Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
gejzic
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 05 říj 2014 17:39

Prosím o kontrolu logu

#1 Příspěvek od gejzic »

Dobrý den.

CHtěl bych Vás požádat o kontrolu logu. Dostal se mi do počítače nějaký bordel.
Děkuji :-)


Logfile of random's system information tool 1.10 (written by random/random)
Run by Břetislav at 2016-02-23 10:44:45
Microsoft Windows 8.1
System drive C: has 141 GB (61%) free of 232 GB
Total RAM: 3987 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:44:53, on 23. 2. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
G:\Program files\Safari\Safari.exe
G:\Program files\Safari\Apple Application Support\WebKit2WebProcess.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\trend micro\Břetislav.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://stop-block.org/wpad.dat?3255a53c ... fee6615681
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
O4 - HKLM\..\Run: [HP Camera Driver_Monitor] "C:\Program Files (x86)\HP Camera Driver\monitor.exe"
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [HP File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Absolute Software Agent Service (CtAgentService) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - c:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe
O23 - Service: ggbugreport - Unknown owner - C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP HotSpot 1.0 Service (HotSpotSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe
O23 - Service: HP Device Access Manager Usage Service (HpDamServiceHost) - Hewlett-Packard Development Company - c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @oem48.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel Bluetooth Service (ibtsiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: IntelUSBoverIP - Intel - C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Winsere - Unknown owner - C:\Program Files (x86)\Winsere\Winsere\Winsere.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 12413 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\Hpservice.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SC
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 337514266272
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe" /backup /iavs
C:\windows\system32\svchost.exe -k apphost
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe"
taskeng.exe {A39CEBCD-391A-4037-BFF1-B0F58A56CF82}
C:\windows\System32\svchost.exe -k utcsvc
dashost.exe {cdf140a4-63bd-4a26-869f570a48bae6f9}
"c:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
taskhost.exe USER
"c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe"
"c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\windows\system32\svchost.exe -k imgsvc
"c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\windows\servicing\TrustedInstaller.exe
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 556 560 568 65536 564
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\windows\system32\GWX\GWX.exe"
C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe -Embedding
"C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"G:\Program files\Safari\Safari.exe"
"G:\Program files\Safari\Apple Application Support\WebKit2WebProcess.exe" -type webprocess -clientIdentifier 1000
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"

"C:\Users\BETISL~1\AppData\Local\Temp\de0prhs1.tmp\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForBřetislav.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForBřetislav (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-28 885152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2014-02-05 129240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-02-03 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-28 664184]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-02-03 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-12-20 414920]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-06-25 36352]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-11-11 7659224]
"ISCT Tray"=c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [2014-08-14 5860656]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-10-31 2863344]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-18 50615936]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2014-10-03 425608]
"HP Camera Driver_Monitor"=C:\Program Files (x86)\HP Camera Driver\monitor.exe []
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2014-04-01 126240]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05 111576]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2013-08-07 490760]
"HP File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2014-02-05 2213592]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-12-13 7021880]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-12-22 596528]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-23 10:44:45 ----D---- C:\rsit
2016-02-23 10:44:45 ----D---- C:\Program Files\trend micro
2016-02-23 10:22:10 ----D---- C:\Program Files (x86)\RayDld
2016-02-23 10:22:00 ----D---- C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77
2016-02-23 10:21:59 ----D---- C:\Program Files (x86)\Discover Treasure
2016-02-23 10:21:51 ----D---- C:\Users\Břetislav\AppData\Roaming\yoursearching
2016-02-23 09:40:01 ----A---- C:\windows\system32\drivers\EsgScanner.sys
2016-02-23 09:27:21 ----D---- C:\RTSStavitel
2016-02-23 09:23:53 ----D---- C:\Program Files (x86)\Winsere
2016-02-23 09:23:50 ----D---- C:\extensions
2016-02-23 09:23:49 ----D---- C:\Program Files (x86)\WinTaske
2016-02-23 09:23:47 ----D---- C:\Program Files (x86)\SearchesToYesbnd
2016-02-23 09:23:16 ----A---- C:\windows\system32\drivers\dtsoftbus01.sys
2016-02-23 09:23:12 ----D---- C:\Users\Břetislav\AppData\Roaming\DAEMON Tools Lite
2016-02-23 09:23:10 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2016-02-23 09:22:46 ----D---- C:\ProgramData\DAEMON Tools Lite
2016-02-09 21:33:12 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-02-09 21:33:12 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\urlmon.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\mshtml.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\iertutil.dll
2016-02-09 21:33:11 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-02-09 21:33:10 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-02-09 21:33:10 ----A---- C:\windows\system32\ieframe.dll
2016-02-09 21:09:24 ----A---- C:\windows\SYSWOW64\EncDec.dll
2016-02-09 21:09:24 ----A---- C:\windows\SYSWOW64\CPFilters.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\mtxoci.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\EncDec.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\CPFilters.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\cfgbkend.dll
2016-02-09 21:09:23 ----A---- C:\windows\system32\cfgbkend.dll
2016-02-09 21:09:21 ----A---- C:\windows\system32\Windows.Data.Pdf.dll
2016-02-09 21:09:21 ----A---- C:\windows\system32\glcndFilter.dll
2016-02-09 21:09:20 ----A---- C:\windows\SYSWOW64\Windows.Data.Pdf.dll
2016-02-09 21:09:20 ----A---- C:\windows\SYSWOW64\glcndFilter.dll
2016-02-09 21:09:17 ----A---- C:\windows\system32\generaltel.dll
2016-02-09 21:09:17 ----A---- C:\windows\system32\appraiser.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\invagent.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\devinv.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-02-09 21:09:16 ----A---- C:\windows\system32\aeinv.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\acmigration.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\lsasrv.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\kerberos.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\certcli.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-02-09 21:09:13 ----A---- C:\windows\system32\msv1_0.dll
2016-02-09 21:09:13 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-02-09 21:09:13 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-02-09 21:09:13 ----A---- C:\windows\system32\dpapisrv.dll
2016-02-09 21:08:33 ----A---- C:\windows\system32\shell32.dll
2016-02-09 21:08:31 ----A---- C:\windows\system32\twinui.dll
2016-02-09 21:08:29 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-02-09 21:08:27 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-02-09 21:08:26 ----A---- C:\windows\SYSWOW64\authui.dll
2016-02-09 21:08:26 ----A---- C:\windows\system32\authui.dll
2016-02-09 21:08:19 ----A---- C:\windows\system32\win32k.sys
2016-02-09 21:08:17 ----A---- C:\windows\system32\ntoskrnl.exe
2016-02-09 21:08:17 ----A---- C:\windows\system32\KernelBase.dll
2016-02-09 21:08:17 ----A---- C:\windows\system32\combase.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\WinTypes.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\combase.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\WinTypes.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\ntdll.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\microsoft-windows-system-events.dll
2016-02-09 21:08:15 ----A---- C:\windows\SYSWOW64\wincorlib.dll
2016-02-09 21:08:04 ----A---- C:\windows\system32\drivers\mrxdav.sys
2016-02-09 21:07:55 ----A---- C:\windows\system32\jscript9.dll
2016-02-09 21:07:53 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-02-09 21:07:52 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-02-09 21:07:52 ----A---- C:\windows\system32\wininet.dll
2016-02-09 21:07:51 ----A---- C:\windows\system32\msfeeds.dll
2016-02-09 21:07:50 ----A---- C:\windows\SYSWOW64\hlink.dll
2016-02-09 21:07:50 ----A---- C:\windows\system32\hlink.dll
2016-02-09 21:07:50 ----A---- C:\windows\system32\actxprxy.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-02-09 21:07:49 ----A---- C:\windows\system32\webcheck.dll
2016-02-09 21:07:49 ----A---- C:\windows\system32\iedkcs32.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\vbscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\jscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\inetcomm.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\ieapfltr.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\ie4uinit.exe
2016-02-09 21:06:38 ----A---- C:\windows\SYSWOW64\WinSync.dll
2016-02-09 21:06:38 ----A---- C:\windows\system32\WinSync.dll
2016-02-09 21:06:32 ----A---- C:\windows\system32\rdpcorets.dll
2016-02-09 21:06:31 ----A---- C:\windows\system32\rdpudd.dll
2016-02-09 21:06:22 ----A---- C:\windows\system32\wuaueng.dll
2016-02-09 21:06:22 ----A---- C:\windows\system32\wuapi.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wudriver.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wuapi.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuwebv.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\WUSettingsProvider.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wudriver.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wucltux.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuauclt.exe
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuapp.exe
2016-02-09 21:06:20 ----A---- C:\windows\SYSWOW64\wuapp.exe
2016-01-30 20:51:53 ----RD---- C:\Program Files (x86)\Skype
2016-01-29 12:53:31 ----D---- C:\Users\Břetislav\AppData\Roaming\ViberPC

======List of files/folders modified in the last 1 month======

2016-02-23 10:44:45 ----RD---- C:\Program Files
2016-02-23 10:44:02 ----D---- C:\windows\Prefetch
2016-02-23 10:43:45 ----D---- C:\Windows
2016-02-23 10:43:34 ----D---- C:\windows\Temp
2016-02-23 10:40:45 ----D---- C:\windows\system32\drivers
2016-02-23 10:37:17 ----D---- C:\Users\Břetislav\AppData\Roaming\Apple Computer
2016-02-23 10:22:10 ----RD---- C:\Program Files (x86)
2016-02-23 10:22:01 ----D---- C:\Program Files (x86)\Common Files
2016-02-23 10:22:00 ----HD---- C:\ProgramData
2016-02-23 10:20:25 ----D---- C:\windows\Inf
2016-02-23 10:00:02 ----D---- C:\windows\system32\sru
2016-02-23 09:41:00 ----D---- C:\windows\system32\Tasks
2016-02-23 09:23:19 ----D---- C:\windows\system32\DriverStore
2016-02-23 09:23:19 ----D---- C:\windows\system32\catroot
2016-02-21 16:20:36 ----D---- C:\windows\system32\config
2016-02-21 16:12:41 ----D---- C:\windows\Microsoft.NET
2016-02-18 18:31:43 ----D---- C:\windows\AppReadiness
2016-02-18 18:08:00 ----HD---- C:\Program Files\WindowsApps
2016-02-17 19:57:28 ----SHD---- C:\System Volume Information
2016-02-14 15:51:49 ----D---- C:\windows\rescache
2016-02-14 15:49:11 ----RSD---- C:\windows\assembly
2016-02-14 13:23:42 ----D---- C:\windows\system32\catroot2
2016-02-10 11:55:40 ----D---- C:\windows\WinSxS
2016-02-10 00:36:18 ----RD---- C:\windows\ToastData
2016-02-10 00:36:18 ----RD---- C:\windows\System32
2016-02-10 00:36:18 ----D---- C:\windows\SysWOW64
2016-02-10 00:36:18 ----D---- C:\windows\system32\appraiser
2016-02-10 00:36:18 ----D---- C:\windows\apppatch
2016-02-10 00:36:17 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-02-10 00:36:17 ----D---- C:\windows\system32\cs-CZ
2016-02-10 00:36:17 ----D---- C:\Program Files\Windows Journal
2016-02-10 00:36:16 ----D---- C:\windows\system32\wbem
2016-02-10 00:36:16 ----D---- C:\Program Files\Internet Explorer
2016-02-10 00:36:16 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-09 21:52:16 ----D---- C:\Users\Břetislav\AppData\Roaming\Skype
2016-02-09 21:48:05 ----D---- C:\windows\CbsTemp
2016-02-09 21:40:51 ----D---- C:\windows\system32\MRT
2016-02-09 21:36:24 ----A---- C:\windows\system32\MRT.exe
2016-02-03 17:09:47 ----D---- C:\ProgramData\Oracle
2016-02-03 16:45:59 ----SHD---- C:\windows\Installer
2016-02-03 16:45:58 ----D---- C:\Program Files (x86)\Java
2016-02-03 16:44:35 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-02-02 20:38:40 ----D---- C:\windows\Tasks
2016-02-02 03:37:41 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-01-30 20:51:52 ----D---- C:\ProgramData\Skype
2016-01-29 12:53:14 ----A---- C:\windows\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-12-13 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-12-13 273784]
R0 hpdskflt;@oem48.inf,%service_desc%;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2013-07-23 30520]
R0 iaStorA;iaStorA; C:\windows\System32\drivers\iaStorA.sys [2014-06-07 670056]
R0 PinFile;PinFile; C:\windows\system32\DRIVERS\PinFile.sys [2014-12-05 49856]
R0 SDDisk2K;SDDisk2K; C:\windows\system32\DRIVERS\SDDisk2K.sys [2014-12-05 228544]
R0 SDDToki;SDDToki; C:\windows\system32\DRIVERS\SDDToki.sys [2014-12-05 131264]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-12-13 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-01-20 1065208]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-01-20 464256]
R1 CLVirtualDrive;CLVirtualDrive; C:\windows\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712]
R1 dtsoftbus01;@oem73.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\windows\System32\drivers\dtsoftbus01.sys [2016-02-23 283064]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-12-13 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-12-21 97648]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-12-13 155304]
R3 Accelerometer;@oem48.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2013-07-23 43320]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 ibtusb;@oem40.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\windows\system32\DRIVERS\ibtusb.sys [2014-11-04 225008]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-10-28 4850616]
R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\windows\system32\DRIVERS\ikbevent.sys [2014-05-27 22216]
R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\windows\system32\DRIVERS\imsevent.sys [2014-05-27 22728]
R3 INETMON;INETMON; \??\C:\windows\System32\Drivers\INETMON.sys [2014-05-27 25800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2014-11-12 4275288]
R3 ISCT;@oem27.inf,%ISCT.DeviceDesc%;Intel(R) Smart Connect Technology Device Driver; C:\windows\System32\drivers\ISCTD.sys [2014-05-27 44744]
R3 iwdbus;@oem37.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-10-17 30512]
R3 MEIx64;@oem24.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\windows\System32\drivers\TeeDriverx64.sys [2014-10-10 129312]
R3 NETwNb64;@oem32.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-10-17 3486488]
R3 RTL8168;@oem39.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2014-03-28 854744]
R3 RTSPER;@oem46.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\windows\system32\DRIVERS\RtsPer.sys [2014-03-22 476888]
R3 SPUVCbv;@oem14.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2014-10-07 674592]
R3 SynTP;@oem30.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\System32\drivers\SynTP.sys [2014-10-31 580336]
R3 usb3Hub;@oem54.inf,%usb3Hub.SVCDESC%;UoIP Hub; C:\windows\System32\drivers\usb3Hub.sys [2014-10-15 213296]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-11-21 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2013-10-07 65752]
S3 dg_ssudbus;@oem61.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 EsgScanner;EsgScanner; C:\windows\system32\DRIVERS\EsgScanner.sys [2016-02-23 22704]
S3 intaud_WaveExtensible;@oem36.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-10-17 42288]
S3 IntcDAud;@oem29.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-10-30 454416]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 RSUSBSTOR;@oem41.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2014-03-27 272600]
S3 RSUSBVSTOR;@oem42.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2014-03-27 331992]
S3 ssudmdm;@oem63.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\windows\system32\svchost.exe [2014-11-21 38792]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-12-13 226440]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 CtAgentService;Absolute Software Agent Service; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [2014-03-31 7168]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-11-21 38792]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-07-28 500048]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; c:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-09-23 638368]
R2 HpDamServiceHost;HP Device Access Manager Usage Service; c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [2013-11-15 18232]
R2 HPFSService;HP File Sanitizer; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2014-02-05 1758936]
R2 hpsrv;@oem48.inf,%hpservice_desc%;HP Service; C:\windows\system32\Hpservice.exe [2013-07-23 43320]
R2 ibtsiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [2014-11-04 125168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-10-28 329104]
R2 IntelUSBoverIP;IntelUSBoverIP; C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [2014-10-15 394184]
R2 ISCTAgent;Intel(R) Smart Connect Technology Agent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2014-08-14 209712]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-09-23 157088]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-09-04 292568]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-09-12 3221392]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-11-21 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2015-04-28 1102472]
S2 ggbugreport;ggbugreport; C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe [2016-02-05 1588408]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09 144200]
S2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-12-20 26168]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-06-25 16232]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-10-10 158496]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-10-10 409376]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-16 50864]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-11-21 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-10-28 279952]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-11-20 567608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09 144200]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2013-12-10 372408]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-05-13 887256]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-09-23 268192]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gejzic
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 05 říj 2014 17:39

Re: Prosím o kontrolu logu

#3 Příspěvek od gejzic »

# AdwCleaner v5.036 - Logfile created 23/02/2016 at 19:45:33
# Updated 22/02/2016 by Xplode
# Database : 2016-02-22.2 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Břetislav - BEBR
# Running from : C:\Users\Břetislav\Desktop\adwcleaner_5.036.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : ggbugreport
[-] Service Deleted : Winsere

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\NixController
[-] Folder Deleted : C:\Program Files (x86)\RayDld
[-] Folder Deleted : C:\Program Files (x86)\SearchesToYesbnd
[-] Folder Deleted : C:\Program Files (x86)\Winsere
[-] Folder Deleted : C:\Program Files (x86)\WinTaske
[-] Folder Deleted : C:\Program Files (x86)\Discover Treasure
[-] Folder Deleted : C:\Program Files (x86)\Common Files\4f596ec3-77fb-4fc3-82cb-691c42c71d77
[-] Folder Deleted : C:\ProgramData\4f596ec3-77fb-4fc3-82cb-691c42c71d77
[-] Folder Deleted : C:\Users\Břetislav\AppData\Roaming\yoursearching
[#] Folder Deleted : C:\windows\SysNative\Tasks\WinTaske

***** [ Files ] *****

[-] File Deleted : C:\Users\Břetislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.myway.com_0.localstorage
[-] File Deleted : C:\Users\Břetislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.myway.com_0.localstorage-journal
[-] File Deleted : C:\Users\Břetislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage
[-] File Deleted : C:\Users\Břetislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fromdoctopdf.dl.tb.ask.com_0.localstorage-journal

***** [ DLLs ] *****


***** [ Shortcuts ] *****

[-] Shortcut Disinfected : C:\Users\Břetislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\Břetislav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Scheduled tasks ] *****

[-] Task Deleted : WinTaske

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B853E835-9F24-4F4B-B55C-E554D15CCCD2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
[-] Key Deleted : HKLM\SOFTWARE\RayDld
[-] Key Deleted : HKLM\SOFTWARE\yessearchesSoftware
[-] Key Deleted : HKLM\SOFTWARE\yoursearchingSoftware
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\yoursearching
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Discover Treasure
[!] Key Not Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Discover Treasure
[-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_

***** [ Web browsers ] *****

[-] [C:\Users\Břetislav\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : yessearches
[-] [C:\Users\Břetislav\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.yoursearching.com/?type=hp&ts=14562 ... jhm01ajhmx
[-] [C:\Users\Břetislav\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxp://www.yoursearching.com/?type=hp&ts=14562 ... jhm01ajhmx

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [3738 bytes] - [23/02/2016 19:45:33]
C:\AdwCleaner\AdwCleaner[S1].txt - [3804 bytes] - [23/02/2016 19:39:39]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3884 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gejzic
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 05 říj 2014 17:39

Re: Prosím o kontrolu logu

#5 Příspěvek od gejzic »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Břetislav at 2016-02-23 19:54:22
Microsoft Windows 8.1
System drive C: has 141 GB (61%) free of 232 GB
Total RAM: 3987 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:54:26, on 23. 2. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
G:\Program files\Safari\Safari.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
G:\Program files\Safari\Apple Application Support\WebKit2WebProcess.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\trend micro\Břetislav.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://stop-block.org/wpad.dat?3255a53c ... fee6615681
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
O4 - HKLM\..\Run: [HP Camera Driver_Monitor] "C:\Program Files (x86)\HP Camera Driver\monitor.exe"
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [HP File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Absolute Software Agent Service (CtAgentService) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - c:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP HotSpot 1.0 Service (HotSpotSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe
O23 - Service: HP Device Access Manager Usage Service (HpDamServiceHost) - Hewlett-Packard Development Company - c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @oem48.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel Bluetooth Service (ibtsiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: IntelUSBoverIP - Intel - C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 12250 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\Hpservice.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SC
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 223540976864
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k apphost
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe"
taskeng.exe {91F1EBEA-0842-4CCB-8EB0-E957CE68B727}
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\windows\Explorer.EXE
C:\windows\System32\svchost.exe -k utcsvc
dashost.exe {4a37ced2-c99c-459d-86f12c3ca11931fa}
"c:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe"
"C:\windows\system32\GWX\GWX.exe"
"c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe"
"c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\windows\system32\svchost.exe -k imgsvc
"c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\Windows\System32\skydrive.exe -Embedding
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
igfxEM.exe
igfxHK.exe
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
igfxTray.exe
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"G:\Program files\Safari\Safari.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"G:\Program files\Safari\Apple Application Support\WebKit2WebProcess.exe" -type webprocess -clientIdentifier 1008
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\system32\msiexec.exe /V
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 556 560 568 65536 564
"C:\totalcmd\TOTALCMD.EXE"

"C:\Users\BETISL~1\AppData\Local\Temp\qeipnsah.tmp\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForBřetislav.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForBřetislav (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-28 885152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2014-02-05 129240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-02-03 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-28 664184]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-02-03 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-12-20 414920]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-06-25 36352]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-11-11 7659224]
"ISCT Tray"=c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [2014-08-14 5860656]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-10-31 2863344]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-18 50615936]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2014-10-03 425608]
"HP Camera Driver_Monitor"=C:\Program Files (x86)\HP Camera Driver\monitor.exe []
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2014-04-01 126240]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05 111576]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2013-08-07 490760]
"HP File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2014-02-05 2213592]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-12-13 7021880]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-12-22 596528]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-23 19:39:26 ----D---- C:\AdwCleaner
2016-02-23 10:44:45 ----D---- C:\rsit
2016-02-23 10:44:45 ----D---- C:\Program Files\trend micro
2016-02-23 09:40:01 ----A---- C:\windows\system32\drivers\EsgScanner.sys
2016-02-23 09:27:21 ----D---- C:\RTSStavitel
2016-02-23 09:23:50 ----D---- C:\extensions
2016-02-23 09:23:16 ----A---- C:\windows\system32\drivers\dtsoftbus01.sys
2016-02-23 09:23:12 ----D---- C:\Users\Břetislav\AppData\Roaming\DAEMON Tools Lite
2016-02-23 09:23:10 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2016-02-23 09:22:46 ----D---- C:\ProgramData\DAEMON Tools Lite
2016-02-09 21:33:12 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-02-09 21:33:12 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\urlmon.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\mshtml.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\iertutil.dll
2016-02-09 21:33:11 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-02-09 21:33:10 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-02-09 21:33:10 ----A---- C:\windows\system32\ieframe.dll
2016-02-09 21:09:24 ----A---- C:\windows\SYSWOW64\EncDec.dll
2016-02-09 21:09:24 ----A---- C:\windows\SYSWOW64\CPFilters.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\mtxoci.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\EncDec.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\CPFilters.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\cfgbkend.dll
2016-02-09 21:09:23 ----A---- C:\windows\system32\cfgbkend.dll
2016-02-09 21:09:21 ----A---- C:\windows\system32\Windows.Data.Pdf.dll
2016-02-09 21:09:21 ----A---- C:\windows\system32\glcndFilter.dll
2016-02-09 21:09:20 ----A---- C:\windows\SYSWOW64\Windows.Data.Pdf.dll
2016-02-09 21:09:20 ----A---- C:\windows\SYSWOW64\glcndFilter.dll
2016-02-09 21:09:17 ----A---- C:\windows\system32\generaltel.dll
2016-02-09 21:09:17 ----A---- C:\windows\system32\appraiser.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\invagent.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\devinv.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-02-09 21:09:16 ----A---- C:\windows\system32\aeinv.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\acmigration.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\lsasrv.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\kerberos.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\certcli.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-02-09 21:09:13 ----A---- C:\windows\system32\msv1_0.dll
2016-02-09 21:09:13 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-02-09 21:09:13 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-02-09 21:09:13 ----A---- C:\windows\system32\dpapisrv.dll
2016-02-09 21:08:33 ----A---- C:\windows\system32\shell32.dll
2016-02-09 21:08:31 ----A---- C:\windows\system32\twinui.dll
2016-02-09 21:08:29 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-02-09 21:08:27 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-02-09 21:08:26 ----A---- C:\windows\SYSWOW64\authui.dll
2016-02-09 21:08:26 ----A---- C:\windows\system32\authui.dll
2016-02-09 21:08:19 ----A---- C:\windows\system32\win32k.sys
2016-02-09 21:08:17 ----A---- C:\windows\system32\ntoskrnl.exe
2016-02-09 21:08:17 ----A---- C:\windows\system32\KernelBase.dll
2016-02-09 21:08:17 ----A---- C:\windows\system32\combase.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\WinTypes.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\combase.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\WinTypes.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\ntdll.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\microsoft-windows-system-events.dll
2016-02-09 21:08:15 ----A---- C:\windows\SYSWOW64\wincorlib.dll
2016-02-09 21:08:04 ----A---- C:\windows\system32\drivers\mrxdav.sys
2016-02-09 21:07:55 ----A---- C:\windows\system32\jscript9.dll
2016-02-09 21:07:53 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-02-09 21:07:52 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-02-09 21:07:52 ----A---- C:\windows\system32\wininet.dll
2016-02-09 21:07:51 ----A---- C:\windows\system32\msfeeds.dll
2016-02-09 21:07:50 ----A---- C:\windows\SYSWOW64\hlink.dll
2016-02-09 21:07:50 ----A---- C:\windows\system32\hlink.dll
2016-02-09 21:07:50 ----A---- C:\windows\system32\actxprxy.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-02-09 21:07:49 ----A---- C:\windows\system32\webcheck.dll
2016-02-09 21:07:49 ----A---- C:\windows\system32\iedkcs32.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\vbscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\jscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\inetcomm.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\ieapfltr.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\ie4uinit.exe
2016-02-09 21:06:38 ----A---- C:\windows\SYSWOW64\WinSync.dll
2016-02-09 21:06:38 ----A---- C:\windows\system32\WinSync.dll
2016-02-09 21:06:32 ----A---- C:\windows\system32\rdpcorets.dll
2016-02-09 21:06:31 ----A---- C:\windows\system32\rdpudd.dll
2016-02-09 21:06:22 ----A---- C:\windows\system32\wuaueng.dll
2016-02-09 21:06:22 ----A---- C:\windows\system32\wuapi.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wudriver.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wuapi.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuwebv.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\WUSettingsProvider.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wudriver.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wucltux.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuauclt.exe
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuapp.exe
2016-02-09 21:06:20 ----A---- C:\windows\SYSWOW64\wuapp.exe
2016-01-30 20:51:53 ----RD---- C:\Program Files (x86)\Skype
2016-01-29 12:53:31 ----D---- C:\Users\Břetislav\AppData\Roaming\ViberPC

======List of files/folders modified in the last 1 month======

2016-02-23 19:47:23 ----D---- C:\Windows
2016-02-23 19:47:20 ----D---- C:\windows\Temp
2016-02-23 19:45:34 ----D---- C:\windows\system32\Tasks
2016-02-23 19:45:33 ----RD---- C:\Program Files (x86)
2016-02-23 19:45:33 ----RD---- C:\Program Files
2016-02-23 19:45:33 ----HD---- C:\ProgramData
2016-02-23 19:45:33 ----D---- C:\Program Files (x86)\Common Files
2016-02-23 19:44:37 ----D---- C:\windows\Microsoft.NET
2016-02-23 19:39:36 ----D---- C:\windows\Prefetch
2016-02-23 19:39:20 ----D---- C:\Users\Břetislav\AppData\Roaming\Skype
2016-02-23 10:53:28 ----D---- C:\windows\system32\sru
2016-02-23 10:49:56 ----RD---- C:\windows\System32
2016-02-23 10:49:56 ----D---- C:\windows\Inf
2016-02-23 10:49:56 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-02-23 10:40:45 ----D---- C:\windows\system32\drivers
2016-02-23 10:37:17 ----D---- C:\Users\Břetislav\AppData\Roaming\Apple Computer
2016-02-23 09:23:19 ----D---- C:\windows\system32\DriverStore
2016-02-23 09:23:19 ----D---- C:\windows\system32\catroot
2016-02-21 16:20:36 ----D---- C:\windows\system32\config
2016-02-18 18:31:43 ----D---- C:\windows\AppReadiness
2016-02-18 18:08:00 ----HD---- C:\Program Files\WindowsApps
2016-02-17 19:57:28 ----SHD---- C:\System Volume Information
2016-02-14 15:51:49 ----D---- C:\windows\rescache
2016-02-14 15:49:11 ----RSD---- C:\windows\assembly
2016-02-14 13:23:42 ----D---- C:\windows\system32\catroot2
2016-02-10 11:55:40 ----D---- C:\windows\WinSxS
2016-02-10 00:36:18 ----RD---- C:\windows\ToastData
2016-02-10 00:36:18 ----D---- C:\windows\SysWOW64
2016-02-10 00:36:18 ----D---- C:\windows\system32\appraiser
2016-02-10 00:36:18 ----D---- C:\windows\apppatch
2016-02-10 00:36:17 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-02-10 00:36:17 ----D---- C:\windows\system32\cs-CZ
2016-02-10 00:36:17 ----D---- C:\Program Files\Windows Journal
2016-02-10 00:36:16 ----D---- C:\windows\system32\wbem
2016-02-10 00:36:16 ----D---- C:\Program Files\Internet Explorer
2016-02-10 00:36:16 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-09 21:48:05 ----D---- C:\windows\CbsTemp
2016-02-09 21:40:51 ----D---- C:\windows\system32\MRT
2016-02-09 21:36:24 ----A---- C:\windows\system32\MRT.exe
2016-02-03 17:09:47 ----D---- C:\ProgramData\Oracle
2016-02-03 16:45:59 ----SHD---- C:\windows\Installer
2016-02-03 16:45:58 ----D---- C:\Program Files (x86)\Java
2016-02-03 16:44:35 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-02-02 20:38:40 ----D---- C:\windows\Tasks
2016-02-02 03:37:41 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-01-30 20:51:52 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-12-13 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-12-13 273784]
R0 hpdskflt;@oem48.inf,%service_desc%;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2013-07-23 30520]
R0 iaStorA;iaStorA; C:\windows\System32\drivers\iaStorA.sys [2014-06-07 670056]
R0 PinFile;PinFile; C:\windows\system32\DRIVERS\PinFile.sys [2014-12-05 49856]
R0 SDDisk2K;SDDisk2K; C:\windows\system32\DRIVERS\SDDisk2K.sys [2014-12-05 228544]
R0 SDDToki;SDDToki; C:\windows\system32\DRIVERS\SDDToki.sys [2014-12-05 131264]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-12-13 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-01-20 1065208]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-01-20 464256]
R1 CLVirtualDrive;CLVirtualDrive; C:\windows\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712]
R1 dtsoftbus01;@oem73.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\windows\System32\drivers\dtsoftbus01.sys [2016-02-23 283064]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-12-13 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-12-21 97648]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-12-13 155304]
R3 Accelerometer;@oem48.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2013-07-23 43320]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 ibtusb;@oem40.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\windows\system32\DRIVERS\ibtusb.sys [2014-11-04 225008]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-10-28 4850616]
R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\windows\system32\DRIVERS\ikbevent.sys [2014-05-27 22216]
R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\windows\system32\DRIVERS\imsevent.sys [2014-05-27 22728]
R3 INETMON;INETMON; \??\C:\windows\System32\Drivers\INETMON.sys [2014-05-27 25800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2014-11-12 4275288]
R3 ISCT;@oem27.inf,%ISCT.DeviceDesc%;Intel(R) Smart Connect Technology Device Driver; C:\windows\System32\drivers\ISCTD.sys [2014-05-27 44744]
R3 iwdbus;@oem37.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-10-17 30512]
R3 MEIx64;@oem24.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\windows\System32\drivers\TeeDriverx64.sys [2014-10-10 129312]
R3 NETwNb64;@oem32.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-10-17 3486488]
R3 RTL8168;@oem39.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2014-03-28 854744]
R3 RTSPER;@oem46.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\windows\system32\DRIVERS\RtsPer.sys [2014-03-22 476888]
R3 SPUVCbv;@oem14.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2014-10-07 674592]
R3 SynTP;@oem30.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\System32\drivers\SynTP.sys [2014-10-31 580336]
R3 usb3Hub;@oem54.inf,%usb3Hub.SVCDESC%;UoIP Hub; C:\windows\System32\drivers\usb3Hub.sys [2014-10-15 213296]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-11-21 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2013-10-07 65752]
S3 dg_ssudbus;@oem61.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 EsgScanner;EsgScanner; C:\windows\system32\DRIVERS\EsgScanner.sys [2016-02-23 22704]
S3 intaud_WaveExtensible;@oem36.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-10-17 42288]
S3 IntcDAud;@oem29.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-10-30 454416]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 RSUSBSTOR;@oem41.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2014-03-27 272600]
S3 RSUSBVSTOR;@oem42.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2014-03-27 331992]
S3 ssudmdm;@oem63.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\windows\system32\svchost.exe [2014-11-21 38792]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-12-13 226440]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 CtAgentService;Absolute Software Agent Service; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [2014-03-31 7168]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-11-21 38792]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-07-28 500048]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; c:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-09-23 638368]
R2 HpDamServiceHost;HP Device Access Manager Usage Service; c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [2013-11-15 18232]
R2 HPFSService;HP File Sanitizer; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2014-02-05 1758936]
R2 hpsrv;@oem48.inf,%hpservice_desc%;HP Service; C:\windows\system32\Hpservice.exe [2013-07-23 43320]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-12-20 26168]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-06-25 16232]
R2 ibtsiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [2014-11-04 125168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-10-28 329104]
R2 IntelUSBoverIP;IntelUSBoverIP; C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [2014-10-15 394184]
R2 ISCTAgent;Intel(R) Smart Connect Technology Agent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2014-08-14 209712]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-10-10 158496]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-10-10 409376]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-09-23 157088]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-09-04 292568]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-09-12 3221392]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-11-21 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2015-04-28 1102472]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-16 50864]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-11-21 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-10-28 279952]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-11-20 567608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09 144200]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2013-12-10 372408]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-05-13 887256]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-09-23 268192]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:services
Bonjour Service

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gejzic
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 05 říj 2014 17:39

Re: Prosím o kontrolu logu

#7 Příspěvek od gejzic »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Břetislav at 2016-02-23 22:12:57
Microsoft Windows 8.1
System drive C: has 141 GB (61%) free of 232 GB
Total RAM: 3987 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:13:02, on 23. 2. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
G:\Program files\Safari\Safari.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
G:\Program files\Safari\Apple Application Support\WebKit2WebProcess.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\trend micro\Břetislav.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://stop-block.org/wpad.dat?3255a53c ... fee6615681
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
O4 - HKLM\..\Run: [HP Camera Driver_Monitor] "C:\Program Files (x86)\HP Camera Driver\monitor.exe"
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [HP File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Absolute Software Agent Service (CtAgentService) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - c:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP HotSpot 1.0 Service (HotSpotSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe
O23 - Service: HP Device Access Manager Usage Service (HpDamServiceHost) - Hewlett-Packard Development Company - c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: @oem48.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel Bluetooth Service (ibtsiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: IntelUSBoverIP - Intel - C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 11921 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\Hpservice.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SC
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 938319313056
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe"
taskeng.exe {9C143994-D924-40D3-96B2-9163B91A5EBF}
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\windows\Explorer.EXE
C:\windows\System32\svchost.exe -k utcsvc
dashost.exe {54ecc705-196d-49b5-bdf185465110fb03}
"c:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
"c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe"
"c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\windows\system32\svchost.exe -k imgsvc
"c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe"
"C:\windows\system32\GWX\GWX.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
igfxEM.exe
igfxHK.exe
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
igfxTray.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\windows\notepad.exe" C:\_OTM\MovedFiles\02232016_220703.log
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 564 568 576 65536 572
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe"
"G:\Program files\Safari\Safari.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"G:\Program files\Safari\Apple Application Support\WebKit2WebProcess.exe" -type webprocess -clientIdentifier 984
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\totalcmd\TOTALCMD.EXE"

"C:\Users\BETISL~1\AppData\Local\Temp\t2n453qd.tmp\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\HPCeeScheduleForBřetislav.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForBřetislav (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-28 885152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2014-02-05 129240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-02-03 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-28 664184]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-02-03 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-12-20 414920]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-06-25 36352]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-11-11 7659224]
"ISCT Tray"=c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [2014-08-14 5860656]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-10-31 2863344]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-18 50615936]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2014-10-03 425608]
"HP Camera Driver_Monitor"=C:\Program Files (x86)\HP Camera Driver\monitor.exe []
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2014-04-01 126240]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05 111576]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2013-08-07 490760]
"HP File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2014-02-05 2213592]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-12-13 7021880]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-23 22:07:03 ----D---- C:\_OTM
2016-02-23 19:39:26 ----D---- C:\AdwCleaner
2016-02-23 10:44:45 ----D---- C:\rsit
2016-02-23 10:44:45 ----D---- C:\Program Files\trend micro
2016-02-23 09:40:01 ----A---- C:\windows\system32\drivers\EsgScanner.sys
2016-02-23 09:27:21 ----D---- C:\RTSStavitel
2016-02-23 09:23:50 ----D---- C:\extensions
2016-02-23 09:23:16 ----A---- C:\windows\system32\drivers\dtsoftbus01.sys
2016-02-23 09:23:12 ----D---- C:\Users\Břetislav\AppData\Roaming\DAEMON Tools Lite
2016-02-23 09:23:10 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2016-02-23 09:22:46 ----D---- C:\ProgramData\DAEMON Tools Lite
2016-02-09 21:33:12 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-02-09 21:33:12 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\urlmon.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\mshtml.dll
2016-02-09 21:33:12 ----A---- C:\windows\system32\iertutil.dll
2016-02-09 21:33:11 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-02-09 21:33:10 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-02-09 21:33:10 ----A---- C:\windows\system32\ieframe.dll
2016-02-09 21:09:24 ----A---- C:\windows\SYSWOW64\EncDec.dll
2016-02-09 21:09:24 ----A---- C:\windows\SYSWOW64\CPFilters.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\mtxoci.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\EncDec.dll
2016-02-09 21:09:24 ----A---- C:\windows\system32\CPFilters.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-02-09 21:09:23 ----A---- C:\windows\SYSWOW64\cfgbkend.dll
2016-02-09 21:09:23 ----A---- C:\windows\system32\cfgbkend.dll
2016-02-09 21:09:21 ----A---- C:\windows\system32\Windows.Data.Pdf.dll
2016-02-09 21:09:21 ----A---- C:\windows\system32\glcndFilter.dll
2016-02-09 21:09:20 ----A---- C:\windows\SYSWOW64\Windows.Data.Pdf.dll
2016-02-09 21:09:20 ----A---- C:\windows\SYSWOW64\glcndFilter.dll
2016-02-09 21:09:17 ----A---- C:\windows\system32\generaltel.dll
2016-02-09 21:09:17 ----A---- C:\windows\system32\appraiser.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\invagent.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\devinv.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-02-09 21:09:16 ----A---- C:\windows\system32\aeinv.dll
2016-02-09 21:09:16 ----A---- C:\windows\system32\acmigration.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\lsasrv.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\kerberos.dll
2016-02-09 21:09:14 ----A---- C:\windows\system32\certcli.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-02-09 21:09:13 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-02-09 21:09:13 ----A---- C:\windows\system32\msv1_0.dll
2016-02-09 21:09:13 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-02-09 21:09:13 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-02-09 21:09:13 ----A---- C:\windows\system32\dpapisrv.dll
2016-02-09 21:08:33 ----A---- C:\windows\system32\shell32.dll
2016-02-09 21:08:31 ----A---- C:\windows\system32\twinui.dll
2016-02-09 21:08:29 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-02-09 21:08:27 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-02-09 21:08:26 ----A---- C:\windows\SYSWOW64\authui.dll
2016-02-09 21:08:26 ----A---- C:\windows\system32\authui.dll
2016-02-09 21:08:19 ----A---- C:\windows\system32\win32k.sys
2016-02-09 21:08:17 ----A---- C:\windows\system32\ntoskrnl.exe
2016-02-09 21:08:17 ----A---- C:\windows\system32\KernelBase.dll
2016-02-09 21:08:17 ----A---- C:\windows\system32\combase.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\WinTypes.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-02-09 21:08:16 ----A---- C:\windows\SYSWOW64\combase.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\WinTypes.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\ntdll.dll
2016-02-09 21:08:16 ----A---- C:\windows\system32\microsoft-windows-system-events.dll
2016-02-09 21:08:15 ----A---- C:\windows\SYSWOW64\wincorlib.dll
2016-02-09 21:08:04 ----A---- C:\windows\system32\drivers\mrxdav.sys
2016-02-09 21:07:55 ----A---- C:\windows\system32\jscript9.dll
2016-02-09 21:07:53 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-02-09 21:07:52 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-02-09 21:07:52 ----A---- C:\windows\system32\wininet.dll
2016-02-09 21:07:51 ----A---- C:\windows\system32\msfeeds.dll
2016-02-09 21:07:50 ----A---- C:\windows\SYSWOW64\hlink.dll
2016-02-09 21:07:50 ----A---- C:\windows\system32\hlink.dll
2016-02-09 21:07:50 ----A---- C:\windows\system32\actxprxy.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-02-09 21:07:49 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-02-09 21:07:49 ----A---- C:\windows\system32\webcheck.dll
2016-02-09 21:07:49 ----A---- C:\windows\system32\iedkcs32.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-02-09 21:07:48 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\vbscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\jscript.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\inetcomm.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\ieapfltr.dll
2016-02-09 21:07:48 ----A---- C:\windows\system32\ie4uinit.exe
2016-02-09 21:06:38 ----A---- C:\windows\SYSWOW64\WinSync.dll
2016-02-09 21:06:38 ----A---- C:\windows\system32\WinSync.dll
2016-02-09 21:06:32 ----A---- C:\windows\system32\rdpcorets.dll
2016-02-09 21:06:31 ----A---- C:\windows\system32\rdpudd.dll
2016-02-09 21:06:22 ----A---- C:\windows\system32\wuaueng.dll
2016-02-09 21:06:22 ----A---- C:\windows\system32\wuapi.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wudriver.dll
2016-02-09 21:06:21 ----A---- C:\windows\SYSWOW64\wuapi.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuwebv.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\WUSettingsProvider.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wudriver.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wucltux.dll
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuauclt.exe
2016-02-09 21:06:21 ----A---- C:\windows\system32\wuapp.exe
2016-02-09 21:06:20 ----A---- C:\windows\SYSWOW64\wuapp.exe
2016-01-30 20:51:53 ----RD---- C:\Program Files (x86)\Skype
2016-01-29 12:53:31 ----D---- C:\Users\Břetislav\AppData\Roaming\ViberPC

======List of files/folders modified in the last 1 month======

2016-02-23 22:11:44 ----D---- C:\windows\Prefetch
2016-02-23 22:10:45 ----D---- C:\windows\Temp
2016-02-23 22:09:50 ----D---- C:\Windows
2016-02-23 22:07:03 ----D---- C:\windows\Tasks
2016-02-23 22:00:00 ----D---- C:\windows\system32\sru
2016-02-23 20:40:48 ----SD---- C:\Users\Břetislav\AppData\Roaming\Microsoft
2016-02-23 20:15:41 ----D---- C:\windows\Microsoft.NET
2016-02-23 19:45:34 ----D---- C:\windows\system32\Tasks
2016-02-23 19:45:33 ----RD---- C:\Program Files (x86)
2016-02-23 19:45:33 ----RD---- C:\Program Files
2016-02-23 19:45:33 ----HD---- C:\ProgramData
2016-02-23 19:45:33 ----D---- C:\Program Files (x86)\Common Files
2016-02-23 19:39:20 ----D---- C:\Users\Břetislav\AppData\Roaming\Skype
2016-02-23 10:49:56 ----RD---- C:\windows\System32
2016-02-23 10:49:56 ----D---- C:\windows\Inf
2016-02-23 10:49:56 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-02-23 10:40:45 ----D---- C:\windows\system32\drivers
2016-02-23 10:37:17 ----D---- C:\Users\Břetislav\AppData\Roaming\Apple Computer
2016-02-23 09:23:19 ----D---- C:\windows\system32\DriverStore
2016-02-23 09:23:19 ----D---- C:\windows\system32\catroot
2016-02-21 16:20:36 ----D---- C:\windows\system32\config
2016-02-18 18:31:43 ----D---- C:\windows\AppReadiness
2016-02-18 18:08:00 ----HD---- C:\Program Files\WindowsApps
2016-02-17 19:57:28 ----SHD---- C:\System Volume Information
2016-02-14 15:51:49 ----D---- C:\windows\rescache
2016-02-14 15:49:11 ----RSD---- C:\windows\assembly
2016-02-14 13:23:42 ----D---- C:\windows\system32\catroot2
2016-02-10 11:55:40 ----D---- C:\windows\WinSxS
2016-02-10 00:36:18 ----RD---- C:\windows\ToastData
2016-02-10 00:36:18 ----D---- C:\windows\SysWOW64
2016-02-10 00:36:18 ----D---- C:\windows\system32\appraiser
2016-02-10 00:36:18 ----D---- C:\windows\apppatch
2016-02-10 00:36:17 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-02-10 00:36:17 ----D---- C:\windows\system32\cs-CZ
2016-02-10 00:36:17 ----D---- C:\Program Files\Windows Journal
2016-02-10 00:36:16 ----D---- C:\windows\system32\wbem
2016-02-10 00:36:16 ----D---- C:\Program Files\Internet Explorer
2016-02-10 00:36:16 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-09 21:48:05 ----D---- C:\windows\CbsTemp
2016-02-09 21:40:51 ----D---- C:\windows\system32\MRT
2016-02-09 21:36:24 ----A---- C:\windows\system32\MRT.exe
2016-02-03 17:09:47 ----D---- C:\ProgramData\Oracle
2016-02-03 16:45:59 ----SHD---- C:\windows\Installer
2016-02-03 16:45:58 ----D---- C:\Program Files (x86)\Java
2016-02-03 16:44:35 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-02-02 03:37:41 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-01-30 20:51:52 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2015-12-13 65224]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2015-12-13 273784]
R0 hpdskflt;@oem48.inf,%service_desc%;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2013-07-23 30520]
R0 iaStorA;iaStorA; C:\windows\System32\drivers\iaStorA.sys [2014-06-07 670056]
R0 PinFile;PinFile; C:\windows\system32\DRIVERS\PinFile.sys [2014-12-05 49856]
R0 SDDisk2K;SDDisk2K; C:\windows\system32\DRIVERS\SDDisk2K.sys [2014-12-05 228544]
R0 SDDToki;SDDToki; C:\windows\system32\DRIVERS\SDDToki.sys [2014-12-05 131264]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2015-12-13 93528]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-01-20 1065208]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-01-20 464256]
R1 CLVirtualDrive;CLVirtualDrive; C:\windows\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712]
R1 dtsoftbus01;@oem73.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\windows\System32\drivers\dtsoftbus01.sys [2016-02-23 283064]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2015-12-13 28656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2015-12-21 97648]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2015-12-13 155304]
R3 Accelerometer;@oem48.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2013-07-23 43320]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 ibtusb;@oem40.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\windows\system32\DRIVERS\ibtusb.sys [2014-11-04 225008]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-10-28 4850616]
R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\windows\system32\DRIVERS\ikbevent.sys [2014-05-27 22216]
R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\windows\system32\DRIVERS\imsevent.sys [2014-05-27 22728]
R3 INETMON;INETMON; \??\C:\windows\System32\Drivers\INETMON.sys [2014-05-27 25800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2014-11-12 4275288]
R3 ISCT;@oem27.inf,%ISCT.DeviceDesc%;Intel(R) Smart Connect Technology Device Driver; C:\windows\System32\drivers\ISCTD.sys [2014-05-27 44744]
R3 iwdbus;@oem37.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-10-17 30512]
R3 MEIx64;@oem24.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\windows\System32\drivers\TeeDriverx64.sys [2014-10-10 129312]
R3 NETwNb64;@oem32.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\windows\system32\DRIVERS\Netwbw02.sys [2014-10-17 3486488]
R3 RTL8168;@oem39.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2014-03-28 854744]
R3 RTSPER;@oem46.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\windows\system32\DRIVERS\RtsPer.sys [2014-03-22 476888]
R3 SPUVCbv;@oem14.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2014-10-07 674592]
R3 SynTP;@oem30.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\windows\System32\drivers\SynTP.sys [2014-10-31 580336]
R3 usb3Hub;@oem54.inf,%usb3Hub.SVCDESC%;UoIP Hub; C:\windows\System32\drivers\usb3Hub.sys [2014-10-15 213296]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\windows\System32\drivers\BthEnum.sys [2014-11-21 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2013-10-07 65752]
S3 dg_ssudbus;@oem61.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 EsgScanner;EsgScanner; C:\windows\system32\DRIVERS\EsgScanner.sys [2016-02-23 22704]
S3 intaud_WaveExtensible;@oem36.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-10-17 42288]
S3 IntcDAud;@oem29.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-10-30 454416]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 RSUSBSTOR;@oem41.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2014-03-27 272600]
S3 RSUSBVSTOR;@oem42.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2014-03-27 331992]
S3 ssudmdm;@oem63.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\windows\system32\svchost.exe [2014-11-21 38792]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-12-13 226440]
R2 CtAgentService;Absolute Software Agent Service; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [2014-03-31 7168]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-11-21 38792]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-07-28 500048]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; c:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-09-23 638368]
R2 HpDamServiceHost;HP Device Access Manager Usage Service; c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [2013-11-15 18232]
R2 HPFSService;HP File Sanitizer; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2014-02-05 1758936]
R2 hpsrv;@oem48.inf,%hpservice_desc%;HP Service; C:\windows\system32\Hpservice.exe [2013-07-23 43320]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2015-12-20 26168]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-06-25 16232]
R2 ibtsiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [2014-11-04 125168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-10-28 329104]
R2 IntelUSBoverIP;IntelUSBoverIP; C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [2014-10-15 394184]
R2 ISCTAgent;Intel(R) Smart Connect Technology Agent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2014-08-14 209712]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-10-10 158496]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-10-10 409376]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-09-23 157088]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-09-04 292568]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-09-12 3221392]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-11-21 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2015-04-28 1102472]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-16 50864]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-11-21 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-10-28 279952]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-11-20 567608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09 144200]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2013-12-10 372408]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-05-13 887256]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-09-23 268192]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Jak to vypadá nyní?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gejzic
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 05 říj 2014 17:39

Re: Prosím o kontrolu logu

#9 Příspěvek od gejzic »

Děkuji. Reklamy a nějaký pofidérní vyhledávač z Chromu zmizel. Posílám dar na účet.

gejzic
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 05 říj 2014 17:39

Re: Prosím o kontrolu logu

#10 Příspěvek od gejzic »

Tak přece něco. Často mě to přesměruje na reklamní stránky, když kliknu na odkaz.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#11 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

gejzic
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 05 říj 2014 17:39

Re: Prosím o kontrolu logu

#12 Příspěvek od gejzic »

tady to je.
Přílohy
vir.zip
(26.33 KiB) Staženo 66 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#13 Příspěvek od Rudy »

Všechny nálezy smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět