Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

problem s ntb

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
patrik52
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 25 črc 2008 21:52

problem s ntb

#1 Příspěvek od patrik52 »

Ahoj, mám problém, keď som na internete a kliknem na nejaký odkaz tak mi tento odkaz vyskočí na ďalšom liste, keď chcem scrollovať dolu stránku tak namiesto toho kolečkom myše mi stránku zmenší. Pridávam log a ďakujem za pomoc :)
Logfile of random's system information tool 1.10 (written by random/random)
Run by Patrik at 2016-06-17 12:19:46
Microsoft Windows 10 Home
System drive C: has 52 GB (11%) free of 459 GB
Total RAM: 3986 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:19:58, on 17. 6. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0420)
Boot mode: Normal

Running processes:
C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe
C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyCrashService.exe
C:\Users\Patrik\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe
C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\trend micro\Patrik.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O1 - Hosts: ::1 localhost
O2 - BHO: CrossriderApp0061855 - {11111111-1111-1111-1111-110611181155} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O2 - BHO: (no name) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Patrik\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Patrik\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Patrik\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: Dropbox.lnk = Patrik\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: Lingea Update Center.lnk = C:\Program Files (x86)\Common Files\Lingea Shared\luc.exe
O4 - Startup: Monitor Ink Alerts - HP Deskjet 2050 J510 series.lnk = ?
O4 - Startup: Orezávač obrazovky a spúšťač programu OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Startup: TotalVPN.lnk = Patrik\AppData\Local\TotalVPN\TotalVPN.exe
O4 - Global Startup: AutorunsDisabled
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GFNEX Service (GFNEXSrv) - Unknown owner - C:\Windows\System32\GFNEXSrv.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: Nero Update (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: OpenVPN Manager Service (OVPNService) - Unknown owner - C:\Users\Patrik\AppData\Local\TotalVPN\OVPN.Service.exe
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 16384 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
dashost.exe {61e73591-af6c-4c6f-92399db0613766da}
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\GFNEXSrv.exe
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
C:\windows\system32\TODDSrv.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
"C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe"

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe" /f="C:\Program Files\SRS Labs\SRS Control Panel\SRS_Premium_Sound_HD.zip" /h
"C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe"
"C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe"
"C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe"
"C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
"C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyCrashService.exe"
"C:\Users\Patrik\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"fontdrvhost.exe"
"C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe" --type=gpu-process --channel="10592.0.26451467\2070878146" --no-sandbox --disable-d3d11 --enable-crash-reporter --lang=en-US --log-file="C:\Users\Patrik\AppData\Roaming\Spotify\debug.log" --log-severity=disable --product-version=Spotify/1.0.29.92 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,23,51 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.4229 --enable-crash-reporter --lang=en-US --log-file="C:\Users\Patrik\AppData\Roaming\Spotify\debug.log" --log-severity=disable --product-version=Spotify/1.0.29.92 /prefetch:822062411
"C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe" --type=renderer --disable-pinch --no-sandbox --lang=en-US --enable-crash-reporter --lang=en-US --log-file="C:\Users\Patrik\AppData\Roaming\Spotify\debug.log" --log-severity=disable --product-version=Spotify/1.0.29.92 --disable-extensions --disable-spell-checking --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="10592.1.2054005996\1253597029" /prefetch:673131151
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe"
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer

C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.20961.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
C:\Windows\System32\LockAppHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca

taskeng.exe {B89D3D81-86F5-4831-9ECA-E7C5382EB793}
"C:\Users\Patrik\Downloads\RSITx64.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2370796447-4283009116-356483575-100078_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2370796447-4283009116-356483575-100078 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636

======Scheduled tasks folder======

C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-1.job - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-codedownloader.exe /DhLutSr /CQunBqq=task /hdiaC='TheTorntv V10' /bDjaQPWG=61855 /GshHoh='001823' /nPRSF='0' /kCgjl='0' /hvSbiA=03FE12CA98F54EA18315FA707693135EIE /aVxHCw=c9f977e62c48a21bf3269e0fc1da680d /QBvboUVo=1_34_07_29 /tNwoNcP=1.34.7.29 /URdcIxKJ=1407061652 /aZUPSsR=http://stats.infogenservice.com /Skaqk=http://errors.infogenservice.com /HLANOpM=http://cr.install-daddy.com /hFXuC=ch /CsFWUqs='TheTorntv V10' /tEBKp=http://cr.install-daddy.com /uplKW /JifQZhZQy='{"asw":[2, -2147483643, 0]}' /JXIAdYO='http://update.infogenservice.com/ie_cod ... pdate.json' /CQunBqq='task' /ZTAyAHQ=''
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-11.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-11.exe /HdBXdl=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
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-2.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-2.exe /ePZSpy /hdiaC='TheTorntv V10' /bDjaQPWG=61855 /GshHoh='001823' /nPRSF='0' /kCgjl='0' /hvSbiA=03FE12CA98F54EA18315FA707693135EIE /aVxHCw=c9f977e62c48a21bf3269e0fc1da680d /QBvboUVo=1_34_07_29 /URdcIxKJ=1407061652 /aZUPSsR=http://stats.infogenservice.com /Skaqk=http://errors.infogenservice.com /hDlXcLe=11111111-1111-1111-1111-110611181155 /hFXuC=ch /uplKW /JXIAdYO='http://update.infogenservice.com/ie_ena ... pdate.json' /CQunBqq='task' /ZTAyAHQ=''
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-3.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-3.exe /HdBXdl=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
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-4.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-4.exe /ytIcaVuk /hdiaC='TheTorntv V10' /OyROGGJ='C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8.xpi' /bDjaQPWG=61855 /GshHoh='001823' /nPRSF='0' /kCgjl='0' /hvSbiA=03FE12CA98F54EA18315FA707693135EIE /aVxHCw=c9f977e62c48a21bf3269e0fc1da680d /QBvboUVo=1_34_07_29 /tNwoNcP=1.34.7.29 /URdcIxKJ=1407061652 /aZUPSsR=http://stats.infogenservice.com /Skaqk=http://errors.infogenservice.com /Khhudv=300 /aNzODm=44e4876d5886435183fea8e@44f892d6c2ac4a44858c85e3636.com /kFZdKjCLZ=0.95 /oDpqZ=a44e4876d5886435183fea8e44f892d6c2ac4a44858c85e3636com61855 /XQbaqBYaC=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /61855.rdf /wsOYO='TheTorntv V10' /hsYaQb='The must-have App extensions for Television fans! Watch free TV channels, live sports and more' /wtWSSVLw='esc' /hFXuC=ch /JifQZhZQy='{"asw":[2, -2147483643, 0]}' /uplKW /NbpTo /YmMweS /JXIAdYO='http://update.infogenservice.com/ff_age ... pdate.json' /CQunBqq='task' /ZTAyAHQ=''
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-5.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-5.exe /KygFEL /hdiaC='TheTorntv V10' /bDjaQPWG=61855 /GshHoh='001823' /nPRSF='0' /kCgjl='0' /hvSbiA=03FE12CA98F54EA18315FA707693135EIE /aVxHCw=c9f977e62c48a21bf3269e0fc1da680d /QBvboUVo=1_34_07_29 /URdcIxKJ=1407061652 /aZUPSsR=http://stats.infogenservice.com /Skaqk=http://errors.infogenservice.com /piakQyo=http://ipgeoapi.com/ /gqmfSwCqW=http://update.infogenservice.com /czjxmm=2 /DIPQvM=http://logs.infogenservice.com /JXIAdYO='http://update.infogenservice.com/update ... pdate.json' /CQunBqq='task' /ZTAyAHQ=''
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-5_user.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-5.exe /KygFEL /hdiaC='TheTorntv V10' /bDjaQPWG=61855 /GshHoh='001823' /nPRSF='0' /kCgjl='0' /hvSbiA=03FE12CA98F54EA18315FA707693135EIE /aVxHCw=c9f977e62c48a21bf3269e0fc1da680d /QBvboUVo=1_34_07_29 /URdcIxKJ=1407061652 /aZUPSsR=http://stats.infogenservice.com /Skaqk=http://errors.infogenservice.com /piakQyo=http://ipgeoapi.com/ /gqmfSwCqW=http://update.infogenservice.com /czjxmm=2 /DIPQvM=http://logs.infogenservice.com /JXIAdYO='http://update.infogenservice.com/update ... pdate.json' /njyFF /CQunBqq='task' /ZTAyAHQ=''
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-6.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-6.exe /hdiaC='TheTorntv V10' /bDjaQPWG=61855 /GshHoh='001823' /nPRSF='0' /kCgjl='0' /hvSbiA=03FE12CA98F54EA18315FA707693135EIE /aVxHCw=c9f977e62c48a21bf3269e0fc1da680d /QBvboUVo=1_34_07_29 /tNwoNcP=1.34.7.29 /URdcIxKJ=1407061652 /aZUPSsR=http://stats.infogenservice.com /Skaqk=http://errors.infogenservice.com /HLANOpM=http://cr.install-daddy.com /hFXuC=ch /fXeeQcRh /CsFWUqs=TheTorntv V10 /ytaihaN1cf591f6-46a0-4588-8ade-70a6e9d1be2d.dll /bPcJJ24831f60-df13-433d-ba65-b2c3f1a31c71.dll /SyidorGA17e26686-620a-4d06-9220-22b8b3c078a8-64.exe /xFqIDuwCL='nova' /tEBKp=http://cr.install-daddy.com /JifQZhZQy='{"asw":[2, -2147483643, 0]}' /JXIAdYO='http://update.infogenservice.com/novaru ... pdate.json' /CQunBqq='task' /ZTAyAHQ=''
C:\WINDOWS\tasks\17e26686-620a-4d06-9220-22b8b3c078a8-7.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-7.exe /ReEdPC /hdiaC='TheTorntv V10' /bDjaQPWG=61855 /GshHoh='001823' /nPRSF='0' /kCgjl='0' /hvSbiA=03FE12CA98F54EA18315FA707693135EIE /aVxHCw=c9f977e62c48a21bf3269e0fc1da680d /QBvboUVo=1_34_07_29 /tNwoNcP=1.34.7.29 /URdcIxKJ=1407061652 /aZUPSsR=http://stats.infogenservice.com /Skaqk=http://errors.infogenservice.com /HLANOpM=http://cr.install-daddy.com /hFXuC=ch /fXeeQcRh /CsFWUqs=TheTorntv V10 /ytaihaN1cf591f6-46a0-4588-8ade-70a6e9d1be2d.dll /bPcJJ24831f60-df13-433d-ba65-b2c3f1a31c71.dll /SyidorGA17e26686-620a-4d06-9220-22b8b3c078a8-64.exe /xFqIDuwCL='nova' /tEBKp=http://cr.install-daddy.com /JifQZhZQy='{"asw":[2, -2147483643, 0]}' /CQunBqq=task /JXIAdYO='http://update.infogenservice.com/novaco ... pdate.json' /CQunBqq='task' /ZTAyAHQ=''
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2.job - C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-4.exe /HdBXdl=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
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core.job - C:\Users\Patrik\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000UA.job - C:\Users\Patrik\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core.job - C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000UA.job - C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Patrik\AppData\Roaming\Mozilla\Firefox\Profiles\ukloug46.default

prefs.js - "browser.startup.homepage" - "about:home"
prefs.js - "keyword.URL" - "https://www.google.com/search"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.242 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.65.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.65.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nppl3260;version=16.0.3.51]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.3]
"Description"=RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.3]
"Description"=RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.3]
"Description"=RealNetworks(tm) RealDownloader Peppe rFlash Video Shim Plug-In
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpplugin;version=16.0.3.51]
"Description"=RealPlayer Download Plugin
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@realnetworks.com/npdlplugin;version=1]
"Description"=RealDownloader Plugin
"Path"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.242 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_242.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll


C:\Users\Patrik\AppData\Roaming\Mozilla\Firefox\Profiles\ukloug46.default\searchplugins\
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611181155}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-06-11 231104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-02 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2016-06-11 586528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-06-11 2095920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll [2011-11-03 700800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611181155}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealNetworks Download and Record Plugin for Internet Explorer - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-08-14 542376]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-06-11 170696]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-02 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-06-11 1538352]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13 1307928]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2011-11-03 534400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13 1307928]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-06-01 183216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2015-06-01 411056]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2015-06-01 453552]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-09-27 13196432]
"SRS Premium Sound HD"=C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2012-02-06 2165120]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2011-09-23 590256]
"TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2011-12-14 989056]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2011-12-15 712096]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2011-11-26 710560]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"VDownloader"=C:\Program Files (x86)\VDownloader\VDownloader4.exe [2014-10-23 3017216]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-10-08 3954880]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-12-20 138096]
"Dropbox Update"=C:\Users\Patrik\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16 134512]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-01-15 4177784]
"Spotify Web Helper"=C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2016-05-30 1554032]
"Spotify"=C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe [2016-05-30 6859888]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Patrik\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-01-05 291608]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [2014-02-26 295512]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-11 256896]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-02 5515496]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
AutorunsDisabled

C:\Users\Patrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Patrik\AppData\Roaming\Dropbox\bin\Dropbox.exe
Lingea Update Center.lnk - C:\Program Files (x86)\Common Files\Lingea Shared\luc.exe
Monitor Ink Alerts - HP Deskjet 2050 J510 series.lnk - C:\windows\system32\RunDll32.exe
Orezávač obrazovky a spúšťač programu OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
TotalVPN.lnk - C:\Users\Patrik\AppData\Local\TotalVPN\TotalVPN.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2015-06-01 451584]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-06-17 12:19:49 ----D---- C:\Program Files\trend micro
2016-06-16 15:41:33 ----SHD---- C:\found.003
2016-06-14 21:35:39 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-06-14 21:35:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-06-14 21:35:33 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-06-14 21:35:33 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-06-14 21:35:33 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-06-14 21:35:33 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-06-14 21:35:32 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-06-14 21:35:31 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-06-14 21:35:31 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-06-14 21:35:30 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-06-14 21:35:29 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-06-14 21:35:29 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-06-14 21:35:28 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-06-14 21:35:27 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-06-14 21:35:25 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-06-14 21:35:23 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-06-14 21:35:19 ----A---- C:\WINDOWS\system32\mos.dll
2016-06-14 21:35:17 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-06-14 21:35:17 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-06-14 21:35:17 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-06-14 21:35:15 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-06-14 21:35:15 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-06-14 21:35:02 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-06-14 21:35:01 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-06-14 21:34:59 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-06-14 21:34:59 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-06-14 21:34:58 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-06-14 21:34:58 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-06-14 21:34:56 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-06-14 21:34:56 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-06-14 21:34:56 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-06-14 21:34:55 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-06-14 21:34:55 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-06-14 21:34:55 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-06-14 21:34:52 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-06-14 21:34:50 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-06-14 21:34:48 ----A---- C:\WINDOWS\system32\twinui.dll
2016-06-14 21:34:45 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-06-14 21:34:42 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-06-14 21:34:40 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-06-14 21:34:39 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-06-14 21:34:35 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-06-14 21:34:34 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-06-14 21:34:32 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-06-14 21:34:31 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-06-14 21:34:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-06-14 21:34:23 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-06-14 21:34:21 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-06-14 21:34:21 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2016-06-14 21:34:18 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-06-14 21:34:17 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-06-14 21:34:17 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-06-14 21:34:16 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-06-14 21:34:16 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-06-14 21:34:16 ----A---- C:\WINDOWS\system32\moshost.dll
2016-06-14 21:34:16 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-06-14 21:34:15 ----A---- C:\WINDOWS\system32\gpsvc.dll
2016-06-14 21:34:14 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-06-14 21:34:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-06-14 21:34:11 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-06-14 21:34:10 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-06-14 21:34:09 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-06-14 21:34:09 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-06-14 21:34:07 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-06-14 21:34:06 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-06-14 21:34:05 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-06-14 21:34:05 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-06-14 21:34:02 ----A---- C:\WINDOWS\system32\ole32.dll
2016-06-14 21:34:01 ----A---- C:\WINDOWS\SYSWOW64\LocationFramework.dll
2016-06-14 21:34:01 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-06-14 21:34:00 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-06-14 21:34:00 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-06-14 21:33:59 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-06-14 21:33:58 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-06-14 21:33:58 ----A---- C:\WINDOWS\system32\drivers\dumpsdport.sys
2016-06-14 21:33:56 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-06-14 21:33:55 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-06-14 21:33:55 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-06-14 21:33:54 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-06-14 21:33:54 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-06-14 21:33:53 ----A---- C:\WINDOWS\system32\AppContracts.dll
2016-06-14 21:33:52 ----A---- C:\WINDOWS\system32\invagent.dll
2016-06-14 21:33:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-06-14 21:33:51 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-06-14 21:33:50 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-06-14 21:33:49 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-06-14 21:33:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-06-14 21:33:48 ----A---- C:\WINDOWS\SYSWOW64\tdlrecover.exe
2016-06-14 21:33:48 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2016-06-14 21:33:47 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-06-14 21:33:46 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-06-14 21:33:45 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-06-14 21:33:44 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-06-14 21:33:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-06-14 21:33:43 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-06-14 21:33:42 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-06-14 21:33:41 ----A---- C:\WINDOWS\explorer.exe
2016-06-14 21:33:40 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2016-06-14 21:33:40 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-06-14 21:33:39 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-06-14 21:33:38 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-06-14 21:33:36 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2016-06-14 21:33:35 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2016-06-14 21:33:35 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-06-14 21:33:34 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2016-06-14 21:33:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-06-14 21:33:34 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-06-14 21:33:32 ----A---- C:\WINDOWS\system32\ws2_32.dll
2016-06-14 21:33:32 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-06-14 21:33:32 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2016-06-14 21:33:31 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-06-14 21:33:31 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-06-14 21:33:30 ----A---- C:\WINDOWS\system32\setupapi.dll
2016-06-14 21:33:28 ----A---- C:\WINDOWS\system32\rastls.dll
2016-06-14 21:33:27 ----A---- C:\WINDOWS\system32\usocore.dll
2016-06-14 21:33:27 ----A---- C:\WINDOWS\system32\SRH.dll
2016-06-14 21:33:27 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-06-14 21:33:27 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-06-14 21:33:26 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2016-06-14 21:33:26 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-06-14 21:33:25 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-06-14 21:33:24 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2016-06-14 21:33:24 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-06-14 21:33:23 ----A---- C:\WINDOWS\system32\BrokerLib.dll
2016-06-14 21:33:19 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-06-14 21:33:19 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-06-14 21:33:18 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-06-14 21:33:18 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-06-14 21:33:18 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-06-14 21:33:17 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2016-06-14 21:33:16 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-06-14 21:33:16 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-06-14 21:33:16 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-06-14 21:33:15 ----A---- C:\WINDOWS\system32\omadmclient.exe
2016-06-14 21:33:14 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-06-14 21:33:13 ----A---- C:\WINDOWS\system32\shell32.dll
2016-06-14 21:33:09 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-06-14 21:33:09 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-06-14 21:33:08 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-06-14 21:33:08 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-06-14 21:33:08 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-06-14 21:33:05 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-06-14 21:33:05 ----A---- C:\WINDOWS\system32\wininet.dll
2016-06-14 21:33:04 ----A---- C:\WINDOWS\system32\hal.dll
2016-06-14 21:33:03 ----A---- C:\WINDOWS\system32\mswsock.dll
2016-06-14 21:33:03 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-06-14 21:33:02 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-06-14 21:33:02 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2016-06-14 21:33:02 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-06-14 21:33:01 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2016-06-14 21:33:01 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-06-14 21:33:00 ----A---- C:\WINDOWS\system32\polstore.dll
2016-06-14 21:32:54 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-06-14 21:32:52 ----A---- C:\WINDOWS\system32\IPSECSVC.DLL
2016-06-14 21:32:52 ----A---- C:\WINDOWS\system32\gpapi.dll
2016-06-14 21:32:52 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-06-14 21:32:51 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-06-14 21:32:51 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-06-14 21:32:51 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-06-14 21:32:49 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-06-14 21:32:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-06-14 21:32:49 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2016-06-14 21:32:48 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-06-14 21:32:48 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-06-14 21:32:47 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2016-06-14 21:32:47 ----A---- C:\WINDOWS\system32\internetmail.dll
2016-06-14 21:32:47 ----A---- C:\WINDOWS\system32\GnssAdapter.dll
2016-06-14 21:32:46 ----A---- C:\WINDOWS\system32\devinv.dll
2016-06-14 21:32:45 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-06-14 21:32:45 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-06-14 21:32:44 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2016-06-14 21:32:44 ----A---- C:\WINDOWS\system32\NetworkUXBroker.exe
2016-06-14 21:32:44 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-06-14 21:32:43 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2016-06-14 21:32:42 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-06-14 21:32:42 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-06-14 21:32:41 ----A---- C:\WINDOWS\SYSWOW64\polstore.dll
2016-06-14 21:32:41 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-06-14 21:32:40 ----A---- C:\WINDOWS\SYSWOW64\newdev.dll
2016-06-14 21:32:40 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-06-14 21:32:39 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-06-14 21:32:39 ----A---- C:\WINDOWS\system32\newdev.dll
2016-06-14 21:32:39 ----A---- C:\WINDOWS\system32\cdd.dll
2016-06-14 21:32:38 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-06-14 21:32:38 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2016-06-14 21:32:37 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-06-14 21:32:37 ----A---- C:\WINDOWS\system32\drivers\Ndu.sys
2016-06-14 21:32:37 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-06-14 21:32:36 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-06-14 21:32:36 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-06-14 21:32:33 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-06-14 21:32:32 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-06-14 21:32:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2016-06-14 21:32:31 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2016-06-14 21:32:30 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2016-06-14 21:32:30 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2016-06-14 21:32:29 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-06-14 21:32:29 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-06-14 21:32:29 ----A---- C:\WINDOWS\system32\httpprxp.dll
2016-06-14 21:32:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-06-14 21:32:27 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2016-06-14 21:32:27 ----A---- C:\WINDOWS\system32\adhsvc.dll
2016-06-14 21:32:26 ----A---- C:\WINDOWS\SYSWOW64\FwRemoteSvr.dll
2016-06-14 21:32:26 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-06-14 21:32:26 ----A---- C:\WINDOWS\system32\httpprxm.dll
2016-06-14 21:32:25 ----A---- C:\WINDOWS\system32\FwRemoteSvr.dll
2016-06-14 21:32:25 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-06-14 21:32:24 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-06-14 21:32:24 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-06-14 21:32:24 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-06-14 21:32:21 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-06-14 21:32:20 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-06-14 21:32:20 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-06-14 21:32:19 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-06-14 21:32:19 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-06-14 21:32:19 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-06-14 21:32:19 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-06-14 21:32:19 ----A---- C:\WINDOWS\system32\AppCapture.dll

======List of files/folders modified in the last 1 month======

2016-06-17 12:19:49 ----RD---- C:\Program Files
2016-06-17 12:18:08 ----D---- C:\Users\Patrik\AppData\Roaming\Skype
2016-06-17 12:17:00 ----D---- C:\WINDOWS\Prefetch
2016-06-17 11:58:18 ----D---- C:\WINDOWS\Temp
2016-06-17 11:44:46 ----D---- C:\WINDOWS\system32\sru
2016-06-17 11:44:03 ----D---- C:\Users\Patrik\AppData\Roaming\Spotify
2016-06-17 10:58:50 ----HD---- C:\Program Files\WindowsApps
2016-06-17 10:55:34 ----D---- C:\WINDOWS\system32\Tasks
2016-06-17 10:52:01 ----D---- C:\WINDOWS\INF
2016-06-17 10:50:37 ----D---- C:\WINDOWS\AppReadiness
2016-06-16 19:54:11 ----D---- C:\WINDOWS\system32\config
2016-06-16 19:46:11 ----D---- C:\WINDOWS\System32
2016-06-16 19:46:11 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-16 19:44:19 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-06-16 19:42:04 ----D---- C:\Windows
2016-06-16 19:42:01 ----D---- C:\WINDOWS\WinSxS
2016-06-16 19:40:29 ----D---- C:\WINDOWS\system32\DriverStore
2016-06-16 19:38:52 ----D---- C:\WINDOWS\system32\drivers
2016-06-16 19:12:46 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-06-16 19:12:46 ----D---- C:\WINDOWS\SysWOW64
2016-06-16 19:12:27 ----D---- C:\WINDOWS\system32\wbem
2016-06-16 19:12:27 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-06-16 19:12:25 ----SD---- C:\WINDOWS\system32\DiagSvcs
2016-06-16 19:12:25 ----D---- C:\WINDOWS\system32\sk-SK
2016-06-16 19:12:11 ----D---- C:\WINDOWS\bcastdvr
2016-06-16 19:12:11 ----D---- C:\WINDOWS\AppPatch
2016-06-16 19:12:11 ----D---- C:\Program Files\Internet Explorer
2016-06-16 19:12:11 ----D---- C:\Program Files (x86)\Internet Explorer
2016-06-16 19:12:09 ----D---- C:\WINDOWS\system32\migration
2016-06-16 16:01:09 ----D---- C:\WINDOWS\CbsTemp
2016-06-16 16:00:10 ----D---- C:\WINDOWS\Microsoft.NET
2016-06-16 15:44:22 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-06-16 15:04:56 ----SHD---- C:\System Volume Information
2016-06-15 19:47:40 ----SHD---- C:\WINDOWS\Installer
2016-06-15 19:47:38 ----SHD---- C:\Config.Msi
2016-06-15 19:47:38 ----D---- C:\ProgramData\Microsoft Help
2016-06-15 01:35:03 ----D---- C:\WINDOWS\system32\MRT
2016-06-15 00:54:53 ----A---- C:\WINDOWS\system32\MRT.exe
2016-06-14 20:56:22 ----D---- C:\WINDOWS\system32\catroot2
2016-06-13 01:36:23 ----D---- C:\Program Files (x86)\Steam
2016-06-12 11:14:24 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2016-06-12 11:08:35 ----AD---- C:\Program Files (x86)\Microsoft Office
2016-06-06 14:22:45 ----D---- C:\ProgramData\Skype
2016-06-06 14:22:34 ----RD---- C:\Program Files (x86)\Skype
2016-06-03 21:08:07 ----D---- C:\Users\Patrik\AppData\Roaming\Dropbox
2016-05-28 07:55:39 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-07-02 65736]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-07-02 272248]
R0 iaStor;@oem12.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;@oem10.inf,%XHCI_svcdesc%;Ovládač prepínača hostiteľského radiča Intel(R) USB 3.0; C:\WINDOWS\System32\drivers\iusb3hcs.sys [2012-01-05 16152]
R0 NBVol;Nero Backup Volume Filter Driver; C:\WINDOWS\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\WINDOWS\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-07-02 93528]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-07-02 442264]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-07-02 29168]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-07-02 89944]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-07-02 137288]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2014-08-30 314016]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2014-08-30 43680]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2010-01-27 47632]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-05-28 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-05-28 84992]
R3 dtlitescsibus;@oem46.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-02-08 30264]
R3 dtliteusbbus;@oem4.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-02-08 47672]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-06-01 5384176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-09-27 4155536]
R3 IntcDAud;@oem20.inf,%IntcDAud.SvcDesc%;Intel(R) Zvuk pre obrazovky; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 MEIx64;@oem59.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-17 62784]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-04-09 175616]
R3 PGEffect;Pangu effect driver; C:\WINDOWS\system32\DRIVERS\pgeffect.sys [2011-02-09 38096]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-03-29 181248]
R3 RSUSBSTOR;@oem14.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2011-08-17 251496]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-30 589824]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-07-02 1047320]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2016-05-28 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-02 343336]
R2 ClickToRunSvc;Služba Klikni a spusti balíka Microsoft Office; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2016-05-29 2855152]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 GFNEXSrv;GFNEX Service; C:\Windows\System32\GFNEXSrv.exe [2010-09-10 162824]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-01-21 277784]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-04-09 26624]
R2 NAUpdate;Nero Update; C:\Program Files (x86)\Nero\Update\NASvc.exe [2011-11-04 687400]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_12d96cc;Sync Host_12d96cc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [2013-08-14 39056]
R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [2012-02-13 240408]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2016-01-15 1369464]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [2012-02-13 193816]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1057bee;Sync Host_1057bee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_142d69b;Sync Host_142d69b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1673f0c;Sync Host_1673f0c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1a51aab;Sync Host_1a51aab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1fb4f4e;Sync Host_1fb4f4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_207e654;Sync Host_207e654; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_222ae6b;Sync Host_222ae6b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_224634e;Sync Host_224634e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_24f05ee;Sync Host_24f05ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_252a07d;Sync Host_252a07d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2674783;Sync Host_2674783; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26d62;Sync Host_26d62; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_303a8;Sync Host_303a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_30a5dfa;Sync Host_30a5dfa; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_344e9;Sync Host_344e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_34dbe;Sync Host_34dbe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_34dce;Sync Host_34dce; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3542273;Sync Host_3542273; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_361e5;Sync Host_361e5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3656c4;Sync Host_3656c4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_378da;Sync Host_378da; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3a7a3;Sync Host_3a7a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3fd2b0a;Sync Host_3fd2b0a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_4534d;Sync Host_4534d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_47a03;Sync Host_47a03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_53edb16;Sync Host_53edb16; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5cf38c7;Sync Host_5cf38c7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_6609e0b;Sync Host_6609e0b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_68dab;Sync Host_68dab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_6e12846;Sync Host_6e12846; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_844d9;Sync Host_844d9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-12 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-06-01 290224]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1057bee;MessagingService_1057bee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_12d96cc;MessagingService_12d96cc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_142d69b;MessagingService_142d69b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1673f0c;MessagingService_1673f0c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1a51aab;MessagingService_1a51aab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1fb4f4e;MessagingService_1fb4f4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_207e654;MessagingService_207e654; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_222ae6b;MessagingService_222ae6b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_224634e;MessagingService_224634e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_24f05ee;MessagingService_24f05ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_252a07d;MessagingService_252a07d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2674783;MessagingService_2674783; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26d62;MessagingService_26d62; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_303a8;MessagingService_303a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_30a5dfa;MessagingService_30a5dfa; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_344e9;MessagingService_344e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34dbe;MessagingService_34dbe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34dce;MessagingService_34dce; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3542273;MessagingService_3542273; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_361e5;MessagingService_361e5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3656c4;MessagingService_3656c4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_378da;MessagingService_378da; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3a7a3;MessagingService_3a7a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fd2b0a;MessagingService_3fd2b0a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_47a03;MessagingService_47a03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_53edb16;MessagingService_53edb16; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5cf38c7;MessagingService_5cf38c7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6609e0b;MessagingService_6609e0b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_68dab;MessagingService_68dab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6e12846;MessagingService_6e12846; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_844d9;MessagingService_844d9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-05-12 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2016-01-02 2104840]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2016-05-30 212184]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2015-06-11 5132888]
S3 OVPNService;OpenVPN Manager Service; C:\Users\Patrik\AppData\Local\TotalVPN\OVPN.Service.exe [2016-05-19 20080]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1057bee;Kontaktné údaje_1057bee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_12d96cc;Kontaktné údaje_12d96cc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_142d69b;Kontaktné údaje_142d69b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1673f0c;Kontaktné údaje_1673f0c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1a51aab;Kontaktné údaje_1a51aab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_1fb4f4e;Kontaktné údaje_1fb4f4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_207e654;Kontaktné údaje_207e654; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_222ae6b;Kontaktné údaje_222ae6b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_224634e;Kontaktné údaje_224634e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_24f05ee;Kontaktné údaje_24f05ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_252a07d;Kontaktné údaje_252a07d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2674783;Kontaktné údaje_2674783; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_26d62;Kontaktné údaje_26d62; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_303a8;Kontaktné údaje_303a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_30a5dfa;Kontaktné údaje_30a5dfa; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_344e9;Kontaktné údaje_344e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_34dbe;Kontaktné údaje_34dbe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_34dce;Kontaktné údaje_34dce; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3542273;Kontaktné údaje_3542273; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_361e5;Kontaktné údaje_361e5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3656c4;Kontaktné údaje_3656c4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_378da;Kontaktné údaje_378da; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3a7a3;Kontaktné údaje_3a7a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3fd2b0a;Kontaktné údaje_3fd2b0a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_47a03;Kontaktné údaje_47a03; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_53edb16;Kontaktné údaje_53edb16; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5cf38c7;Kontaktné údaje_5cf38c7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_6609e0b;Kontaktné údaje_6609e0b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_68dab;Kontaktné údaje_68dab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_6e12846;Kontaktné údaje_6e12846; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_844d9;Kontaktné údaje_844d9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119402
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: problem s ntb

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

patrik52
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 25 črc 2008 21:52

Re: problem s ntb

#3 Příspěvek od patrik52 »

Ďakujem, vkládam log z programu:
# AdwCleaner v5.200 - Log vytvorený 17/06/2016 v 20:09:00
# Aktualizované 14/06/2016 by ToolsLib
# Databáza : 2016-06-17.1 [Server]
# Operačný systém : Windows 10 Home (X64)
# Užívateľské meno : Patrik - PATRIK-TOSH
# Spustené z : C:\Users\Patrik\Desktop\adwcleaner_5.200.exe
# Nastavenie : Čistenie
# Podpora : https://toolslib.net/forum

***** [ Služby ] *****


***** [ Priečinky ] *****

[-] Priečinok Zmazané : C:\ProgramData\IePluginServices
[-] Priečinok Zmazané : C:\Program Files (x86)\globalUpdate
[-] Priečinok Zmazané : C:\Program Files (x86)\TornTV.com
[-] Priečinok Zmazané : C:\Program Files (x86)\Trymedia
[-] Priečinok Zmazané : C:\WINDOWS\SysWOW64\mjcm
[-] Priečinok Zmazané : C:\Users\Patrik\AppData\Local\globalUpdate
[-] Priečinok Zmazané : C:\WINDOWS\SysNative\tprb

***** [ Súbory ] *****

[-] Súbor Zmazané : C:\Users\Patrik\AppData\LocalLow\SkwConfig.bin
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_olakgnkoldmagdblaalodobkmeokmgjj_0.localstorage
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\olakgnkoldmagdblaalodobkmeokmgjj
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_download.icq.com_0.localstorage
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_download.icq.com_0.localstorage-journal
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.bestpriceninja.com_0.localstorage-journal
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
[-] Súbor Zmazané : C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupcovia ] *****


***** [ Naplánované úlohy ] *****

[-] Úloha Zmazané : LaunchSignup
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-1
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-11
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-2
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-3
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-4
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-5
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-5_user
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-6
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-7
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-1
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-11
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-2
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-3
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-4
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-5
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-5_user
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-6
[-] Úloha Zmazané : 17e26686-620a-4d06-9220-22b8b3c078a8-7

***** [ Registre ] *****

[-] Kľúč registra Zmazané : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Kľúč registra Zmazané : HKCU\Software\07da4f7872d0cb4c464993baa49ea861
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\1cf591f6-46a0-4588-8ade-70a6e9d1be2d
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\24831f60-df13-433d-ba65-b2c3f1a31c71
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CrossriderApp0061855.BHO
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CrossriderApp0061855.BHO.1
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CrossriderApp0061855.Sandbox
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CrossriderApp0061855.Sandbox.1
[-] Hodnota Zmazané : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [faststartff@gmail.com]
[-] Kľúč registra Zmazané : HKCU\Software\Classes\TornTvDownloader.File
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TornTvDownloader.File
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Hodnota Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{FE69C007-C452-4D3E-86D2-1730DF8BC871}]
[-] Kľúč registra Zmazané : HKCU\Software\1ClickDownload
[-] Kľúč registra Zmazané : HKCU\Software\APN PIP
[-] Kľúč registra Zmazané : HKCU\Software\BI
[-] Kľúč registra Zmazané : HKCU\Software\GlobalUpdate
[-] Kľúč registra Zmazané : HKCU\Software\ImInstaller
[-] Kľúč registra Zmazané : HKCU\Software\InstalledBrowserExtensions
[-] Kľúč registra Zmazané : HKCU\Software\Mozilla\Extends
[-] Kľúč registra Zmazané : HKCU\Software\TornTv Downloader
[-] Kľúč registra Zmazané : HKCU\Software\WNLT
[-] Kľúč registra Zmazané : HKCU\Software\Mail.Ru
[-] Kľúč registra Zmazané : HKCU\Software\AppDataLow\Software\Crossrider
[-] Kľúč registra Zmazané : HKCU\Software\AppDataLow\Software\Mail.Ru
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\GlobalUpdate
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\istartsurfSoftware
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Trymedia Systems
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\WNLT
[-] Kľúč registra Zmazané : HKU\.DEFAULT\Software\IM
[-] Kľúč registra Zmazané : HKU\.DEFAULT\Software\ImInstaller
[-] Kľúč registra Zmazané : HKU\.DEFAULT\Software\SweetIM
[-] Kľúč registra Zmazané : HKU\.DEFAULT\Software\WNLT
[-] Kľúč registra Zmazané : HKU\.DEFAULT\Software\AppDataLow\Software\TheTorntv V10
[-] Kľúč registra Zmazané : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2370796447-4283009116-356483575-1000\Software\SweetIM
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
[-] Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\547B38670606DF14AA57B0BB83F3AE4D
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
[-] Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
[-] Hodnota Zmazané : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [UDP Query User{C69B1C5C-F6DE-43B6-8FF2-B732C1E007BA}C:\program files (x86)\torntv.com\torntv downloader.exe]
[-] Hodnota Zmazané : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [TCP Query User{3AE129B5-A152-43AD-8D20-C1F51B6B2AB0}C:\program files (x86)\torntv.com\torntv downloader.exe]
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\azlyrics.com
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\babylon-software.com
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\translation.babylon-software.com
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.azlyrics.com
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\azlyrics.com
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\babylon-software.com
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\translation.babylon-software.com
[-] Kľúč registra Zmazané : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.azlyrics.com
[-] Kľúč registra Zmazané : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\IePluginServices

***** [ Webové prehliadače ] *****

[-] [C:\Users\Patrik\AppData\Roaming\Mozilla\Firefox\Profiles\ukloug46.default\prefs.js] Zmazané : user_pref("extensions.a44e4876d5886435183fea8e44f892d6c2ac4a44858c85e3636com61855.61855.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D[...]
[-] [C:\Users\Patrik\AppData\Roaming\Mozilla\Firefox\Profiles\ukloug46.default\prefs.js] Zmazané : user_pref("extensions.crossrider.bic", "147b65492cee448b1eebbe9798b1f4b0");
[-] [C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Zmazané : europa-universalis-iv.en.softonic.com

*************************

:: "Tracing" kľúče zmazané
:: Nastavenia Winsock resetované.

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [29796 bajtov] - [17/06/2016 20:09:00]
C:\AdwCleaner\AdwCleaner[R0].txt - [9323 bajtov] - [30/06/2014 19:02:24]
C:\AdwCleaner\AdwCleaner[S0].txt - [9275 bajtov] - [30/06/2014 19:05:11]
C:\AdwCleaner\AdwCleaner[S1].txt - [31277 bajtov] - [17/06/2016 20:04:12]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [30094 bajtov] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119402
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: problem s ntb

#4 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

patrik52
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 25 črc 2008 21:52

Re: problem s ntb

#5 Příspěvek od patrik52 »

Pridávam log z frstu, pridávam aj subor addition
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:16-06-2016 01
Ran by Patrik (administrator) on PATRIK-TOSH (17-06-2016 21:34:12)
Running from C:\Users\Patrik\Desktop
Loaded Profiles: Patrik (Available Profiles: Patrik & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Windows\System32\GFNEXSrv.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Spotify Ltd) C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.EXE


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13196432 2012-09-27] (Realtek Semiconductor)
HKLM\...\Run: [SRS Premium Sound HD] => C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2165120 2012-02-06] (SRS Labs, Inc.)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [590256 2011-09-23] (TOSHIBA Corporation)
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [989056 2011-12-14] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [712096 2011-12-15] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710560 2011-11-26] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [VDownloader] => C:\Program Files (x86)\VDownloader\VDownloader4.exe [3017216 2014-10-23] (Vitzo)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954880 2015-10-08] (Synaptics Incorporated)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-01-05] (Intel Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [295512 2014-02-26] (RealNetworks, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-07-02] (Avast Software s.r.o.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [Facebook Update] => C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-20] (Facebook Inc.)
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [Dropbox Update] => C:\Users\Patrik\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-16] (Dropbox, Inc.)
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4177784 2016-01-15] (Disc Soft Ltd)
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [Spotify Web Helper] => C:\Users\Patrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1552496 2016-06-17] (Spotify Ltd)
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [Spotify] => C:\Users\Patrik\AppData\Roaming\Spotify\Spotify.exe [6916208 2016-06-17] (Spotify Ltd)
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [GalaxyClient] => C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [3978304 2016-06-08] (GOG.com)
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\RunOnce: [Uninstall C:\Users\Patrik\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Patrik\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\MountPoints2: E - "E:\Setup.exe"
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\MountPoints2: {796ff125-cde5-11e5-9dbe-e840f2c6113b} - "E:\Setup.exe"
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-02] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Patrik\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2016-04-09] ()
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2012-04-19]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2012-04-19]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2012-04-19]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Patrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-06-03]
ShortcutTarget: Dropbox.lnk -> C:\Users\Patrik\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Patrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Lingea Update Center.lnk [2014-10-18]
ShortcutTarget: Lingea Update Center.lnk -> C:\Program Files (x86)\Common Files\Lingea Shared\luc.exe (Lingea)
Startup: C:\Users\Patrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 2050 J510 series.lnk [2015-08-13]
ShortcutTarget: Monitor Ink Alerts - HP Deskjet 2050 J510 series.lnk -> C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\Patrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Orezávač obrazovky a spúšťač programu OneNote 2007.lnk [2014-05-19]
ShortcutTarget: Orezávač obrazovky a spúšťač programu OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
Startup: C:\Users\Patrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TotalVPN.lnk [2016-05-10]
ShortcutTarget: TotalVPN.lnk -> C:\Users\Patrik\AppData\Local\TotalVPN\TotalVPN.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 195.113.44.11 195.113.0.2
Tcpip\..\Interfaces\{46b7feeb-53ec-47bb-8b2e-467af366630d}: [DhcpNameServer] 195.113.115.171 195.113.144.233
Tcpip\..\Interfaces\{a09d9c71-cd3d-49d3-b92c-70f9717205d4}: [DhcpNameServer] 195.113.44.11 195.113.0.2

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130856635370032528&GUID=00000000-0000-0000-0000-000000000000
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TEUA&bmod=TEUA
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKLM -> {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.google.com/search?sourceid=ie7&q={s ... lz=1I7TEUA;
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.google.com/search?sourceid=ie7&q={s ... lz=1I7TEUA;
SearchScopes: HKU\S-1-5-21-2370796447-4283009116-356483575-1000 -> DefaultScope {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-2370796447-4283009116-356483575-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&r ... {startPage}
SearchScopes: HKU\S-1-5-21-2370796447-4283009116-356483575-1000 -> {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: No Name -> {11111111-1111-1111-1111-110611181155} -> No File
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-06-11] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-02] (Avast Software s.r.o.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2016-06-11] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-06-11] (Microsoft Corporation)
BHO: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll [2011-11-03] (<TOSHIBA>)
BHO-x32: No Name -> {11111111-1111-1111-1111-110611181155} -> No File
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06] (Adobe Systems Incorporated)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-08-14] (RealDownloader)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-06-11] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-02] (Avast Software s.r.o.)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-06-11] (Microsoft Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11] (Oracle Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2011-11-03] (<TOSHIBA>)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-11] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-11] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-11] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-11] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Patrik\AppData\Roaming\Mozilla\Firefox\Profiles\ukloug46.default
FF DefaultSearchUrl: hxxps://www.google.com/search
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: about:home
FF Keyword.URL: hxxps://www.google.com/search
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-17] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-17] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll [2013-06-26] (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-07-11] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-07-11] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-06-11] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-06-11] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2012-01-13] (Nero AG)
FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2014-02-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [2013-08-14] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2013-08-14] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [2013-08-14] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2014-02-26] (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2013-08-14] (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2011-06-06] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2370796447-4283009116-356483575-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Patrik\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-2370796447-4283009116-356483575-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Patrik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-12-17] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-10]
FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-02-26] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\firefox.cfg [2013-06-07] <==== ATTENTION

Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\pdf.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Nero Kwik Media Helper) - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U6) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll => No File
CHR Plugin: (Java Deployment Toolkit 7.0.60.24) - C:\windows\SysWOW64\npDeployJava1.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll => No File
CHR Profile: C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-06-02]
CHR Extension: (AdBlock) - C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-06-02]
CHR Extension: (Avast Online Security) - C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-06-17]
CHR Extension: (RealDownloader) - C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2016-01-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-02]
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-07-02] (Avast Software s.r.o.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2855152 2016-05-29] (Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1369464 2016-01-15] (Disc Soft Ltd)
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [245312 2016-06-08] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6211648 2016-06-08] (GOG.com)
R2 GFNEXSrv; C:\Windows\System32\GFNEXSrv.exe [162824 2010-09-10] ()
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-01-02] (Electronic Arts)
S3 OVPNService; C:\Users\Patrik\AppData\Local\TotalVPN\OVPN.Service.exe [20080 2016-05-19] ()
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201360 2012-09-27] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255168 2015-10-08] (Synaptics Incorporated)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-07-02] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-07-02] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-02] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-07-02] ()
S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-07-02] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-07-02] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-07-02] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-07-02] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2014-08-30] ()
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-02-08] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-02-08] (Disc Soft Ltd)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2014-08-30] ()
R2 npf; C:\Windows\System32\drivers\npf.sys [47632 2010-01-27] (CACE Technologies, Inc.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek )
R3 RtkBtFilter2; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [65792 2015-05-29] (Realtek Microelectronics)
R3 rtwlane_13; C:\Windows\System32\drivers\rtwlane_13.sys [3749888 2015-10-30] (Realtek Semiconductor Corporation )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [51392 2015-10-08] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [45720 2015-12-31] (Toshiba Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U3 idsvc; no ImagePath
U5 REALPLAYERUPDATESVC; no ImagePath
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-17 21:34 - 2016-06-17 21:35 - 00033285 _____ C:\Users\Patrik\Desktop\FRST.txt
2016-06-17 21:31 - 2016-06-17 21:34 - 00000000 ____D C:\FRST
2016-06-17 21:25 - 2016-06-17 21:25 - 00000000 _____ C:\Users\Patrik\Downloads\FRSTLauncher.exe.t1i31db.partial
2016-06-17 21:24 - 2016-06-17 21:24 - 02386944 _____ (Farbar) C:\Users\Patrik\Desktop\FRST64.exe
2016-06-17 20:01 - 2016-06-17 20:01 - 03703360 _____ C:\Users\Patrik\Desktop\adwcleaner_5.200.exe
2016-06-17 18:02 - 2016-06-17 18:02 - 00000000 ____D C:\Users\Patrik\AppData\Local\GalaxyCommunicationService
2016-06-17 18:00 - 2016-06-17 18:00 - 00000000 ____D C:\Users\Patrik\AppData\Roaming\Kalypso Media
2016-06-17 17:53 - 2016-06-17 17:53 - 00001648 _____ C:\Users\Public\Desktop\Grand Ages Medieval.lnk
2016-06-17 17:52 - 2016-06-17 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grand Ages Medieval [GOG.com]
2016-06-17 17:17 - 2016-06-17 17:17 - 00001135 _____ C:\Users\Public\Desktop\GOG Galaxy.lnk
2016-06-17 17:17 - 2016-06-17 17:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2016-06-17 17:16 - 2016-06-17 17:25 - 00000000 ____D C:\Program Files (x86)\GalaxyClient
2016-06-17 17:16 - 2016-06-17 17:16 - 141885896 _____ (GOG.com ) C:\Users\Patrik\Downloads\setup_galaxy_1.1.11.53.exe
2016-06-17 17:16 - 2016-06-17 17:16 - 00000000 ____D C:\ProgramData\GOG.com
2016-06-17 13:55 - 2016-06-17 13:55 - 00003768 _____ C:\WINDOWS\System32\Tasks\RNUpgradeHelperResumePrompt_Patrik
2016-06-17 13:55 - 2016-06-17 13:55 - 00003636 _____ C:\WINDOWS\System32\Tasks\ReclaimerUpdateFiles_Patrik
2016-06-17 13:55 - 2016-06-17 13:55 - 00003626 _____ C:\WINDOWS\System32\Tasks\ReclaimerUpdateXML_Patrik
2016-06-17 13:55 - 2016-06-17 13:55 - 00003360 _____ C:\WINDOWS\System32\Tasks\RNUpgradeHelperLogonPrompt_Patrik
2016-06-17 12:19 - 2016-06-17 12:19 - 00000000 ____D C:\Program Files\trend micro
2016-06-17 12:16 - 2016-06-17 12:16 - 01222144 _____ C:\Users\Patrik\Downloads\RSITx64.exe
2016-06-16 18:46 - 2016-06-16 18:46 - 00313759 _____ C:\Users\Patrik\Downloads\calcium-biotika-spc (1).pdf
2016-06-16 18:44 - 2016-06-16 18:44 - 00298578 _____ C:\Users\Patrik\Downloads\calcium-cholecalciferol-beres-600-mg-400-iu-potahovane-tablety-spc.pdf
2016-06-16 18:41 - 2016-06-16 18:41 - 00313759 _____ C:\Users\Patrik\Downloads\calcium-biotika-spc.pdf
2016-06-16 15:41 - 2016-06-16 15:41 - 00000000 __SHD C:\found.003
2016-06-16 12:35 - 2016-06-16 12:36 - 00484724 _____ C:\Users\Patrik\Downloads\Klinika-otázky-ke-zkoušce.zip
2016-06-14 21:35 - 2016-05-28 06:29 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-06-14 21:35 - 2016-05-28 06:29 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-06-14 21:35 - 2016-05-28 06:28 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-06-14 21:35 - 2016-05-28 06:22 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-06-14 21:35 - 2016-05-28 06:22 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-06-14 21:35 - 2016-05-28 06:19 - 24605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-06-14 21:35 - 2016-05-28 06:18 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-06-14 21:35 - 2016-05-28 06:18 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-06-14 21:35 - 2016-05-28 06:17 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-06-14 21:35 - 2016-05-28 06:15 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-06-14 21:35 - 2016-05-28 06:15 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-06-14 21:35 - 2016-05-28 06:15 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-06-14 21:35 - 2016-05-28 06:14 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-06-14 21:35 - 2016-05-28 06:14 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-06-14 21:35 - 2016-05-28 06:13 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-06-14 21:35 - 2016-05-28 06:12 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-06-14 21:35 - 2016-05-28 06:11 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-06-14 21:35 - 2016-05-28 06:11 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-06-14 21:35 - 2016-05-28 06:08 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-06-14 21:35 - 2016-05-28 06:06 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-06-14 21:35 - 2016-05-28 06:04 - 06973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-06-14 21:35 - 2016-05-28 06:03 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-06-14 21:35 - 2016-05-28 06:00 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-06-14 21:35 - 2016-05-28 05:58 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-06-14 21:34 - 2016-05-28 08:13 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-06-14 21:34 - 2016-05-28 08:13 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-06-14 21:34 - 2016-05-28 07:08 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-06-14 21:34 - 2016-05-28 07:07 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-06-14 21:34 - 2016-05-28 07:07 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-06-14 21:34 - 2016-05-28 07:07 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-06-14 21:34 - 2016-05-28 07:07 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-06-14 21:34 - 2016-05-28 07:07 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-06-14 21:34 - 2016-05-28 06:58 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-06-14 21:34 - 2016-05-28 06:57 - 01594416 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-06-14 21:34 - 2016-05-28 06:57 - 01372312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-06-14 21:34 - 2016-05-28 06:57 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-06-14 21:34 - 2016-05-28 06:57 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-06-14 21:34 - 2016-05-28 06:57 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-06-14 21:34 - 2016-05-28 06:35 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-06-14 21:34 - 2016-05-28 06:35 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-06-14 21:34 - 2016-05-28 06:27 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-06-14 21:34 - 2016-05-28 06:26 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-06-14 21:34 - 2016-05-28 06:26 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-06-14 21:34 - 2016-05-28 06:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-06-14 21:34 - 2016-05-28 06:24 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-06-14 21:34 - 2016-05-28 06:24 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-06-14 21:34 - 2016-05-28 06:22 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-06-14 21:34 - 2016-05-28 06:19 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-06-14 21:34 - 2016-05-28 06:18 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-06-14 21:34 - 2016-05-28 06:17 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-06-14 21:34 - 2016-05-28 06:16 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-06-14 21:34 - 2016-05-28 06:15 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-06-14 21:34 - 2016-05-28 06:14 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-06-14 21:34 - 2016-05-28 06:14 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-06-14 21:34 - 2016-05-28 06:12 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-06-14 21:34 - 2016-05-28 06:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-06-14 21:34 - 2016-05-28 06:08 - 13385728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-06-14 21:34 - 2016-05-28 06:06 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-06-14 21:34 - 2016-05-28 06:06 - 01339904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-06-14 21:34 - 2016-05-28 06:05 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-06-14 21:34 - 2016-05-28 06:05 - 03664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-06-14 21:34 - 2016-05-28 06:05 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-06-14 21:34 - 2016-05-28 06:03 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-06-14 21:34 - 2016-05-28 06:03 - 02609664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-06-14 21:34 - 2016-05-28 06:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFramework.dll
2016-06-14 21:34 - 2016-05-28 06:02 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-06-14 21:34 - 2016-05-28 06:00 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-06-14 21:34 - 2016-05-28 06:00 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-06-14 21:34 - 2016-05-28 06:00 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-06-14 21:34 - 2016-05-28 06:00 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-06-14 21:34 - 2016-05-28 05:58 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-06-14 21:34 - 2016-05-28 05:58 - 04896256 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-06-14 21:33 - 2016-05-28 08:13 - 00290496 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-06-14 21:33 - 2016-05-28 08:13 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-06-14 21:33 - 2016-05-28 07:25 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2016-06-14 21:33 - 2016-05-28 07:23 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2016-06-14 21:33 - 2016-05-28 07:23 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2016-06-14 21:33 - 2016-05-28 07:22 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-06-14 21:33 - 2016-05-28 07:22 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-06-14 21:33 - 2016-05-28 07:22 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-06-14 21:33 - 2016-05-28 07:22 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-06-14 21:33 - 2016-05-28 07:20 - 00430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-06-14 21:33 - 2016-05-28 07:18 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2016-06-14 21:33 - 2016-05-28 07:09 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-06-14 21:33 - 2016-05-28 07:07 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-06-14 21:33 - 2016-05-28 07:07 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-06-14 21:33 - 2016-05-28 07:06 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-06-14 21:33 - 2016-05-28 07:06 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-06-14 21:33 - 2016-05-28 07:06 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-06-14 21:33 - 2016-05-28 07:06 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-06-14 21:33 - 2016-05-28 07:06 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-06-14 21:33 - 2016-05-28 07:05 - 04515264 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-06-14 21:33 - 2016-05-28 07:04 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-06-14 21:33 - 2016-05-28 07:04 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-06-14 21:33 - 2016-05-28 07:04 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-06-14 21:33 - 2016-05-28 07:04 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2016-06-14 21:33 - 2016-05-28 06:58 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-06-14 21:33 - 2016-05-28 06:57 - 02548944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-06-14 21:33 - 2016-05-28 06:57 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-06-14 21:33 - 2016-05-28 06:57 - 00649792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-06-14 21:33 - 2016-05-28 06:57 - 00577376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-06-14 21:33 - 2016-05-28 06:57 - 00521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-06-14 21:33 - 2016-05-28 06:35 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys
2016-06-14 21:33 - 2016-05-28 06:31 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe
2016-06-14 21:33 - 2016-05-28 06:31 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-06-14 21:33 - 2016-05-28 06:27 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-06-14 21:33 - 2016-05-28 06:26 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-06-14 21:33 - 2016-05-28 06:22 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-06-14 21:33 - 2016-05-28 06:22 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2016-06-14 21:33 - 2016-05-28 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-06-14 21:33 - 2016-05-28 06:21 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll
2016-06-14 21:33 - 2016-05-28 06:21 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-06-14 21:33 - 2016-05-28 06:20 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-06-14 21:33 - 2016-05-28 06:20 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll
2016-06-14 21:33 - 2016-05-28 06:18 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-06-14 21:33 - 2016-05-28 06:18 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-06-14 21:33 - 2016-05-28 06:18 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-06-14 21:33 - 2016-05-28 06:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-06-14 21:33 - 2016-05-28 06:17 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-06-14 21:33 - 2016-05-28 06:17 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-06-14 21:33 - 2016-05-28 06:16 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-06-14 21:33 - 2016-05-28 06:16 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-06-14 21:33 - 2016-05-28 06:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-06-14 21:33 - 2016-05-28 06:16 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-06-14 21:33 - 2016-05-28 06:16 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-06-14 21:33 - 2016-05-28 06:15 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-06-14 21:33 - 2016-05-28 06:14 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-06-14 21:33 - 2016-05-28 06:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-06-14 21:33 - 2016-05-28 06:14 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-06-14 21:33 - 2016-05-28 06:13 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-06-14 21:33 - 2016-05-28 06:13 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-06-14 21:33 - 2016-05-28 06:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-06-14 21:33 - 2016-05-28 06:13 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2016-06-14 21:33 - 2016-05-28 06:12 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2016-06-14 21:33 - 2016-05-28 06:11 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-06-14 21:33 - 2016-05-28 06:11 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-06-14 21:33 - 2016-05-28 06:11 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-06-14 21:33 - 2016-05-28 06:09 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-06-14 21:33 - 2016-05-28 06:05 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-06-14 21:33 - 2016-05-28 06:03 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-06-14 21:33 - 2016-05-28 06:02 - 03590144 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-06-14 21:33 - 2016-05-28 06:02 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-06-14 21:33 - 2016-05-28 06:01 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-06-14 21:33 - 2016-05-28 06:01 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-06-14 21:33 - 2016-05-28 06:01 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-06-14 21:33 - 2016-05-28 06:00 - 02230272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-06-14 21:33 - 2016-05-28 06:00 - 01730560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-06-14 21:33 - 2016-05-28 06:00 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-06-14 21:33 - 2016-05-28 05:58 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-06-14 21:33 - 2016-05-28 05:58 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-06-14 21:33 - 2016-05-28 05:57 - 02281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-06-14 21:33 - 2016-05-28 05:55 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-06-14 21:32 - 2016-05-28 08:13 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-06-14 21:32 - 2016-05-28 08:13 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-06-14 21:32 - 2016-05-28 07:22 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-06-14 21:32 - 2016-05-28 07:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-06-14 21:32 - 2016-05-28 07:09 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe
2016-06-14 21:32 - 2016-05-28 07:09 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-06-14 21:32 - 2016-05-28 07:08 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-06-14 21:32 - 2016-05-28 07:08 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-06-14 21:32 - 2016-05-28 07:04 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-06-14 21:32 - 2016-05-28 07:04 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-06-14 21:32 - 2016-05-28 07:03 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2016-06-14 21:32 - 2016-05-28 06:31 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-06-14 21:32 - 2016-05-28 06:29 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-06-14 21:32 - 2016-05-28 06:29 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-06-14 21:32 - 2016-05-28 06:28 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-06-14 21:32 - 2016-05-28 06:28 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll
2016-06-14 21:32 - 2016-05-28 06:26 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-06-14 21:32 - 2016-05-28 06:26 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-06-14 21:32 - 2016-05-28 06:25 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-06-14 21:32 - 2016-05-28 06:24 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-06-14 21:32 - 2016-05-28 06:24 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys
2016-06-14 21:32 - 2016-05-28 06:24 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-06-14 21:32 - 2016-05-28 06:24 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-06-14 21:32 - 2016-05-28 06:24 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2016-06-14 21:32 - 2016-05-28 06:24 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll
2016-06-14 21:32 - 2016-05-28 06:23 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-06-14 21:32 - 2016-05-28 06:23 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2016-06-14 21:32 - 2016-05-28 06:22 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-06-14 21:32 - 2016-05-28 06:22 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-06-14 21:32 - 2016-05-28 06:22 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2016-06-14 21:32 - 2016-05-28 06:21 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-06-14 21:32 - 2016-05-28 06:21 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-06-14 21:32 - 2016-05-28 06:20 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2016-06-14 21:32 - 2016-05-28 06:20 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-06-14 21:32 - 2016-05-28 06:20 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2016-06-14 21:32 - 2016-05-28 06:20 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-06-14 21:32 - 2016-05-28 06:20 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2016-06-14 21:32 - 2016-05-28 06:19 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-06-14 21:32 - 2016-05-28 06:19 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-06-14 21:32 - 2016-05-28 06:19 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2016-06-14 21:32 - 2016-05-28 06:19 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2016-06-14 21:32 - 2016-05-28 06:18 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL
2016-06-14 21:32 - 2016-05-28 06:17 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2016-06-14 21:32 - 2016-05-28 06:17 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-06-14 21:32 - 2016-05-28 06:17 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-06-14 21:32 - 2016-05-28 06:17 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-06-14 21:32 - 2016-05-28 06:16 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll
2016-06-14 21:32 - 2016-05-28 06:16 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2016-06-14 21:32 - 2016-05-28 06:15 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2016-06-14 21:32 - 2016-05-28 06:15 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-06-14 21:32 - 2016-05-28 06:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-06-14 21:32 - 2016-05-28 06:14 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-06-14 21:32 - 2016-05-28 06:13 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-06-14 21:32 - 2016-05-28 06:13 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-06-14 21:32 - 2016-05-28 06:13 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-06-14 21:32 - 2016-05-28 06:11 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-06-14 21:32 - 2016-05-28 06:11 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-06-14 21:32 - 2016-05-28 06:04 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-06-14 21:32 - 2016-05-28 06:04 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-06-14 21:32 - 2016-05-28 06:03 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2016-06-14 21:32 - 2016-05-28 06:02 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-06-14 21:32 - 2016-05-28 06:01 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-06-14 21:32 - 2016-05-28 06:00 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-06-14 21:32 - 2016-05-28 06:00 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-06-14 21:32 - 2016-05-28 05:59 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-06-14 21:32 - 2016-05-28 05:53 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-06-14 16:48 - 2016-06-14 16:48 - 00564707 _____ C:\Users\Patrik\Downloads\UmenieZvadzaina-Bonus2-Rutiny-120616.pdf
2016-06-14 16:41 - 2016-06-14 16:41 - 00442922 _____ C:\Users\Patrik\Downloads\UmenieZvadzaina-Bonus1-DesatoroZvodcu-120616.pdf
2016-06-14 00:12 - 2016-06-14 00:12 - 02190265 _____ C:\Users\Patrik\Downloads\1.Harry-Potter-a-Kameň-mudrcov.pdf
2016-06-13 21:07 - 2016-06-13 21:07 - 00484724 _____ C:\Users\Patrik\Downloads\Klinika-otázky-ke-zkoušce (1).zip
2016-06-13 17:03 - 2016-06-13 17:03 - 00062464 _____ C:\Users\Patrik\Downloads\PI109586.wiz
2016-06-10 21:55 - 2016-06-10 21:55 - 00226025 _____ C:\Users\Patrik\Downloads\20160610_potvrzeni-1.pdf
2016-06-10 11:13 - 2016-06-10 11:13 - 03391488 _____ C:\Users\Patrik\Downloads\Prednaska-Leciva-infekcnich-chorob-(obecna-cast-bakteriozy-mastitida).ppt
2016-06-10 10:45 - 2016-06-10 10:46 - 16806912 _____ C:\Users\Patrik\Downloads\Prednaska-obecna-cast-2014.ppt
2016-06-09 14:25 - 2016-06-09 14:29 - 29252503 _____ C:\Users\Patrik\Documents\státnice-2016.rar
2016-06-09 10:08 - 2016-06-09 10:08 - 03933279 _____ C:\Users\Patrik\Documents\ekniha-uz-mm-080616.pdf
2016-06-09 00:03 - 2016-06-09 00:03 - 00114411 _____ C:\Users\Patrik\Documents\DPPV_2008_1_11160_0_54840_0_67926.pdf
2016-06-09 00:01 - 2016-06-09 00:01 - 00120541 _____ C:\Users\Patrik\Documents\DPPO_2008_1_11160_0_54840_0_67926.pdf
2016-06-06 18:23 - 2016-06-06 18:29 - 851108447 _____ C:\Users\Patrik\Documents\Playtest PnP and Rules.zip
2016-06-04 23:02 - 2016-06-04 23:02 - 00244231 _____ C:\Users\Patrik\Documents\10790233.pdf
2016-06-04 22:54 - 2016-06-04 22:54 - 00350552 _____ C:\Users\Patrik\Documents\10790175.pdf
2016-06-04 22:48 - 2016-06-04 22:48 - 00098535 _____ C:\Users\Patrik\Documents\zsskCD (1).pdf
2016-06-04 22:44 - 2016-06-04 22:44 - 00097758 _____ C:\Users\Patrik\Documents\zsskCD.pdf
2016-06-04 22:36 - 2016-06-04 22:36 - 00162033 _____ C:\Users\Patrik\Documents\Internetovy doklad ZSSK.pdf
2016-06-04 22:34 - 2016-06-04 22:34 - 00340681 _____ C:\Users\Patrik\Documents\T10394644.pdf
2016-06-04 22:29 - 2016-06-04 22:29 - 00241171 _____ C:\Users\Patrik\Documents\listok.pdf
2016-06-04 19:02 - 2016-06-04 19:02 - 01052534 _____ C:\Users\Patrik\Documents\S-20-mladenka-Antihypertenziva.pdf
2016-06-04 14:54 - 2016-06-04 14:54 - 00283567 _____ C:\Users\Patrik\Documents\Otazky-ke-zkousce-z-FT-2015-16.pdf
2016-06-04 14:41 - 2016-06-04 14:41 - 00182438 _____ C:\Users\Patrik\Documents\INFORMACE-PRO-5.pdf
2016-06-04 14:39 - 2016-06-04 14:39 - 00150337 _____ C:\Users\Patrik\Documents\Informace-k-zapoctu-a-zkousce-z-FT-2015-16.pdf
2016-06-03 21:08 - 2016-06-03 21:08 - 00000000 ____D C:\Users\Patrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-06-01 22:50 - 2016-06-01 22:50 - 10555388 _____ C:\Users\Patrik\Downloads\kazuistiky II.rar
2016-06-01 22:45 - 2016-06-01 22:45 - 00482556 _____ C:\Users\Patrik\Downloads\orlistat-sandoz-120-mg-spc.pdf
2016-06-01 19:43 - 2016-06-01 19:43 - 01467952 _____ C:\Users\Patrik\Downloads\Nachtigal-Patologie-nadledviny-stitne-zlazy-a-pristitnych-telisek.pdf
2016-06-01 19:16 - 2016-06-01 19:16 - 01381538 _____ C:\Users\Patrik\Downloads\Nachtigal-Metabolicky-syndrom-Arterialni-hypertenze.pdf
2016-06-01 18:41 - 2016-06-01 18:41 - 00800768 _____ C:\Users\Patrik\Documents\hypertenze_15.ppt
2016-05-28 21:00 - 2016-05-28 21:00 - 00251912 _____ C:\Users\Patrik\Downloads\sanval-10-mg-spc.pdf
2016-05-28 15:13 - 2016-05-28 15:13 - 00256896 _____ C:\Users\Patrik\Downloads\propanorm-35-mg-10-ml-injekcni-infuzni-roztok-spc.pdf
2016-05-28 13:05 - 2016-05-28 13:12 - 136488449 _____ C:\Users\Patrik\Downloads\Atlas-anatómie-SINELNIKOV-1,2,3.rar.e523zgc.partial
2016-05-27 14:02 - 2016-05-27 14:02 - 00360314 _____ C:\Users\Patrik\Downloads\10695277.pdf
2016-05-26 09:49 - 2016-05-26 09:51 - 54861689 _____ C:\Users\Patrik\Downloads\Ukrainian Textbook.pdf
2016-05-26 00:08 - 2016-05-26 00:08 - 00450013 _____ C:\Users\Patrik\Downloads\perinpa-4-mg-1-25-mg-spc.pdf
2016-05-25 23:46 - 2016-05-25 23:46 - 00441941 _____ C:\Users\Patrik\Downloads\tensiomin-12-5-mg-spc (1).pdf
2016-05-25 23:44 - 2016-05-25 23:44 - 00411046 _____ C:\Users\Patrik\Downloads\enap-i-v-spc.pdf
2016-05-25 23:42 - 2016-05-25 23:42 - 00397093 _____ C:\Users\Patrik\Downloads\tanatril-10-mg-spc.pdf
2016-05-25 23:41 - 2016-05-25 23:41 - 00483805 _____ C:\Users\Patrik\Downloads\fosinopril-teva-20-mg-spc.pdf
2016-05-25 23:40 - 2016-05-25 23:40 - 00644758 _____ C:\Users\Patrik\Downloads\cazaprol-5-mg-spc.pdf
2016-05-25 23:39 - 2016-05-25 23:39 - 00476899 _____ C:\Users\Patrik\Downloads\accupro-10-spc.pdf
2016-05-25 23:37 - 2016-05-25 23:37 - 00450530 _____ C:\Users\Patrik\Downloads\dapril-10-spc (1).pdf
2016-05-25 23:36 - 2016-05-25 23:36 - 00456276 _____ C:\Users\Patrik\Downloads\gopten-0-5-mg-spc.pdf
2016-05-25 23:35 - 2016-05-25 23:35 - 00421724 _____ C:\Users\Patrik\Downloads\acesial-10-mg-spc.pdf
2016-05-25 23:34 - 2016-05-25 23:34 - 00477539 _____ C:\Users\Patrik\Downloads\apo-perindo-4-mg-spc.pdf
2016-05-25 23:33 - 2016-05-25 23:33 - 00390179 _____ C:\Users\Patrik\Downloads\apo-enalapril-10-mg-spc (1).pdf
2016-05-25 18:43 - 2016-05-25 18:43 - 00343540 _____ C:\Users\Patrik\Downloads\diacordin-240-sr-spc.pdf
2016-05-25 17:57 - 2016-05-25 17:57 - 00370211 _____ C:\Users\Patrik\Downloads\bisoprolol-ratiopharm-10-mg-spc.pdf
2016-05-25 17:55 - 2016-05-25 17:55 - 00281134 _____ C:\Users\Patrik\Downloads\bisogamma-10-spc.pdf
2016-05-25 12:10 - 2016-05-25 12:10 - 00432980 _____ C:\Users\Patrik\Downloads\acecor-400-spc (3).pdf
2016-05-25 12:01 - 2016-05-25 12:01 - 00269395 _____ C:\Users\Patrik\Downloads\bisocard-10-spc (1).pdf
2016-05-25 11:51 - 2016-05-25 11:51 - 00329715 _____ C:\Users\Patrik\Downloads\concor-cor-10-mg-spc.pdf
2016-05-25 11:44 - 2016-05-25 11:44 - 00468224 _____ C:\Users\Patrik\Downloads\betaloc-zok-100-mg-spc.pdf
2016-05-25 11:42 - 2016-05-25 11:42 - 00367396 _____ C:\Users\Patrik\Downloads\betaloc-sr-200-mg-spc.pdf
2016-05-25 10:38 - 2016-05-25 10:38 - 00319668 _____ C:\Users\Patrik\Downloads\epilan-d-gerot-spc.pdf
2016-05-25 10:34 - 2016-05-25 10:34 - 00326141 _____ C:\Users\Patrik\Downloads\injectio-trimecainii-chlorati-0-5-ardeapharma-spc.pdf
2016-05-23 18:51 - 2016-05-23 18:55 - 77435739 _____ C:\Users\Patrik\Downloads\ZP---letný.rar
2016-05-23 18:49 - 2016-05-23 18:49 - 00012602 _____ C:\Users\Patrik\Downloads\technola-letní.xlsx
2016-05-23 18:15 - 2016-05-23 18:15 - 00249802 _____ C:\Users\Patrik\Downloads\paralen-100-spc.pdf
2016-05-23 18:12 - 2016-05-23 18:12 - 00237661 _____ C:\Users\Patrik\Downloads\paralen-500-spc.pdf
2016-05-23 16:59 - 2016-05-23 16:59 - 08964117 _____ C:\Users\Patrik\Downloads\Prehled-otazek-pro-zapoctovy-test-LS-copy.pdf
2016-05-23 00:49 - 2016-05-23 00:49 - 00113191 _____ C:\Users\Patrik\Downloads\propycil-50-spc.pdf
2016-05-22 21:26 - 2016-05-22 21:26 - 00378751 _____ C:\Users\Patrik\Downloads\blessin-160-mg-spc (1).pdf
2016-05-22 21:18 - 2016-05-22 21:18 - 00456915 _____ C:\Users\Patrik\Downloads\teveten-600-mg-spc.pdf
2016-05-22 20:44 - 2016-05-22 20:44 - 00513816 _____ C:\Users\Patrik\Downloads\apo-losartan-100-mg-spc.pdf
2016-05-22 20:21 - 2016-05-22 20:21 - 01034752 _____ C:\Users\Patrik\Downloads\endogenni_deprese_15 (1).ppt
2016-05-22 12:05 - 2016-05-22 12:05 - 00390179 _____ C:\Users\Patrik\Downloads\apo-enalapril-10-mg-spc.pdf
2016-05-22 11:56 - 2016-05-22 11:56 - 00441941 _____ C:\Users\Patrik\Downloads\tensiomin-12-5-mg-spc.pdf
2016-05-22 11:19 - 2016-05-22 11:20 - 01002324 _____ C:\Users\Patrik\Downloads\52-tipov-ako-sa-stanes-magnet-na-zeny.pdf
2016-05-22 02:33 - 2016-05-22 02:33 - 00237137 _____ C:\Users\Patrik\Downloads\lacipil-4-mg-spc.pdf
2016-05-22 02:32 - 2016-05-22 02:32 - 00302733 _____ C:\Users\Patrik\Downloads\lusopress-spc.pdf
2016-05-22 02:31 - 2016-05-22 02:31 - 00359883 _____ C:\Users\Patrik\Downloads\dilceren-pro-infusione-spc.pdf
2016-05-22 02:29 - 2016-05-22 02:29 - 00400900 _____ C:\Users\Patrik\Downloads\nimotop-s-spc.pdf
2016-05-21 12:44 - 2016-05-21 12:44 - 00305380 _____ C:\Users\Patrik\Downloads\vistagan-liquifilm-0-5-spc.pdf
2016-05-21 00:46 - 2016-05-21 00:46 - 00388167 _____ C:\Users\Patrik\Downloads\afiten-10-mg-spc (1).pdf

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-17 21:31 - 2016-02-27 15:57 - 00000000 ____D C:\Users\Patrik\AppData\Local\Spotify
2016-06-17 21:31 - 2015-05-06 14:53 - 00000000 ___RD C:\Users\Patrik\Dropbox
2016-06-17 21:30 - 2012-08-22 11:31 - 00000000 ____D C:\Users\Patrik\AppData\Roaming\Skype
2016-06-17 21:16 - 2015-06-16 11:41 - 00000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000UA.job
2016-06-17 21:03 - 2012-12-20 12:58 - 00000932 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000UA.job
2016-06-17 20:45 - 2012-02-26 22:43 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-06-17 20:42 - 2012-11-07 01:01 - 00000968 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-06-17 20:20 - 2016-04-09 19:30 - 01008216 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-17 20:20 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-06-17 20:16 - 2016-02-27 15:56 - 00000000 ____D C:\Users\Patrik\AppData\Roaming\Spotify
2016-06-17 20:14 - 2012-11-07 01:01 - 00000964 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-06-17 20:13 - 2014-08-03 12:28 - 00003454 _____ C:\WINDOWS\Tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2.job
2016-06-17 20:12 - 2016-02-13 15:40 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-06-17 20:12 - 2016-02-13 06:33 - 00398328 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-06-17 20:11 - 2016-04-09 19:32 - 00000000 ____D C:\Users\Patrik
2016-06-17 20:11 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-06-17 20:09 - 2014-06-30 19:02 - 00000000 ____D C:\AdwCleaner
2016-06-17 20:03 - 2014-08-28 19:39 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-17 19:16 - 2015-06-16 11:41 - 00000870 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core.job
2016-06-17 18:00 - 2012-08-23 15:29 - 00000000 ____D C:\Users\Patrik\Documents\My Games
2016-06-17 17:52 - 2014-08-28 20:57 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-17 17:48 - 2012-02-26 22:43 - 00003804 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-06-17 17:46 - 2016-05-12 20:45 - 09717952 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2016-06-17 12:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-06-17 12:03 - 2012-12-20 12:58 - 00000910 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core.job
2016-06-17 10:58 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-06-16 19:42 - 2016-02-13 15:46 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-06-16 19:12 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-06-16 19:12 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-06-16 19:12 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-06-16 16:01 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-06-16 15:44 - 2016-04-09 19:27 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-06-16 11:34 - 2013-03-17 22:10 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-06-15 01:35 - 2013-08-05 03:00 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-06-15 00:54 - 2012-08-26 10:24 - 142482544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-06-13 17:03 - 2016-04-09 21:17 - 00000000 ____D C:\Users\Patrik\AppData\Local\Packages
2016-06-12 15:38 - 2015-07-14 19:55 - 00000000 ____D C:\Users\Patrik\AppData\Local\ElevatedDiagnostics
2016-06-12 11:14 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-06-12 11:08 - 2012-02-26 22:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-06-09 16:47 - 2012-11-07 01:02 - 00002511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-09 11:36 - 2016-04-11 14:07 - 00000000 ____D C:\Users\DefaultAppPool
2016-06-06 14:22 - 2015-12-26 02:18 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-06-06 14:22 - 2012-02-26 22:27 - 00000000 ____D C:\ProgramData\Skype
2016-06-04 13:33 - 2016-05-04 19:35 - 00000000 ____D C:\Users\Patrik\Documents\Kontrolné otázky-klinika
2016-06-03 21:08 - 2014-10-04 01:19 - 00000000 ____D C:\Users\Patrik\AppData\Roaming\Dropbox
2016-05-28 07:55 - 2016-02-13 15:42 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-05-20 13:45 - 2016-05-10 16:00 - 00000000 ____D C:\Users\Patrik\AppData\Local\TotalVPN
2016-05-19 10:20 - 2016-03-13 04:04 - 00000000 ____D C:\Users\Patrik\Downloads\Mohan-Patológia

==================== Files in the root of some directories =======

2014-10-25 20:43 - 2010-01-26 11:11 - 0444283 _____ () C:\Program Files\Common Files\WinPcapNmap.exe
2015-08-13 11:15 - 2015-08-13 11:51 - 0000098 _____ () C:\Users\Patrik\AppData\Roaming\SDC_Path_Meihua2_U.ini
2013-04-02 14:29 - 2013-04-02 16:11 - 0001248 _____ () C:\Users\Patrik\AppData\Local\SRDownloader.nast
2016-01-28 17:44 - 2016-01-28 17:44 - 0000000 _____ () C:\Users\Patrik\AppData\Local\{086CBC1D-A4E6-4626-B64E-7CF97DB57AD6}
2015-07-14 20:27 - 2015-07-14 20:27 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-03-09 17:07 - 2015-09-11 13:01 - 0055168 _____ () C:\ProgramData\dudenbib.wav

Some files in TEMP:
====================
C:\Users\Patrik\AppData\Local\Temp\GURE144.exe
C:\Users\Patrik\AppData\Local\Temp\libeay32.dll
C:\Users\Patrik\AppData\Local\Temp\msvcr120.dll
C:\Users\Patrik\AppData\Local\Temp\sqlite3.dll
C:\Users\Patrik\AppData\Local\Temp\{86812088-0EB0-4F09-B656-7C1E839218A7}-DropboxClient_4.4.29.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-06-17 11:34

==================== End of FRST.txt ============================
Přílohy
Addition.rar
(20.9 KiB) Staženo 100 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119402
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: problem s ntb

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [Facebook Update] => C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-20] (Facebook Inc.)
C:\Users\Patrik\AppData\Local\Facebook\Update
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\MountPoints2: E - "E:\Setup.exe"
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\MountPoints2: {796ff125-cde5-11e5-9dbe-e840f2c6113b} - "E:\Setup.exe"
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-2370796447-4283009116-356483575-1000 -> DefaultScope {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-2370796447-4283009116-356483575-1000 -> {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: No Name -> {11111111-1111-1111-1111-110611181155} -> No File
BHO-x32: No Name -> {11111111-1111-1111-1111-110611181155} -> No File
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
C:\Program Files (x86)\Microsoft\BingBar
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\firefox.cfg [2013-06-07] <==== ATTENTION
U3 idsvc; no ImagePath
U5 REALPLAYERUPDATESVC; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000UA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2.job
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core.job
C:\Users\Patrik\AppData\Local\Temp
Task: {13487564-9C94-4536-82F7-560C0BEABBF8} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {166905F9-BBD4-4FE1-B847-64ECB7240A13} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core => C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-12-20] (Facebook Inc.)
Task: {197F68A0-988B-4C76-AA89-B315603BE414} - System32\Tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2 => C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-4.exe <==== ATTENTION
Task: {202C9C3B-70C8-4079-8EFE-C3386290C30D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {372C6F07-B015-4A7C-800D-B3CAF4CE2F89} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {563D9D61-9555-4DB9-9253-984AF2B6E961} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {602CAB47-A577-4409-86CE-F788EBEC8B1D} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {6335DA8F-EFD7-420F-A642-D46610909EE6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {6900E96B-06F3-450C-ACDA-080E934A4D7D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {6B2E7E6A-0241-436B-964E-ECC94B36EDE2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {706CC00A-CB2F-47C0-8CFF-62E34A878604} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {7EA38137-3A2D-4C24-9BAE-298A4D8766E9} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {9905D9B6-1137-47AD-BDEE-DF2F9532401F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {AB65B902-9062-465C-92DD-E9FD78D9A8D9} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {D0192728-8832-4DB1-960C-08662048DBD4} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {E1C4B2A1-3C9E-4805-8B3B-CBA90E78FEEB} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {E3B7FB70-F646-4301-A364-A3DE51FEADAD} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

patrik52
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 25 črc 2008 21:52

Re: problem s ntb

#7 Příspěvek od patrik52 »

Fix result of Farbar Recovery Scan Tool (x64) Version:16-06-2016 01
Ran by Patrik (2016-06-17 23:25:19) Run:1
Running from C:\Users\Patrik\Desktop
Loaded Profiles: Patrik (Available Profiles: Patrik & DefaultAppPool)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\Run: [Facebook Update] => C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-20] (Facebook Inc.)
C:\Users\Patrik\AppData\Local\Facebook\Update
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\MountPoints2: E - "E:\Setup.exe"
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\...\MountPoints2: {796ff125-cde5-11e5-9dbe-e840f2c6113b} - "E:\Setup.exe"
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-2370796447-4283009116-356483575-1000 -> DefaultScope {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-2370796447-4283009116-356483575-1000 -> {967F6184-E001-48D4-AAD3-A27DDCC82843} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: No Name -> {11111111-1111-1111-1111-110611181155} -> No File
BHO-x32: No Name -> {11111111-1111-1111-1111-110611181155} -> No File
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation.)
C:\Program Files (x86)\Microsoft\BingBar
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\firefox.cfg [2013-06-07] <==== ATTENTION
U3 idsvc; no ImagePath
U5 REALPLAYERUPDATESVC; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000UA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2.job
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core.job
C:\Users\Patrik\AppData\Local\Temp
Task: {13487564-9C94-4536-82F7-560C0BEABBF8} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {166905F9-BBD4-4FE1-B847-64ECB7240A13} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core => C:\Users\Patrik\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-12-20] (Facebook Inc.)
Task: {197F68A0-988B-4C76-AA89-B315603BE414} - System32\Tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2 => C:\Program Files (x86)\TheTorntv V10\17e26686-620a-4d06-9220-22b8b3c078a8-4.exe <==== ATTENTION
Task: {202C9C3B-70C8-4079-8EFE-C3386290C30D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {372C6F07-B015-4A7C-800D-B3CAF4CE2F89} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {563D9D61-9555-4DB9-9253-984AF2B6E961} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {602CAB47-A577-4409-86CE-F788EBEC8B1D} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {6335DA8F-EFD7-420F-A642-D46610909EE6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {6900E96B-06F3-450C-ACDA-080E934A4D7D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {6B2E7E6A-0241-436B-964E-ECC94B36EDE2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {706CC00A-CB2F-47C0-8CFF-62E34A878604} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {7EA38137-3A2D-4C24-9BAE-298A4D8766E9} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {9905D9B6-1137-47AD-BDEE-DF2F9532401F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {AB65B902-9062-465C-92DD-E9FD78D9A8D9} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {D0192728-8832-4DB1-960C-08662048DBD4} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {E1C4B2A1-3C9E-4805-8B3B-CBA90E78FEEB} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {E3B7FB70-F646-4301-A364-A3DE51FEADAD} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Facebook Update => value removed successfully
C:\Users\Patrik\AppData\Local\Facebook\Update => moved successfully
"HKU\S-1-5-21-2370796447-4283009116-356483575-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\E" => key removed successfully
"HKU\S-1-5-21-2370796447-4283009116-356483575-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{796ff125-cde5-11e5-9dbe-e840f2c6113b}" => key removed successfully
HKCR\CLSID\{796ff125-cde5-11e5-9dbe-e840f2c6113b} => key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKU\S-1-5-21-2370796447-4283009116-356483575-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-2370796447-4283009116-356483575-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{967F6184-E001-48D4-AAD3-A27DDCC82843}" => key removed successfully
HKCR\CLSID\{967F6184-E001-48D4-AAD3-A27DDCC82843} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611181155}" => key removed successfully
HKCR\CLSID\{11111111-1111-1111-1111-110611181155} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611181155}" => key removed successfully
HKCR\Wow6432Node\CLSID\{11111111-1111-1111-1111-110611181155} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}" => key removed successfully
C:\Program Files (x86)\Microsoft\BingBar => moved successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value removed successfully
"HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => key removed successfully
C:\Program Files (x86)\mozilla firefox\firefox.cfg => moved successfully
idsvc => service removed successfully
REALPLAYERUPDATESVC => service removed successfully
wpcsvc => service removed successfully
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000UA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2.job => moved successfully
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core.job => moved successfully
C:\Users\Patrik\AppData\Local\Temp => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{13487564-9C94-4536-82F7-560C0BEABBF8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{13487564-9C94-4536-82F7-560C0BEABBF8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{166905F9-BBD4-4FE1-B847-64ECB7240A13}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{166905F9-BBD4-4FE1-B847-64ECB7240A13}" => key removed successfully
C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FacebookUpdateTaskUserS-1-5-21-2370796447-4283009116-356483575-1000Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{197F68A0-988B-4C76-AA89-B315603BE414}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{197F68A0-988B-4C76-AA89-B315603BE414}" => key removed successfully
C:\WINDOWS\System32\Tasks\caed23e3-c6f3-451c-bee4-fe1eda4871a2 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\caed23e3-c6f3-451c-bee4-fe1eda4871a2" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{202C9C3B-70C8-4079-8EFE-C3386290C30D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{202C9C3B-70C8-4079-8EFE-C3386290C30D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{372C6F07-B015-4A7C-800D-B3CAF4CE2F89}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{372C6F07-B015-4A7C-800D-B3CAF4CE2F89}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{563D9D61-9555-4DB9-9253-984AF2B6E961}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{563D9D61-9555-4DB9-9253-984AF2B6E961}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{602CAB47-A577-4409-86CE-F788EBEC8B1D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{602CAB47-A577-4409-86CE-F788EBEC8B1D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6335DA8F-EFD7-420F-A642-D46610909EE6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6335DA8F-EFD7-420F-A642-D46610909EE6}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6900E96B-06F3-450C-ACDA-080E934A4D7D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6900E96B-06F3-450C-ACDA-080E934A4D7D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6B2E7E6A-0241-436B-964E-ECC94B36EDE2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B2E7E6A-0241-436B-964E-ECC94B36EDE2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{706CC00A-CB2F-47C0-8CFF-62E34A878604}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{706CC00A-CB2F-47C0-8CFF-62E34A878604}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7EA38137-3A2D-4C24-9BAE-298A4D8766E9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7EA38137-3A2D-4C24-9BAE-298A4D8766E9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9905D9B6-1137-47AD-BDEE-DF2F9532401F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9905D9B6-1137-47AD-BDEE-DF2F9532401F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AB65B902-9062-465C-92DD-E9FD78D9A8D9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AB65B902-9062-465C-92DD-E9FD78D9A8D9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0192728-8832-4DB1-960C-08662048DBD4}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0192728-8832-4DB1-960C-08662048DBD4}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E1C4B2A1-3C9E-4805-8B3B-CBA90E78FEEB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1C4B2A1-3C9E-4805-8B3B-CBA90E78FEEB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E3B7FB70-F646-4301-A364-A3DE51FEADAD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3B7FB70-F646-4301-A364-A3DE51FEADAD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully

==== End of Fixlog 23:26:22 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119402
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: problem s ntb

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

patrik52
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 25 črc 2008 21:52

Re: problem s ntb

#9 Příspěvek od patrik52 »

Ano, ďakujem, už je všetko OK :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119402
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: problem s ntb

#10 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno