 - Nero AG)
Nero Recode 10 (HKLM-x32\...\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}) (Version: 4.6.10900.4.100 - Nero AG)
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.0.10900.9.100 - Nero AG)
Nero SoundTrax 10 (HKLM-x32\...\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}) (Version: 4.6.10600.2.100 - Nero AG)
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.0.11200.12.100 - Nero AG)
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0017 - Nero AG)
Nero Vision 10 (HKLM-x32\...\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}) (Version: 7.0.11100.8.100 - Nero AG)
Nero WaveEditor 10 (HKLM-x32\...\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}) (Version: 5.6.10600.2.100 - Nero AG)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.)
Recovery Manager (x32 Version: 5.5.3621 - CyberLink Corp.) Hidden
Recuva (HKLM\...\Recuva) (Version: 1.47 - Piriform)
Revo Uninstaller 1.93 (HKLM-x32\...\Revo Uninstaller) (Version: 1.93 - VS Revo Group)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: - )
Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
Windows Phone app for desktop (HKLM-x32\...\{CE9BDD0F-BAF3-474D-B6D8-15B84BDAB229}) (Version: 1.1.2726.0 - Microsoft Corporation)
WinRAR 4.01 beta 1 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.01.1 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Restore Points =========================
02-08-2015 06:48:02 Windows Update
02-08-2015 12:12:39 Revo Uninstaller's restore point - Spyware Terminator
02-08-2015 12:19:17 Revo Uninstaller's restore point - Google Toolbar for Internet Explorer
02-08-2015 12:27:40 Revo Uninstaller's restore point - Adobe Flash Player 18 ActiveX
06-08-2015 05:58:03 Windows Update
09-08-2015 10:31:43 Windows Update
12-08-2015 11:28:25 Windows Update
12-08-2015 23:22:52 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:34 - 2015-08-01 23:06 - 00000057 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
0.0.0.1 mssplus.mcafee.com
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0848CC13-C595-4556-999D-1D830D10A2C5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {0BEC67D9-35B5-45D8-B6B7-4373D16BA12B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated)
Task: {10BEE9D7-EF74-43DF-8EB3-1ACF5169B6EB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd)
Task: {29858989-153F-4493-AA33-01DD861387EC} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {30B66FD5-263E-48F5-BAAF-79D5236C2370} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {38B1DAD9-2B10-4B46-972A-BECEC7A1C234} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {3997960E-9190-4E35-9EEB-211742E7D9A0} - System32\Tasks\{AEDB8689-4B3A-4C06-AD63-115FA0A10FC2} => pcalua.exe -a E:\NEM3000\Setup.exe -d E:\NEM3000
Task: {47202A15-90C0-422F-99D8-C2EB1B424F59} - System32\Tasks\{5729FD10-3165-4C4A-8CD2-A7BCE541E77C} => pcalua.exe -a E:\SETUP.EXE -d E:\
Task: {5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42} - System32\Tasks\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3} => pcalua.exe -a G:\SpywareTerminatorSetup.exe -d "C:\Users\Vladimír Škrna\Desktop" -c "C:\Users\Vladimír Škrna\Desktop\P1020971.JPG"
Task: {60E179AF-9D25-41D3-8BF7-C7ABACAE802B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {94A542F6-E122-4433-840D-02C9FF8A2F12} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {A3AFD33C-1A9E-46B5-AA9C-23ADDC8EC89E} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-25] ()
Task: {AC6BCAE3-97FC-4039-B600-019ACAA26EB9} - System32\Tasks\Adobe Flash Player Updater v17.053 => Wscript.exe "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\log.txt" "#C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\FlashUtil10b.exe#"
Task: {B5636B58-6069-419B-A6EE-C9B0406146F7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
Task: {B911F343-FAA5-44D6-9E29-8AF4BB12825C} - System32\Tasks\HPOSIAPP64 => C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe [2009-02-28] ()
Task: {BAD0F3F7-2301-40A3-B85C-308F0A5E48A4} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2009-11-05] (Microsoft Corporation)
Task: {D22A2FAA-0E1E-462F-9CA0-714914376620} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {E1031194-0AB2-4F51-9DBB-AC0583259B08} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => C:\Program Files\Microsoft IntelliType Pro\IType.exe [2009-11-05] (Microsoft Corporation)
Task: {E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7} - System32\Tasks\{D7D0344F-1F2F-4036-BB41-94015C144BB0} => pcalua.exe -a "C:\Users\Vladimír Škrna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDKQGHRF\NXPSetup.exe" -d "C:\Users\Vladimír Škrna\Desktop"
Task: {EAB86003-4817-4B8C-9D9B-9260D82675D8} - System32\Tasks\RMCreator => C:\Program Files (x86)\Hewlett-Packard\Recovery\Reminder.exe [2010-12-22] (CyberLink)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2011-08-13 08:36 - 2009-07-13 17:03 - 00059904 _____ () C:\Windows\System32\REE6AM.DLL
2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2011-08-11 18:39 - 2011-05-10 17:37 - 00164864 _____ () C:\Program Files\WinRAR\rarext.dll
2011-05-21 02:40 - 2009-02-28 04:13 - 00053248 _____ () C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe
2015-08-13 21:58 - 2015-08-13 21:58 - 00152064 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\loggingserver.exe
2015-06-11 18:08 - 2015-08-13 21:58 - 02567568 _____ () C:\Program Files (x86)\AVG Secure Search\vprot.exe
2011-05-21 02:39 - 2009-07-02 23:58 - 00406016 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Desktop Keyboard\Keystatus.exe
2015-07-17 19:34 - 2015-07-17 19:34 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2011-02-09 07:01 - 2011-02-09 07:01 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-04-13 00:59 - 2010-04-13 00:59 - 00098304 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2010-12-22 18:54 - 2010-12-22 18:54 - 00028672 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\BrandingResources.dll
2014-01-17 15:44 - 2015-06-01 15:55 - 18363920 _____ () C:\Program Files (x86)\NemExpress AC\NemExpressRT.exe
2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-08-13 21:58 - 2015-08-13 21:58 - 00512000 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\log4cplusU.dll
2015-04-10 14:09 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2011-05-21 02:40 - 2009-02-20 02:22 - 00028672 _____ () C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\WMINPUT.DLL
2012-01-14 10:40 - 2006-06-13 08:15 - 00120832 _____ () C:\Program Files (x86)\NemExpress AC\SEE32.DLL
2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2012-01-14 10:40 - 2011-11-22 17:21 - 00532992 _____ () C:\Program Files (x86)\Common Files\PLUTO-OLT\LexCom.dll
2015-08-11 22:52 - 2015-08-08 02:13 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\libglesv2.dll
2015-08-11 22:52 - 2015-08-08 02:13 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:0B4227B4
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Vladimír Škrna\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Vladimír Škrna^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk => C:\Windows\pss\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk.Startup
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{2ABC244B-2AF6-4D82-ABB8-344844FF6323}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{37D696DE-B802-41AD-963D-BD7779720944}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{C746FEE9-EA9B-4EA6-BF14-403EB4607E9D}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{B7CC8130-CE6C-44A2-B7DB-982D47705783}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [TCP Query User{07552394-849E-44B0-ACCF-2594B3C40756}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{F2FE31E1-28F2-40BB-B149-59D49696FC65}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{644CDEE3-7CE1-4B69-BA05-E9A9DD1A064E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{44168809-9C0E-442F-AF29-481B318CD9DD}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{17305977-156E-487F-9938-B0B367FB108A}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{007E3A35-1E0E-4773-89C3-02B43028EE07}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
FirewallRules: [{9CF6927E-9E77-45F6-B525-A09741A5973E}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{9389FADF-C2AE-4F8E-B730-B1A7FB041DA4}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe
FirewallRules: [{0A87646A-D07C-49B2-B604-CCD7EE109F36}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{2C4744A7-4FDB-4CCE-8F26-2CAC714057FF}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{3EDB1D43-D929-4E5B-A22D-1A308DFACF08}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{DAE096FF-217E-46E1-8860-FE4B7B58CCD7}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
FirewallRules: [{DAB4C7AD-2CBE-4DD1-9328-4C1D9CE03048}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/16/2015 07:35:59 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/16/2015 06:42:25 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 10:37:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 09:56:57 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 90080108
Error: (08/15/2015 06:42:51 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/14/2015 03:07:08 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/14/2015 02:13:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/13/2015 09:58:13 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/12/2015 11:05:13 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/11/2015 06:57:10 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (08/15/2015 10:41:42 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/14/2015 11:59:28 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/13/2015 10:12:01 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/13/2015 10:04:03 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Windows Update přestala během spouštění reagovat.
Error: (08/12/2015 11:41:13 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/11/2015 07:01:07 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/10/2015 09:39:18 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Error: (08/10/2015 09:24:01 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MBAMService neuspěla při spuštění v důsledku následující chyby:
%%1053
Error: (08/10/2015 09:24:01 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby MBAMService bylo dosaženo časového limitu (30000 ms).
Error: (08/09/2015 10:32:21 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.
Microsoft Office:
=========================
Error: (08/16/2015 07:35:59 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/16/2015 06:42:25 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 10:37:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/15/2015 09:56:57 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 90080108
Error: (08/15/2015 06:42:51 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/14/2015 03:07:08 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
Error: (08/14/2015 02:13:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/13/2015 09:58:13 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/12/2015 11:05:13 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/11/2015 06:57:10 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
CodeIntegrity:
===================================
Date: 2015-08-02 12:10:56.629
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:56.624
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:56.619
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:56.613
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.385
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.320
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.247
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:55.194
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:54.344
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
Date: 2015-08-02 12:10:54.317
Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked. Check with the publisher to see if a new signed version of the kernel module is available.
==================== Memory info ===========================
Processor: Pentium(R) Dual-Core CPU E5800 @ 3.20GHz
Percentage of memory in use: 36%
Total physical RAM: 4095.24 MB
Available physical RAM: 2599.29 MB
Total Virtual: 8188.69 MB
Available Virtual: 5556.23 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:686.97 GB) (Free:579.59 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:11.57 GB) (Free:1.38 GB) NTFS ==>[system with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 698.6 GB) (Disk ID: 105E4491)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=687 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=11.6 GB) - (Type=07 NTFS)
==================== End of log ============================
Re: Windows Script Host
Dobry den,
prosim Vas o radu. Dosud zadna zmena. Problem stale trva. Velice dekuji.
prosim Vas o radu. Dosud zadna zmena. Problem stale trva. Velice dekuji.
Re: Windows Script Host
Zkuste preinstalovat Adobe Flash Player
Re: Windows Script Host
Dobry den, preinstalovano, ale zadna zmena nenastala. Chybove hlaseni porad aktivni. Nelze zavrit. Stale se aktivuje napopredi.
Re: Windows Script Host

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start CloseProcesses: CreateRestorePoint: HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2567568 2015-08-13] () HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMDTDF&pc=CMDTDF&src=IE-SearchBox SearchScopes: HKLM -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope value is missing SearchScopes: HKLM-x32 -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms} SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMDTDF&pc=CMDTDF&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMDTDF&pc=CMDTDF&src=IE-SearchBox Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.8.0\ViProtocol.dll [2015-08-13] (AVG Secure Search) R2 vToolbarUpdater18.8.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\ToolbarUpdater.exe [1861520 2015-08-13] (AVG Secure Search) C:\Windows\AutoKMS C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs C:\Program Files (x86)\AVG Secure Search 2015-08-16 10:44 - 2015-08-16 10:45 - 00018534 _____ C:\Users\Vladimír Škrna\Desktop\FRST.txt 2015-08-02 13:45 - 2015-08-02 13:45 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player (1).exe 2015-08-02 13:43 - 2015-08-02 13:43 - 00001557 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_08022015_134357.txt 2015-08-02 13:40 - 2015-08-02 13:40 - 00000346 _____ C:\AdwCleaner[S1].txt 2015-08-02 13:39 - 2015-08-02 13:39 - 00005112 _____ C:\AdwCleaner[R4].txt 2015-08-02 12:47 - 2015-08-02 12:48 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player.exe 2015-08-02 12:32 - 2015-08-02 12:32 - 00000924 _____ C:\Users\Vladimír Škrna\Desktop\RegCleaner.lnk 2015-08-02 12:32 - 2015-08-02 12:32 - 00000000 ____D C:\Program Files (x86)\RegCleaner 2015-08-02 12:30 - 2015-08-02 12:31 - 07889888 _____ C:\Users\Vladimír Škrna\Downloads\RegCleaner.exe 2015-08-02 15:00 - 2015-08-02 15:00 - 00000436 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook.txt 2015-08-02 14:59 - 2015-08-02 14:59 - 00165376 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook_x64.exe 2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\rsit 2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\Program Files\trend micro 2015-08-02 14:36 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Desktop\RSITx64.exe 2015-08-02 14:35 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Downloads\RSITx64.exe 2015-08-02 14:26 - 2015-08-16 10:42 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-07-23 19:27 - 2015-07-23 19:27 - 00001603 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_07232015_192714.txt 2015-07-23 19:25 - 2015-07-23 19:27 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\RK_Quarantine 2015-07-23 19:25 - 2015-07-23 19:25 - 00005051 _____ C:\AdwCleaner[R3].txt C:\Windows\logo1_.exe C:\Windows\logo_1.exe C:\Windows\RUNDL132.EXE C:\Windows\rundll16.exe C:\Windows\VDLL.DLL C:\Windows\SysWOW64\runouce.exe Task: {5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42} - System32\Tasks\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3} => pcalua.exe -a G:\SpywareTerminatorSetup.exe -d "C:\Users\Vladimír Škrna\Desktop" -c "C:\Users\Vladimír Škrna\Desktop\P1020971.JPG" Task: {AC6BCAE3-97FC-4039-B600-019ACAA26EB9} - System32\Tasks\Adobe Flash Player Updater v17.053 => Wscript.exe "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\log.txt" "#C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\FlashUtil10b.exe#" Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7} - System32\Tasks\{D7D0344F-1F2F-4036-BB41-94015C144BB0} => pcalua.exe -a "C:\Users\Vladimír Škrna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDKQGHRF\NXPSetup.exe" -d "C:\Users\Vladimír Škrna\Desktop" Task: {B5636B58-6069-419B-A6EE-C9B0406146F7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe AlternateDataStreams: C:\ProgramData\Temp:0B4227B4 Hosts: EmptyTemp: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: Windows Script Host
Dobrý den,
hurá !
Vypadá to, že problém je vyřešen. Chybová hláška se již nezobrazuje ! Mnohokrát děkuji ! Přikládám log.
Fix result of Farbar Recovery Scan Tool (x64) Version:27-09-2015 01
Ran by Vladimír Škrna (2015-09-28 15:52:08) Run:1
Running from C:\Users\Vladimír Škrna\Desktop
Loaded Profiles: Vladimír Škrna (Available Profiles: Vladimír Škrna)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2567568 2015-08-13] ()
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.8.0\ViProtocol.dll [2015-08-13] (AVG Secure Search)
R2 vToolbarUpdater18.8.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\ToolbarUpdater.exe [1861520 2015-08-13] (AVG Secure Search)
C:\Windows\AutoKMS
C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs
C:\Program Files (x86)\AVG Secure Search
2015-08-16 10:44 - 2015-08-16 10:45 - 00018534 _____ C:\Users\Vladimír Škrna\Desktop\FRST.txt
2015-08-02 13:45 - 2015-08-02 13:45 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player (1).exe
2015-08-02 13:43 - 2015-08-02 13:43 - 00001557 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_08022015_134357.txt
2015-08-02 13:40 - 2015-08-02 13:40 - 00000346 _____ C:\AdwCleaner[S1].txt
2015-08-02 13:39 - 2015-08-02 13:39 - 00005112 _____ C:\AdwCleaner[R4].txt
2015-08-02 12:47 - 2015-08-02 12:48 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player.exe
2015-08-02 12:32 - 2015-08-02 12:32 - 00000924 _____ C:\Users\Vladimír Škrna\Desktop\RegCleaner.lnk
2015-08-02 12:32 - 2015-08-02 12:32 - 00000000 ____D C:\Program Files (x86)\RegCleaner
2015-08-02 12:30 - 2015-08-02 12:31 - 07889888 _____ C:\Users\Vladimír Škrna\Downloads\RegCleaner.exe
2015-08-02 15:00 - 2015-08-02 15:00 - 00000436 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook.txt
2015-08-02 14:59 - 2015-08-02 14:59 - 00165376 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook_x64.exe
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\rsit
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\Program Files\trend micro
2015-08-02 14:36 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Desktop\RSITx64.exe
2015-08-02 14:35 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Downloads\RSITx64.exe
2015-08-02 14:26 - 2015-08-16 10:42 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-23 19:27 - 2015-07-23 19:27 - 00001603 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_07232015_192714.txt
2015-07-23 19:25 - 2015-07-23 19:27 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\RK_Quarantine
2015-07-23 19:25 - 2015-07-23 19:25 - 00005051 _____ C:\AdwCleaner[R3].txt
C:\Windows\logo1_.exe
C:\Windows\logo_1.exe
C:\Windows\RUNDL132.EXE
C:\Windows\rundll16.exe
C:\Windows\VDLL.DLL
C:\Windows\SysWOW64\runouce.exe
Task: {5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42} - System32\Tasks\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3} => pcalua.exe -a G:\SpywareTerminatorSetup.exe -d "C:\Users\Vladimír Škrna\Desktop" -c "C:\Users\Vladimír Škrna\Desktop\P1020971.JPG"
Task: {AC6BCAE3-97FC-4039-B600-019ACAA26EB9} - System32\Tasks\Adobe Flash Player Updater v17.053 => Wscript.exe "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\log.txt" "#C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\FlashUtil10b.exe#"
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7} - System32\Tasks\{D7D0344F-1F2F-4036-BB41-94015C144BB0} => pcalua.exe -a "C:\Users\Vladimír Škrna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDKQGHRF\NXPSetup.exe" -d "C:\Users\Vladimír Škrna\Desktop"
Task: {B5636B58-6069-419B-A6EE-C9B0406146F7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
AlternateDataStreams: C:\ProgramData\Temp:0B4227B4
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\vProt => value removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page => value removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4}" => key removed successfully
HKCR\CLSID\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4}" => key removed successfully
HKCR\Wow6432Node\CLSID\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4} => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => value not found.
HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => key not found.
"HKCR\Wow6432Node\PROTOCOLS\Handler\viprotocol" => key removed successfully
"HKCR\Wow6432Node\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}" => key removed successfully
vToolbarUpdater18.8.0 => service not found.
C:\Windows\AutoKMS => moved successfully
"C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" => File/Folder not found.
C:\Program Files (x86)\AVG Secure Search => moved successfully
"C:\Users\Vladimír Škrna\Desktop\FRST.txt" => File/Folder not found.
C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player (1).exe => moved successfully
"C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_08022015_134357.txt" => File/Folder not found.
C:\AdwCleaner[S1].txt => moved successfully
C:\AdwCleaner[R4].txt => moved successfully
C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player.exe => moved successfully
C:\Users\Vladimír Škrna\Desktop\RegCleaner.lnk => moved successfully
C:\Program Files (x86)\RegCleaner => moved successfully
C:\Users\Vladimír Škrna\Downloads\RegCleaner.exe => moved successfully
"C:\Users\Vladimír Škrna\Desktop\SystemLook.txt" => File/Folder not found.
C:\Users\Vladimír Škrna\Desktop\SystemLook_x64.exe => moved successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully
C:\Users\Vladimír Škrna\Desktop\RSITx64.exe => moved successfully
C:\Users\Vladimír Škrna\Downloads\RSITx64.exe => moved successfully
C:\Windows\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_07232015_192714.txt => moved successfully
C:\Users\Vladimír Škrna\Desktop\RK_Quarantine => moved successfully
C:\AdwCleaner[R3].txt => moved successfully
C:\Windows\logo1_.exe => moved successfully
C:\Windows\logo_1.exe => moved successfully
C:\Windows\RUNDL132.EXE => moved successfully
C:\Windows\rundll16.exe => moved successfully
C:\Windows\VDLL.DLL => moved successfully
C:\Windows\SysWOW64\runouce.exe => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42}" => key removed successfully
C:\Windows\System32\Tasks\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC6BCAE3-97FC-4039-B600-019ACAA26EB9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC6BCAE3-97FC-4039-B600-019ACAA26EB9}" => key removed successfully
C:\Windows\System32\Tasks\Adobe Flash Player Updater v17.053 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater v17.053" => key removed successfully
C:\Windows\Tasks\Adobe Flash Player Updater.job => not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7}" => key removed successfully
C:\Windows\System32\Tasks\{D7D0344F-1F2F-4036-BB41-94015C144BB0} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D7D0344F-1F2F-4036-BB41-94015C144BB0}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B5636B58-6069-419B-A6EE-C9B0406146F7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5636B58-6069-419B-A6EE-C9B0406146F7}" => key removed successfully
C:\Windows\System32\Tasks\AutoKMS => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => key removed successfully
C:\ProgramData\Temp => ":0B4227B4" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 1.2 GB temporary data Removed.
The system needed a reboot..
==== End of Fixlog 15:53:43 ====
hurá !

Fix result of Farbar Recovery Scan Tool (x64) Version:27-09-2015 01
Ran by Vladimír Škrna (2015-09-28 15:52:08) Run:1
Running from C:\Users\Vladimír Škrna\Desktop
Loaded Profiles: Vladimír Škrna (Available Profiles: Vladimír Škrna)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2567568 2015-08-13] ()
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> {6D8533C1-4717-4519-AFE6-0689A8CA3CF4} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-3333189145-4007620545-1223867362-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.8.0\ViProtocol.dll [2015-08-13] (AVG Secure Search)
R2 vToolbarUpdater18.8.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.8.0\ToolbarUpdater.exe [1861520 2015-08-13] (AVG Secure Search)
C:\Windows\AutoKMS
C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs
C:\Program Files (x86)\AVG Secure Search
2015-08-16 10:44 - 2015-08-16 10:45 - 00018534 _____ C:\Users\Vladimír Škrna\Desktop\FRST.txt
2015-08-02 13:45 - 2015-08-02 13:45 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player (1).exe
2015-08-02 13:43 - 2015-08-02 13:43 - 00001557 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_08022015_134357.txt
2015-08-02 13:40 - 2015-08-02 13:40 - 00000346 _____ C:\AdwCleaner[S1].txt
2015-08-02 13:39 - 2015-08-02 13:39 - 00005112 _____ C:\AdwCleaner[R4].txt
2015-08-02 12:47 - 2015-08-02 12:48 - 01155760 _____ (Adobe Systems Incorporated) C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player.exe
2015-08-02 12:32 - 2015-08-02 12:32 - 00000924 _____ C:\Users\Vladimír Škrna\Desktop\RegCleaner.lnk
2015-08-02 12:32 - 2015-08-02 12:32 - 00000000 ____D C:\Program Files (x86)\RegCleaner
2015-08-02 12:30 - 2015-08-02 12:31 - 07889888 _____ C:\Users\Vladimír Škrna\Downloads\RegCleaner.exe
2015-08-02 15:00 - 2015-08-02 15:00 - 00000436 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook.txt
2015-08-02 14:59 - 2015-08-02 14:59 - 00165376 _____ C:\Users\Vladimír Škrna\Desktop\SystemLook_x64.exe
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\rsit
2015-08-02 14:36 - 2015-08-02 14:36 - 00000000 ____D C:\Program Files\trend micro
2015-08-02 14:36 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Desktop\RSITx64.exe
2015-08-02 14:35 - 2015-08-02 14:35 - 01222144 _____ C:\Users\Vladimír Škrna\Downloads\RSITx64.exe
2015-08-02 14:26 - 2015-08-16 10:42 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-23 19:27 - 2015-07-23 19:27 - 00001603 _____ C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_07232015_192714.txt
2015-07-23 19:25 - 2015-07-23 19:27 - 00000000 ____D C:\Users\Vladimír Škrna\Desktop\RK_Quarantine
2015-07-23 19:25 - 2015-07-23 19:25 - 00005051 _____ C:\AdwCleaner[R3].txt
C:\Windows\logo1_.exe
C:\Windows\logo_1.exe
C:\Windows\RUNDL132.EXE
C:\Windows\rundll16.exe
C:\Windows\VDLL.DLL
C:\Windows\SysWOW64\runouce.exe
Task: {5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42} - System32\Tasks\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3} => pcalua.exe -a G:\SpywareTerminatorSetup.exe -d "C:\Users\Vladimír Škrna\Desktop" -c "C:\Users\Vladimír Škrna\Desktop\P1020971.JPG"
Task: {AC6BCAE3-97FC-4039-B600-019ACAA26EB9} - System32\Tasks\Adobe Flash Player Updater v17.053 => Wscript.exe "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" "C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\log.txt" "#C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\FlashUtil10b.exe#"
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7} - System32\Tasks\{D7D0344F-1F2F-4036-BB41-94015C144BB0} => pcalua.exe -a "C:\Users\Vladimír Škrna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GDKQGHRF\NXPSetup.exe" -d "C:\Users\Vladimír Škrna\Desktop"
Task: {B5636B58-6069-419B-A6EE-C9B0406146F7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
AlternateDataStreams: C:\ProgramData\Temp:0B4227B4
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\vProt => value removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page => value removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4}" => key removed successfully
HKCR\CLSID\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4}" => key removed successfully
HKCR\Wow6432Node\CLSID\{6D8533C1-4717-4519-AFE6-0689A8CA3CF4} => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found.
HKU\S-1-5-21-3333189145-4007620545-1223867362-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => value not found.
HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => key not found.
"HKCR\Wow6432Node\PROTOCOLS\Handler\viprotocol" => key removed successfully
"HKCR\Wow6432Node\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}" => key removed successfully
vToolbarUpdater18.8.0 => service not found.
C:\Windows\AutoKMS => moved successfully
"C:\Users\Vladimír Škrna\Searches\Adobe\Flash Player\start.vbs" => File/Folder not found.
C:\Program Files (x86)\AVG Secure Search => moved successfully
"C:\Users\Vladimír Škrna\Desktop\FRST.txt" => File/Folder not found.
C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player (1).exe => moved successfully
"C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_08022015_134357.txt" => File/Folder not found.
C:\AdwCleaner[S1].txt => moved successfully
C:\AdwCleaner[R4].txt => moved successfully
C:\Users\Vladimír Škrna\Downloads\uninstall_flash_player.exe => moved successfully
C:\Users\Vladimír Škrna\Desktop\RegCleaner.lnk => moved successfully
C:\Program Files (x86)\RegCleaner => moved successfully
C:\Users\Vladimír Škrna\Downloads\RegCleaner.exe => moved successfully
"C:\Users\Vladimír Škrna\Desktop\SystemLook.txt" => File/Folder not found.
C:\Users\Vladimír Škrna\Desktop\SystemLook_x64.exe => moved successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully
C:\Users\Vladimír Škrna\Desktop\RSITx64.exe => moved successfully
C:\Users\Vladimír Škrna\Downloads\RSITx64.exe => moved successfully
C:\Windows\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\Users\Vladimír Škrna\Desktop\RKreport[0]_S_07232015_192714.txt => moved successfully
C:\Users\Vladimír Škrna\Desktop\RK_Quarantine => moved successfully
C:\AdwCleaner[R3].txt => moved successfully
C:\Windows\logo1_.exe => moved successfully
C:\Windows\logo_1.exe => moved successfully
C:\Windows\RUNDL132.EXE => moved successfully
C:\Windows\rundll16.exe => moved successfully
C:\Windows\VDLL.DLL => moved successfully
C:\Windows\SysWOW64\runouce.exe => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BD0CB7C-8F8E-4CF0-85A0-5375624CCE42}" => key removed successfully
C:\Windows\System32\Tasks\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B9987CDC-7C60-4781-8B4F-3C628E21DCC3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC6BCAE3-97FC-4039-B600-019ACAA26EB9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC6BCAE3-97FC-4039-B600-019ACAA26EB9}" => key removed successfully
C:\Windows\System32\Tasks\Adobe Flash Player Updater v17.053 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater v17.053" => key removed successfully
C:\Windows\Tasks\Adobe Flash Player Updater.job => not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E92469CC-FFA4-4E62-A8C4-B3E54C0DA5A7}" => key removed successfully
C:\Windows\System32\Tasks\{D7D0344F-1F2F-4036-BB41-94015C144BB0} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D7D0344F-1F2F-4036-BB41-94015C144BB0}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B5636B58-6069-419B-A6EE-C9B0406146F7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5636B58-6069-419B-A6EE-C9B0406146F7}" => key removed successfully
C:\Windows\System32\Tasks\AutoKMS => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => key removed successfully
C:\ProgramData\Temp => ":0B4227B4" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 1.2 GB temporary data Removed.
The system needed a reboot..
==== End of Fixlog 15:53:43 ====
Re: Windows Script Host
Tak jeste uklidime
DelFix https://toolslib.net/downloads/finish/2/
Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Ponechte zatrzitkou pouze u volby Remove disinfection tools
- Kliknete na Run

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy

