
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Zamrzání pc, problikávání monitoru
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamrzání pc, problikávání monitoru
Dobrý den. Mám problém s ntb. Problíkává mi obrazovka po spuštění, často celý zamrzne a poslední dobou je hodně pomalý. Ve hrách mi z ničeho nic padají fps ze 100 na 15 a min. Někdy jede normálně a někdy blbne. prosím o pomoc. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dragoone666 at 2016-09-03 14:14:58
Microsoft Windows 10 Home
System drive C: has 237 GB (54%) free of 435 GB
Total RAM: 3529 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:15:05, on 3. 9. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0545)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
c:\program files (x86)\cmcm\Clean Master\cmtray.exe
C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Dragoone666.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... XXW0VJ5MG7
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=12454
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Lucky Bright - {d47f39c7-2f7f-43e5-ba53-faffe2da42af} - C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll (file missing)
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Aeria Ignite] "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [cmsc] "c:\program files (x86)\cmcm\Clean Master\cmtray.exe" -autorun
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKCU\..\Run: [Clownfish] "C:\Program Files (x86)\Clownfish\Clownfish.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Dragoone\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.aeriagames.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: NameServer = 8.8.4.4,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{a2b52d72-a9c0-479a-b3bc-c471cec7edc2}: NameServer = 8.8.4.4,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: NameServer = 8.8.4.4,8.8.8.8
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: AdaptiveSleepService - Unknown owner - C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem69.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Clean Master Core Service (cmcore) - Kingsoft Corporation - c:\program files (x86)\cmcm\Clean Master\cmcore.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13653 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ff3f74dd-5e2d-4701-a0d6-64bbb5772246 -SystemEventPortName:HostProcess-55d67560-08f1-47b8-b436-a8ac329fde5b -IoCancelEventPortName:HostProcess-d9a7a263-d4cd-4ff4-8da9-c2c2d19c9cf3 -NonStateChangingEventPortName:HostProcess-ae4895de-a565-43d7-8a51-1930209a4ee1 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:724b85b1-732a-4579-bee4-c3505050e085 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\atiesrxx.exe
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"c:\program files (x86)\cmcm\Clean Master\cmcore.exe" /service cmcore
C:\WINDOWS\System32\spoolsv.exe
PopUpReboot
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe"
"C:\Program Files\Elantech\ETDService.exe"
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe"
dashost.exe {2488b567-40a6-45bd-9014ea6b01f689cd}
"C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe" -s
C:\WINDOWS\System32\alg.exe
UninstallPciFilter
"C:\Program Files\Elantech\ETDCtrl.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"c:\program files (x86)\cmcm\Clean Master\cmtray.exe" -autorun
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\RTFTrack.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
szndesktop.exe default start
"C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=52.0.2743.116 --handshake-handle=0x1ac
"C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6456.0.2144017935\1663576695" --mojo-application-channel-token=D140EC9FD4F31D22F77262AC254C4516 --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,13,27,55 --gpu-vendor-id=0x1002 --gpu-device-id=0x9832 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=16.150.2211.0 --gpu-driver-date=3-21-2016 --gpu-secondary-vendor-ids=0x1002 --gpu-secondary-device-ids=0x6663 --mojo-platform-channel-handle=1392 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=6F80831A6774C4DEF1DD8E5BA308CFB1 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=EC9ABD22737BDCFA0D3481334EA8F24A --mojo-application-channel-token=0A35AA49572DA5E71C3EA7D123656A5D --channel="6456.3.241829622\736212063" --mojo-platform-channel-handle=2960 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=D766BE9E0699F355FB68CEDFB63C182F --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=B7AF2B423CB75A8C170EE18D2AEF1B45 --mojo-application-channel-token=1F7094D1C1FE677C1A321BBE10BAA15B --channel="6456.4.875624130\717670930" --mojo-platform-channel-handle=3068 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=527EA9E1A255C3F95A9E6E2E40585A6D --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=BFEB282E6034BBDA54BEAF7EA211B755 --mojo-application-channel-token=BF38E61017853A989AAFB1483A079A80 --channel="6456.5.247232803\1761598890" --mojo-platform-channel-handle=2968 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=7A9A9F619C37A9DD6A0FE666B20DF6A8 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=EEF5E3873524A239A63C1C060A5E3B53 --mojo-application-channel-token=8BA81A89719858E721F40E00AD8F49DF --channel="6456.6.1868532938\1095301136" --mojo-platform-channel-handle=2948 /prefetch:1
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskeng.exe {8FC2FAC3-5F58-49FF-9CED-8BC62F1BCAEC}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/*PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=1A2FC3C411AEC81BD75FE921406E54EB --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=55E322E93CC7EB88D68A57E37B97A141 --mojo-application-channel-token=C36AD24B3FBCA6B63C358BB7BE6ED6E2 --channel="6456.20.410695280\266718807" --mojo-platform-channel-handle=6540 /prefetch:1
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/*PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=BC6C4C907ED814E9334E41527F9265DD --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=B2A08439267C1734F6A86D9BC0B5495B --mojo-application-channel-token=00DFEFA5622690F48AE76BB1CC1B5011 --channel="6456.25.22086275\299976488" --mojo-platform-channel-handle=6792 /prefetch:1
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
"C:\Users\Dragoone\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Bidaily Synchronize Task.job - C:\ProgramData\{3affff2f-4fe8-16f4-3aff-fff2f4fefcbd}\Free Download Crash Bandicoot 3 For PC Full Version.exe --startup=1 --single
C:\WINDOWS\tasks\Bidaily Synchronize Task[pr].job - c:\programdata\{e1104ee0-8e6c-95bc-e110-04ee08e63b82}\1496491702236798550s.exe --startup=1 --single
C:\WINDOWS\tasks\CampChamp.job - c:\programdata\{b4e63138-59c8-63d6-b4e6-6313859cc4e1}\5852276903287593494b.exe --startup=1 --single
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://searchinterneat-a.akamaihd.net/h ... JBI0sYRl1X"
prefs.js - "keyword.URL" - "http://searchinterneat-a.akamaihd.net/s ... earchTerms}"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
"{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"=C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1221171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0]
"Description"=DivX Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\searchplugins\
default.xml
mystartsearch.xml
seznam-avast.xml
WebSearch.xml
yahoo.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-12 50376]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d47f39c7-2f7f-43e5-ba53-faffe2da42af}]
Lucky Bright - C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-10-07 3242696]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2013-04-10 6339656]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-12-21 17097200]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-12-21 193008]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-06-24 6613896]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Clownfish"=C:\Program Files (x86)\Clownfish\Clownfish.exe [2012-09-27 1122040]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-07-09 2851408]
"DAEMON Tools Lite Automount"=C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe [2015-06-18 4468056]
"OneDrive"=C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-08-26 633024]
"cz.seznam.software.autoupdate"=C:\Users\Dragoone\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2013-03-09 95192]
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"Aeria Ignite"=C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [2013-06-06 1925656]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-07-31 9071752]
"cmsc"=c:\program files (x86)\cmcm\Clean Master\cmtray.exe [2015-10-13 771912]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2016-07-20 5565960]
"DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2016-08-08 1009632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-03 14:14:58 ----D---- C:\rsit
2016-09-03 14:14:58 ----D---- C:\Program Files\trend micro
2016-08-30 10:54:00 ----AD---- C:\Program Files\CCleaner
2016-08-30 10:53:55 ----AD---- C:\Program Files\Recuva
2016-08-26 23:45:04 ----A---- C:\WINDOWS\system32\drivers\aswHdsKe.sys
2016-08-24 16:05:21 ----A---- C:\WINDOWS\iun6002.exe
2016-08-24 16:05:19 ----D---- C:\Program Files (x86)\Codec Pack - All In 1
2016-08-24 16:04:33 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2016-08-24 15:57:56 ----D---- C:\Program Files\DivX
2016-08-24 15:57:45 ----D---- C:\Users\Dragoone\AppData\Roaming\DivX
2016-08-24 15:53:53 ----D---- C:\ProgramData\McAfee
2016-08-24 15:53:52 ----D---- C:\Program Files (x86)\McAfee
2016-08-24 15:53:36 ----D---- C:\Program Files (x86)\DivX
2016-08-24 15:53:00 ----D---- C:\ProgramData\DivX
2016-08-15 19:44:00 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2016-08-12 13:43:01 ----AD---- C:\Program Files (x86)\AMD
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiumd64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atimpc64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdxc64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdave64.dll
2016-08-12 01:06:54 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\GameManager32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\mantle64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\GameManager64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\dgtrayicon.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\detoured.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\coinst_16.30.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\clinfo.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\atitmm64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\atisamu64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\ATIODE.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\ATIODCLI.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\atio6axx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atimuixx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atieah64.exe
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atidemgy.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\amfrt32.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\amdoclvp9lib32.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\amfrt64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdvlk32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdmcl32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdvlk64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdoclvp9lib64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdmcl64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdlvr64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-08-10 10:42:57 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-10 10:42:56 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-08-10 10:42:56 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-08-10 10:42:54 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-08-10 10:42:54 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 10:42:53 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-08-10 10:42:52 ----A---- C:\WINDOWS\system32\wmp.dll
2016-08-10 10:42:51 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2016-08-10 10:42:51 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-08-10 10:42:51 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-08-10 10:42:50 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-08-10 10:42:50 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-08-10 10:42:49 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-08-10 10:42:49 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-08-10 10:42:48 ----A---- C:\WINDOWS\system32\wevtutil.exe
2016-08-10 10:42:48 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-08-10 10:42:47 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-08-10 10:42:47 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-08-10 10:42:47 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-08-10 10:42:46 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-08-10 10:42:46 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys
2016-08-10 10:42:45 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-08-10 10:42:45 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-08-10 10:42:45 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2016-08-10 10:42:44 ----A---- C:\WINDOWS\system32\usocore.dll
2016-08-10 10:42:44 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-08-10 10:42:43 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 10:42:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-10 10:42:41 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-08-10 10:42:41 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-08-10 10:42:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-08-10 10:42:39 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-08-10 10:42:38 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-08-10 10:42:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-08-10 10:42:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-08-10 10:42:37 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-08-10 10:42:36 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\SYSWOW64\tdlrecover.exe
2016-08-10 10:42:36 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-08-10 10:42:35 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-08-10 10:42:35 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-08-10 10:42:35 ----A---- C:\WINDOWS\system32\cdd.dll
2016-08-10 10:42:34 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-08-10 10:42:34 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 10:42:34 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-08-10 10:42:33 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-08-10 10:42:33 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2016-08-10 10:42:33 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-08-10 10:42:32 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-08-10 10:42:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-08-10 10:42:29 ----A---- C:\WINDOWS\system32\wininet.dll
2016-08-10 10:42:29 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-08-10 10:42:28 ----A---- C:\WINDOWS\SYSWOW64\wevtutil.exe
2016-08-10 10:42:28 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-08-10 10:42:28 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-08-10 10:42:28 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-08-10 10:42:24 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-08-10 10:42:22 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-08-10 10:42:22 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-08-10 10:42:22 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-08-10 10:42:21 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-08-10 10:42:21 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-08-10 10:42:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-08-10 10:42:20 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-10 10:42:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-08-10 10:42:20 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-08-10 10:42:18 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-08-10 10:42:18 ----A---- C:\WINDOWS\system32\wldp.dll
2016-08-10 10:42:18 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-08-10 10:42:17 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-08-10 10:42:17 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 10:42:17 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-08-10 10:42:17 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-08-10 10:42:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-08-10 10:42:16 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-08-10 10:42:15 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-08-10 10:42:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-08-10 10:42:13 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-08-10 10:42:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-08-10 10:42:12 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-08-10 10:42:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-08-10 10:42:11 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-08-10 10:42:09 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2016-08-10 10:42:09 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-08-10 10:42:09 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-08-10 10:42:08 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-08-10 10:42:07 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-08-10 10:42:05 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-08-10 10:42:04 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-08-10 10:42:04 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-08-10 10:42:03 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-08-10 10:42:01 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-08-10 10:42:00 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-08-10 10:41:59 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-08-10 10:41:58 ----A---- C:\WINDOWS\system32\ole32.dll
2016-08-10 10:41:58 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-08-10 10:41:58 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 10:41:57 ----A---- C:\WINDOWS\system32\shell32.dll
2016-08-10 10:41:57 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-08-10 10:41:51 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2016-08-10 10:41:51 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\bthserv.dll
2016-08-10 10:41:49 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-08-10 10:41:49 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-08-08 12:18:57 ----HD---- C:\$WINDOWS.~BT
2016-08-07 22:13:07 ----D---- C:\Program Files (x86)\LSoft Technologies
======List of files/folders modified in the last 1 month======
2016-09-03 14:14:58 ----RD---- C:\Program Files
2016-09-03 14:07:50 ----D---- C:\Users\Dragoone\AppData\Roaming\Seznam.cz
2016-09-03 14:03:40 ----D---- C:\WINDOWS\Temp
2016-09-03 14:03:39 ----D---- C:\WINDOWS\Prefetch
2016-09-03 14:01:34 ----D---- C:\WINDOWS\system32\drivers
2016-09-03 14:01:30 ----D---- C:\WINDOWS\system32\DriverStore
2016-09-03 14:01:30 ----D---- C:\WINDOWS\INF
2016-09-03 14:00:46 ----D---- C:\WINDOWS\system32\CatRoot
2016-09-03 11:15:03 ----D---- C:\WINDOWS\system32\sru
2016-09-02 19:31:10 ----D---- C:\WINDOWS\AppReadiness
2016-09-02 11:05:52 ----D---- C:\WINDOWS\Microsoft.NET
2016-09-01 23:16:18 ----D---- C:\WINDOWS\system32\config
2016-09-01 12:43:23 ----D---- C:\WINDOWS\CbsTemp
2016-09-01 12:43:17 ----D---- C:\WINDOWS\system32\appraiser
2016-09-01 12:35:43 ----D---- C:\WINDOWS\WinSxS
2016-08-31 23:59:08 ----D---- C:\WINDOWS\system32\NDF
2016-08-31 22:32:26 ----HD---- C:\Program Files\WindowsApps
2016-08-30 11:06:49 ----D---- C:\WINDOWS\system32\LogFiles
2016-08-30 10:54:03 ----D---- C:\WINDOWS\system32\Tasks
2016-08-30 10:43:28 ----D---- C:\Users\Dragoone\AppData\Roaming\vlc
2016-08-29 22:18:07 ----D---- C:\Users\Dragoone\AppData\Roaming\Skype
2016-08-29 22:15:43 ----SHD---- C:\WINDOWS\Installer
2016-08-29 22:15:39 ----RD---- C:\Program Files (x86)\Skype
2016-08-29 22:12:45 ----SHD---- C:\System Volume Information
2016-08-24 16:05:31 ----D---- C:\WINDOWS\SysWOW64
2016-08-24 16:05:21 ----D---- C:\Windows
2016-08-24 16:05:19 ----RD---- C:\Program Files (x86)
2016-08-24 15:58:55 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-08-24 15:55:00 ----D---- C:\Program Files (x86)\Common Files
2016-08-24 15:53:53 ----HD---- C:\ProgramData
2016-08-19 20:58:33 ----D---- C:\WINDOWS\System32
2016-08-19 20:58:33 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-18 20:52:14 ----DC---- C:\WINDOWS\Panther
2016-08-16 12:43:46 ----D---- C:\Users\Dragoone\AppData\Roaming\BitTorrent
2016-08-15 10:16:07 ----D---- C:\ProgramData\AMD
2016-08-14 22:32:12 ----D---- C:\WINDOWS\rescache
2016-08-13 23:42:46 ----D---- C:\WINDOWS\system32\catroot2
2016-08-13 18:16:31 ----AD---- C:\Program Files (x86)\Steam
2016-08-12 13:42:26 ----AD---- C:\Program Files\AMD
2016-08-12 13:37:47 ----D---- C:\AMD
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atidxx64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\aticfx64.dll
2016-08-12 01:06:56 ----A---- C:\WINDOWS\system32\amdocl64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atig6txx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atieclxx.exe
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2016-08-11 03:34:07 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-08-11 03:34:06 ----D---- C:\WINDOWS\system32\en-US
2016-08-11 03:34:06 ----D---- C:\WINDOWS\system32\cs-CZ
2016-08-11 03:34:05 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-08-11 03:34:05 ----D---- C:\Program Files\Windows Journal
2016-08-11 03:34:05 ----D---- C:\Program Files\Internet Explorer
2016-08-11 03:34:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-10 11:39:01 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2016-08-10 11:38:54 ----D---- C:\WINDOWS\system32\MRT
2016-08-10 11:26:18 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-08-08 12:18:56 ----D---- C:\WINDOWS\Logs
2016-08-08 11:30:38 ----D---- C:\Users\Dragoone\AppData\Roaming\DAEMON Tools Lite
2016-08-08 10:42:38 ----SD---- C:\Users\Dragoone\AppData\Roaming\Microsoft
2016-08-07 22:13:06 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 amdkmpfd;@oem64.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-02-14 37472]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-07-31 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-08-05 292704]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-12-21 39008]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-07-31 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-07-31 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-07-31 968536]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-07-31 513496]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-07-31 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-07-31 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-07-31 163416]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 ACPIVPC;@oem35.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-12-21 33560]
R3 AmdAS4;@oem47.inf,%AmdAS4.SVCDESC%;AmdAS4 service; C:\WINDOWS\System32\drivers\AmdAS4.sys [2013-02-08 17504]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-08-12 26706432]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-08-12 518656]
R3 AtiHDAudioService;@oem78.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-03-01 111120]
R3 bcbtums;@oem69.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 – ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2015-10-30 7585280]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-08-03 84992]
R3 CnxtHdAudService;@oem77.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-08-05 1561728]
R3 dtlitescsibus;@oem15.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-11-08 30264]
R3 ETD;@oem68.inf,%PS2.DeviceDesc%;ELAN Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-10-07 525512]
R3 Hamachi;@oem17.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-11-12 45680]
R3 mfesapsn;McAfee Process Start Notification Service; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [2016-06-06 46240]
S0 amdkmafd;@oem70.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2015-07-28 40720]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-18 219360]
S3 aswHdsKe;aswHdsKe; \??\C:\WINDOWS\system32\drivers\aswHdsKe.sys [2016-08-26 83312]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-08-03 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-08-03 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-08-03 954368]
S3 btwampfl;@oem69.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-13 117248]
S3 dg_ssudbus;@oem79.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2016-04-25 129152]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 ksapi64;ksapi64; \??\C:\WINDOWS\system32\drivers\ksapi64.sys [2015-10-13 56680]
S3 L1C;@oem3.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2013-04-03 129224]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdaptiveSleepService;AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [2016-06-24 138752]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-08-12 287232]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-07-31 197640]
R2 BcmBtRSupport;@oem69.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 cmcore;Clean Master Core Service; c:\program files (x86)\cmcm\Clean Master\cmcore.exe [2015-10-13 315208]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-10-07 144072]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2016-07-20 2554376]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [2016-07-20 419248]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [2016-08-22 163592]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-16 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_111a31;Hostitel synchronizace_111a31; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_126b6f;Hostitel synchronizace_126b6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1e0f04;Hostitel synchronizace_1e0f04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_237580;Hostitel synchronizace_237580; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_252dca;Hostitel synchronizace_252dca; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26cb58;Hostitel synchronizace_26cb58; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2e7ee;Hostitel synchronizace_2e7ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_30357;Hostitel synchronizace_30357; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_30ceb;Hostitel synchronizace_30ceb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_31477;Hostitel synchronizace_31477; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_32676;Hostitel synchronizace_32676; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3277d;Hostitel synchronizace_3277d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_32cda;Hostitel synchronizace_32cda; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_32e2c;Hostitel synchronizace_32e2c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_331cd;Hostitel synchronizace_331cd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_34735;Hostitel synchronizace_34735; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3482d;Hostitel synchronizace_3482d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_34a24;Hostitel synchronizace_34a24; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35c5a;Hostitel synchronizace_35c5a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35ebb;Hostitel synchronizace_35ebb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35f0d;Hostitel synchronizace_35f0d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36b1b;Hostitel synchronizace_36b1b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37007;Hostitel synchronizace_37007; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_372bb;Hostitel synchronizace_372bb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_373e9;Hostitel synchronizace_373e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_373fe;Hostitel synchronizace_373fe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_377c3;Hostitel synchronizace_377c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37d0f;Hostitel synchronizace_37d0f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_380ef;Hostitel synchronizace_380ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38106;Hostitel synchronizace_38106; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38331;Hostitel synchronizace_38331; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38b47;Hostitel synchronizace_38b47; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38d9b;Hostitel synchronizace_38d9b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38f4e;Hostitel synchronizace_38f4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ad;Hostitel synchronizace_390ad; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_391dc;Hostitel synchronizace_391dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39a04;Hostitel synchronizace_39a04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3a4c5;Hostitel synchronizace_3a4c5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b05c;Hostitel synchronizace_3b05c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b244;Hostitel synchronizace_3b244; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b95e;Hostitel synchronizace_3b95e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c00d;Hostitel synchronizace_3c00d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c1cf;Hostitel synchronizace_3c1cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c24f;Hostitel synchronizace_3c24f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c729;Hostitel synchronizace_3c729; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12 270016]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [2015-06-18 1268568]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-16 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_111a31;Služba zasílání zpráv_111a31; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_126b6f;Služba zasílání zpráv_126b6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1e0f04;Služba zasílání zpráv_1e0f04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_237580;Služba zasílání zpráv_237580; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_252dca;Služba zasílání zpráv_252dca; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26cb58;Služba zasílání zpráv_26cb58; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2e7ee;Služba zasílání zpráv_2e7ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_30357;Služba zasílání zpráv_30357; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_30ceb;Služba zasílání zpráv_30ceb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_31477;Služba zasílání zpráv_31477; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_32676;Služba zasílání zpráv_32676; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3277d;Služba zasílání zpráv_3277d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_32cda;Služba zasílání zpráv_32cda; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_32e2c;Služba zasílání zpráv_32e2c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_331cd;Služba zasílání zpráv_331cd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34735;Služba zasílání zpráv_34735; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3482d;Služba zasílání zpráv_3482d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34a24;Služba zasílání zpráv_34a24; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35c5a;Služba zasílání zpráv_35c5a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35ebb;Služba zasílání zpráv_35ebb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35f0d;Služba zasílání zpráv_35f0d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36b1b;Služba zasílání zpráv_36b1b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37007;Služba zasílání zpráv_37007; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_372bb;Služba zasílání zpráv_372bb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_373e9;Služba zasílání zpráv_373e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_373fe;Služba zasílání zpráv_373fe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_377c3;Služba zasílání zpráv_377c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37d0f;Služba zasílání zpráv_37d0f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_380ef;Služba zasílání zpráv_380ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38106;Služba zasílání zpráv_38106; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38331;Služba zasílání zpráv_38331; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38b47;Služba zasílání zpráv_38b47; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38d9b;Služba zasílání zpráv_38d9b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38f4e;Služba zasílání zpráv_38f4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ad;Služba zasílání zpráv_390ad; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_391dc;Služba zasílání zpráv_391dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39a04;Služba zasílání zpráv_39a04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3a4c5;Služba zasílání zpráv_3a4c5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b05c;Služba zasílání zpráv_3b05c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b244;Služba zasílání zpráv_3b244; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b95e;Služba zasílání zpráv_3b95e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c00d;Služba zasílání zpráv_3c00d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c1cf;Služba zasílání zpráv_3c1cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c24f;Služba zasílání zpráv_3c24f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c729;Služba zasílání zpráv_3c729; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d0c3;Služba zasílání zpráv_3d0c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d2c8;Služba zasílání zpráv_3d2c8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d460;Služba zasílání zpráv_3d460; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d7af;Služba zasílání zpráv_3d7af; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3deb7;Služba zasílání zpráv_3deb7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e0ab;Služba zasílání zpráv_3e0ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e1c0;Služba zasílání zpráv_3e1c0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ebcb;Služba zasílání zpráv_3ebcb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ef44;Služba zasílání zpráv_3ef44; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc20;Služba zasílání zpráv_3fc20; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4023f;Služba zasílání zpráv_4023f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40375;Služba zasílání zpráv_40375; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40508;Služba zasílání zpráv_40508; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40510;Služba zasílání zpráv_40510; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40adc;Služba zasílání zpráv_40adc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_413e6;Služba zasílání zpráv_413e6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4147f;Služba zasílání zpráv_4147f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_41f50;Služba zasílání zpráv_41f50; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4279e;Služba zasílání zpráv_4279e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42881;Služba zasílání zpráv_42881; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4360f;Služba zasílání zpráv_4360f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_43d4b;Služba zasílání zpráv_43d4b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_43dce;Služba zasílání zpráv_43dce; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44068;Služba zasílání zpráv_44068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_444f3;Služba zasílání zpráv_444f3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44557;Služba zasílání zpráv_44557; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44797;Služba zasílání zpráv_44797; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4488f;Služba zasílání zpráv_4488f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44f57;Služba zasílání zpráv_44f57; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44f70;Služba zasílání zpráv_44f70; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_45481;Služba zasílání zpráv_45481; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_461da;Služba zasílání zpráv_461da; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_464b0;Služba zasílání zpráv_464b0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_46b73;Služba zasílání zpráv_46b73; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_470b1;Služba zasílání zpráv_470b1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_47403;Služba zasílání zpráv_47403; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_48fcc;Služba zasílání zpráv_48fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_492d5;Služba zasílání zpráv_492d5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_498a7;Služba zasílání zpráv_498a7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a2b7;Služba zasílání zpráv_4a2b7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a648;Služba zasílání zpráv_4a648; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a8cf;Služba zasílání zpráv_4a8cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4b01d;Služba zasílání zpráv_4b01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e3cf;Služba zasílání zpráv_4e3cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e9b9;Služba zasílání zpráv_4e9b9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f0e9;Služba zasílání zpráv_4f0e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f33b;Služba zasílání zpráv_4f33b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_50479;Služba zasílání zpráv_50479; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_504fd;Služba zasílání zpráv_504fd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_53fa0;Služba zasílání zpráv_53fa0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_55570;Služba zasílání zpráv_55570; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_55fdc;Služba zasílání zpráv_55fdc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56364;Služba zasílání zpráv_56364; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_57653;Služba zasílání zpráv_57653; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_57706;Služba zasílání zpráv_57706; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5a9add;Služba zasílání zpráv_5a9add; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f0ee;Služba zasílání zpráv_5f0ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6047825;Služba zasílání zpráv_6047825; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_63f43;Služba zasílání zpráv_63f43; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_64ed0;Služba zasílání zpráv_64ed0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6c4b7;Služba zasílání zpráv_6c4b7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_750a4;Služba zasílání zpráv_750a4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7897e;Služba zasílání zpráv_7897e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_78fdd;Služba zasílání zpráv_78fdd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7a48c;Služba zasílání zpráv_7a48c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7c4d5;Služba zasílání zpráv_7c4d5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7cc2b;Služba zasílání zpráv_7cc2b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_80587;Služba zasílání zpráv_80587; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_8269c;Služba zasílání zpráv_8269c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_87d2f;Služba zasílání zpráv_87d2f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_8d733;Služba zasílání zpráv_8d733; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_8f7a7;Služba zasílání zpráv_8f7a7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_96c30;Služba zasílání zpráv_96c30; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_96df4;Služba zasílání zpráv_96df4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9f522;Služba zasílání zpráv_9f522; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_a4665;Služba zasílání zpráv_a4665; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-05-06 114800]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\syswow64\GameMon.des [2015-09-22 3520872]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Dragoone666 at 2016-09-03 14:14:58
Microsoft Windows 10 Home
System drive C: has 237 GB (54%) free of 435 GB
Total RAM: 3529 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:15:05, on 3. 9. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0545)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
c:\program files (x86)\cmcm\Clean Master\cmtray.exe
C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Dragoone666.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... XXW0VJ5MG7
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=12454
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Lucky Bright - {d47f39c7-2f7f-43e5-ba53-faffe2da42af} - C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll (file missing)
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Aeria Ignite] "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [cmsc] "c:\program files (x86)\cmcm\Clean Master\cmtray.exe" -autorun
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKCU\..\Run: [Clownfish] "C:\Program Files (x86)\Clownfish\Clownfish.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Dragoone\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.aeriagames.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: NameServer = 8.8.4.4,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{a2b52d72-a9c0-479a-b3bc-c471cec7edc2}: NameServer = 8.8.4.4,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: NameServer = 8.8.4.4,8.8.8.8
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: AdaptiveSleepService - Unknown owner - C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem69.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Clean Master Core Service (cmcore) - Kingsoft Corporation - c:\program files (x86)\cmcm\Clean Master\cmcore.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: RzKLService - Razer Inc. - C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13653 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ff3f74dd-5e2d-4701-a0d6-64bbb5772246 -SystemEventPortName:HostProcess-55d67560-08f1-47b8-b436-a8ac329fde5b -IoCancelEventPortName:HostProcess-d9a7a263-d4cd-4ff4-8da9-c2c2d19c9cf3 -NonStateChangingEventPortName:HostProcess-ae4895de-a565-43d7-8a51-1930209a4ee1 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:724b85b1-732a-4579-bee4-c3505050e085 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\atiesrxx.exe
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"c:\program files (x86)\cmcm\Clean Master\cmcore.exe" /service cmcore
C:\WINDOWS\System32\spoolsv.exe
PopUpReboot
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe"
"C:\Program Files\Elantech\ETDService.exe"
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe"
dashost.exe {2488b567-40a6-45bd-9014ea6b01f689cd}
"C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe" -s
C:\WINDOWS\System32\alg.exe
UninstallPciFilter
"C:\Program Files\Elantech\ETDCtrl.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"c:\program files (x86)\cmcm\Clean Master\cmtray.exe" -autorun
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\RTFTrack.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
szndesktop.exe default start
"C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=52.0.2743.116 --handshake-handle=0x1ac
"C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6456.0.2144017935\1663576695" --mojo-application-channel-token=D140EC9FD4F31D22F77262AC254C4516 --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,13,27,55 --gpu-vendor-id=0x1002 --gpu-device-id=0x9832 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=16.150.2211.0 --gpu-driver-date=3-21-2016 --gpu-secondary-vendor-ids=0x1002 --gpu-secondary-device-ids=0x6663 --mojo-platform-channel-handle=1392 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=6F80831A6774C4DEF1DD8E5BA308CFB1 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=EC9ABD22737BDCFA0D3481334EA8F24A --mojo-application-channel-token=0A35AA49572DA5E71C3EA7D123656A5D --channel="6456.3.241829622\736212063" --mojo-platform-channel-handle=2960 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=D766BE9E0699F355FB68CEDFB63C182F --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=B7AF2B423CB75A8C170EE18D2AEF1B45 --mojo-application-channel-token=1F7094D1C1FE677C1A321BBE10BAA15B --channel="6456.4.875624130\717670930" --mojo-platform-channel-handle=3068 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=527EA9E1A255C3F95A9E6E2E40585A6D --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=BFEB282E6034BBDA54BEAF7EA211B755 --mojo-application-channel-token=BF38E61017853A989AAFB1483A079A80 --channel="6456.5.247232803\1761598890" --mojo-platform-channel-handle=2968 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=7A9A9F619C37A9DD6A0FE666B20DF6A8 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=EEF5E3873524A239A63C1C060A5E3B53 --mojo-application-channel-token=8BA81A89719858E721F40E00AD8F49DF --channel="6456.6.1868532938\1095301136" --mojo-platform-channel-handle=2948 /prefetch:1
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskeng.exe {8FC2FAC3-5F58-49FF-9CED-8BC62F1BCAEC}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/*PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=1A2FC3C411AEC81BD75FE921406E54EB --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=55E322E93CC7EB88D68A57E37B97A141 --mojo-application-channel-token=C36AD24B3FBCA6B63C358BB7BE6ED6E2 --channel="6456.20.410695280\266718807" --mojo-platform-channel-handle=6540 /prefetch:1
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/Aggressive/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20160627/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Control/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/*PreconnectMore/Default/*QUIC/EnabledSlowStartLargeReductionJuly/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control25PermanentB/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_76/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_06/*UMA-Uniformity-Trial-50-Percent/default/*UMA_CheckStates/NoChecks/ --primordial-pipe-token=BC6C4C907ED814E9334E41527F9265DD --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=B2A08439267C1734F6A86D9BC0B5495B --mojo-application-channel-token=00DFEFA5622690F48AE76BB1CC1B5011 --channel="6456.25.22086275\299976488" --mojo-platform-channel-handle=6792 /prefetch:1
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
"C:\Users\Dragoone\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Bidaily Synchronize Task.job - C:\ProgramData\{3affff2f-4fe8-16f4-3aff-fff2f4fefcbd}\Free Download Crash Bandicoot 3 For PC Full Version.exe --startup=1 --single
C:\WINDOWS\tasks\Bidaily Synchronize Task[pr].job - c:\programdata\{e1104ee0-8e6c-95bc-e110-04ee08e63b82}\1496491702236798550s.exe --startup=1 --single
C:\WINDOWS\tasks\CampChamp.job - c:\programdata\{b4e63138-59c8-63d6-b4e6-6313859cc4e1}\5852276903287593494b.exe --startup=1 --single
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://searchinterneat-a.akamaihd.net/h ... JBI0sYRl1X"
prefs.js - "keyword.URL" - "http://searchinterneat-a.akamaihd.net/s ... earchTerms}"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
"{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"=C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1221171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0]
"Description"=DivX Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\searchplugins\
default.xml
mystartsearch.xml
seznam-avast.xml
WebSearch.xml
yahoo.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-12 50376]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d47f39c7-2f7f-43e5-ba53-faffe2da42af}]
Lucky Bright - C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-10-07 3242696]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2013-04-10 6339656]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-12-21 17097200]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-12-21 193008]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-06-24 6613896]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Clownfish"=C:\Program Files (x86)\Clownfish\Clownfish.exe [2012-09-27 1122040]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-07-09 2851408]
"DAEMON Tools Lite Automount"=C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe [2015-06-18 4468056]
"OneDrive"=C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-08-26 633024]
"cz.seznam.software.autoupdate"=C:\Users\Dragoone\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2013-03-09 95192]
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"Aeria Ignite"=C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [2013-06-06 1925656]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-07-31 9071752]
"cmsc"=c:\program files (x86)\cmcm\Clean Master\cmtray.exe [2015-10-13 771912]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2016-07-20 5565960]
"DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2016-08-08 1009632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-03 14:14:58 ----D---- C:\rsit
2016-09-03 14:14:58 ----D---- C:\Program Files\trend micro
2016-08-30 10:54:00 ----AD---- C:\Program Files\CCleaner
2016-08-30 10:53:55 ----AD---- C:\Program Files\Recuva
2016-08-26 23:45:04 ----A---- C:\WINDOWS\system32\drivers\aswHdsKe.sys
2016-08-24 16:05:21 ----A---- C:\WINDOWS\iun6002.exe
2016-08-24 16:05:19 ----D---- C:\Program Files (x86)\Codec Pack - All In 1
2016-08-24 16:04:33 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2016-08-24 15:57:56 ----D---- C:\Program Files\DivX
2016-08-24 15:57:45 ----D---- C:\Users\Dragoone\AppData\Roaming\DivX
2016-08-24 15:53:53 ----D---- C:\ProgramData\McAfee
2016-08-24 15:53:52 ----D---- C:\Program Files (x86)\McAfee
2016-08-24 15:53:36 ----D---- C:\Program Files (x86)\DivX
2016-08-24 15:53:00 ----D---- C:\ProgramData\DivX
2016-08-15 19:44:00 ----D---- C:\Program Files (x86)\Counter-Strike 1.6
2016-08-12 13:43:01 ----AD---- C:\Program Files (x86)\AMD
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiumd64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atimpc64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdxc64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\amdave64.dll
2016-08-12 01:06:54 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\GameManager32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\mantle64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\GameManager64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\dgtrayicon.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\detoured.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\coinst_16.30.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\clinfo.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\atitmm64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\atisamu64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\ATIODE.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\ATIODCLI.exe
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\atio6axx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atimuixx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atieah64.exe
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atidemgy.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\amfrt32.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\amdoclvp9lib32.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\amfrt64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdvlk32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdmcl32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdvlk64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdoclvp9lib64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdmcl64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdlvr64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2016-08-12 01:06:46 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-08-10 10:42:58 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-08-10 10:42:57 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-10 10:42:56 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-08-10 10:42:56 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-08-10 10:42:54 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-08-10 10:42:54 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 10:42:53 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-08-10 10:42:52 ----A---- C:\WINDOWS\system32\wmp.dll
2016-08-10 10:42:51 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2016-08-10 10:42:51 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-08-10 10:42:51 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-08-10 10:42:50 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-08-10 10:42:50 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-08-10 10:42:49 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-08-10 10:42:49 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-08-10 10:42:48 ----A---- C:\WINDOWS\system32\wevtutil.exe
2016-08-10 10:42:48 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-08-10 10:42:47 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
2016-08-10 10:42:47 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-08-10 10:42:47 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-08-10 10:42:46 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-08-10 10:42:46 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys
2016-08-10 10:42:45 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-08-10 10:42:45 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-08-10 10:42:45 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2016-08-10 10:42:44 ----A---- C:\WINDOWS\system32\usocore.dll
2016-08-10 10:42:44 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-08-10 10:42:43 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 10:42:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-10 10:42:41 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-08-10 10:42:41 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-08-10 10:42:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-08-10 10:42:39 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-08-10 10:42:38 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-08-10 10:42:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-08-10 10:42:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-08-10 10:42:37 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-08-10 10:42:36 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\SYSWOW64\tdlrecover.exe
2016-08-10 10:42:36 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-08-10 10:42:36 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-08-10 10:42:35 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-08-10 10:42:35 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-08-10 10:42:35 ----A---- C:\WINDOWS\system32\cdd.dll
2016-08-10 10:42:34 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-08-10 10:42:34 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 10:42:34 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-08-10 10:42:33 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-08-10 10:42:33 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2016-08-10 10:42:33 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-08-10 10:42:32 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-08-10 10:42:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-08-10 10:42:30 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-08-10 10:42:29 ----A---- C:\WINDOWS\system32\wininet.dll
2016-08-10 10:42:29 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-08-10 10:42:28 ----A---- C:\WINDOWS\SYSWOW64\wevtutil.exe
2016-08-10 10:42:28 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-08-10 10:42:28 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2016-08-10 10:42:28 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-08-10 10:42:27 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-08-10 10:42:24 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-08-10 10:42:22 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-08-10 10:42:22 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-08-10 10:42:22 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-08-10 10:42:21 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-08-10 10:42:21 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-08-10 10:42:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-08-10 10:42:20 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-10 10:42:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-08-10 10:42:20 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-08-10 10:42:19 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-08-10 10:42:18 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-08-10 10:42:18 ----A---- C:\WINDOWS\system32\wldp.dll
2016-08-10 10:42:18 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-08-10 10:42:17 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-08-10 10:42:17 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 10:42:17 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-08-10 10:42:17 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-08-10 10:42:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-08-10 10:42:16 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-08-10 10:42:15 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-08-10 10:42:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-08-10 10:42:13 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-08-10 10:42:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-08-10 10:42:12 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-08-10 10:42:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-08-10 10:42:11 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-08-10 10:42:09 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2016-08-10 10:42:09 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-08-10 10:42:09 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-08-10 10:42:08 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-08-10 10:42:07 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-08-10 10:42:05 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-08-10 10:42:04 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-08-10 10:42:04 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-08-10 10:42:03 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-08-10 10:42:01 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-08-10 10:42:00 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-08-10 10:41:59 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-08-10 10:41:58 ----A---- C:\WINDOWS\system32\ole32.dll
2016-08-10 10:41:58 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-08-10 10:41:58 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 10:41:57 ----A---- C:\WINDOWS\system32\shell32.dll
2016-08-10 10:41:57 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-08-10 10:41:51 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2016-08-10 10:41:51 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-08-10 10:41:50 ----A---- C:\WINDOWS\system32\bthserv.dll
2016-08-10 10:41:49 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-08-10 10:41:49 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-08-08 12:18:57 ----HD---- C:\$WINDOWS.~BT
2016-08-07 22:13:07 ----D---- C:\Program Files (x86)\LSoft Technologies
======List of files/folders modified in the last 1 month======
2016-09-03 14:14:58 ----RD---- C:\Program Files
2016-09-03 14:07:50 ----D---- C:\Users\Dragoone\AppData\Roaming\Seznam.cz
2016-09-03 14:03:40 ----D---- C:\WINDOWS\Temp
2016-09-03 14:03:39 ----D---- C:\WINDOWS\Prefetch
2016-09-03 14:01:34 ----D---- C:\WINDOWS\system32\drivers
2016-09-03 14:01:30 ----D---- C:\WINDOWS\system32\DriverStore
2016-09-03 14:01:30 ----D---- C:\WINDOWS\INF
2016-09-03 14:00:46 ----D---- C:\WINDOWS\system32\CatRoot
2016-09-03 11:15:03 ----D---- C:\WINDOWS\system32\sru
2016-09-02 19:31:10 ----D---- C:\WINDOWS\AppReadiness
2016-09-02 11:05:52 ----D---- C:\WINDOWS\Microsoft.NET
2016-09-01 23:16:18 ----D---- C:\WINDOWS\system32\config
2016-09-01 12:43:23 ----D---- C:\WINDOWS\CbsTemp
2016-09-01 12:43:17 ----D---- C:\WINDOWS\system32\appraiser
2016-09-01 12:35:43 ----D---- C:\WINDOWS\WinSxS
2016-08-31 23:59:08 ----D---- C:\WINDOWS\system32\NDF
2016-08-31 22:32:26 ----HD---- C:\Program Files\WindowsApps
2016-08-30 11:06:49 ----D---- C:\WINDOWS\system32\LogFiles
2016-08-30 10:54:03 ----D---- C:\WINDOWS\system32\Tasks
2016-08-30 10:43:28 ----D---- C:\Users\Dragoone\AppData\Roaming\vlc
2016-08-29 22:18:07 ----D---- C:\Users\Dragoone\AppData\Roaming\Skype
2016-08-29 22:15:43 ----SHD---- C:\WINDOWS\Installer
2016-08-29 22:15:39 ----RD---- C:\Program Files (x86)\Skype
2016-08-29 22:12:45 ----SHD---- C:\System Volume Information
2016-08-24 16:05:31 ----D---- C:\WINDOWS\SysWOW64
2016-08-24 16:05:21 ----D---- C:\Windows
2016-08-24 16:05:19 ----RD---- C:\Program Files (x86)
2016-08-24 15:58:55 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-08-24 15:55:00 ----D---- C:\Program Files (x86)\Common Files
2016-08-24 15:53:53 ----HD---- C:\ProgramData
2016-08-19 20:58:33 ----D---- C:\WINDOWS\System32
2016-08-19 20:58:33 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-18 20:52:14 ----DC---- C:\WINDOWS\Panther
2016-08-16 12:43:46 ----D---- C:\Users\Dragoone\AppData\Roaming\BitTorrent
2016-08-15 10:16:07 ----D---- C:\ProgramData\AMD
2016-08-14 22:32:12 ----D---- C:\WINDOWS\rescache
2016-08-13 23:42:46 ----D---- C:\WINDOWS\system32\catroot2
2016-08-13 18:16:31 ----AD---- C:\Program Files (x86)\Steam
2016-08-12 13:42:26 ----AD---- C:\Program Files\AMD
2016-08-12 13:37:47 ----D---- C:\AMD
2016-08-12 01:07:20 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\atidxx64.dll
2016-08-12 01:07:20 ----A---- C:\WINDOWS\system32\aticfx64.dll
2016-08-12 01:06:56 ----A---- C:\WINDOWS\system32\amdocl64.dll
2016-08-12 01:06:52 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atig6txx.dll
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2016-08-12 01:06:50 ----A---- C:\WINDOWS\system32\atieclxx.exe
2016-08-12 01:06:48 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2016-08-11 03:34:07 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-08-11 03:34:06 ----D---- C:\WINDOWS\system32\en-US
2016-08-11 03:34:06 ----D---- C:\WINDOWS\system32\cs-CZ
2016-08-11 03:34:05 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-08-11 03:34:05 ----D---- C:\Program Files\Windows Journal
2016-08-11 03:34:05 ----D---- C:\Program Files\Internet Explorer
2016-08-11 03:34:05 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-10 11:39:01 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2016-08-10 11:38:54 ----D---- C:\WINDOWS\system32\MRT
2016-08-10 11:26:18 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-08-08 12:18:56 ----D---- C:\WINDOWS\Logs
2016-08-08 11:30:38 ----D---- C:\Users\Dragoone\AppData\Roaming\DAEMON Tools Lite
2016-08-08 10:42:38 ----SD---- C:\Users\Dragoone\AppData\Roaming\Microsoft
2016-08-07 22:13:06 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 amdkmpfd;@oem64.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-02-14 37472]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-07-31 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-08-05 292704]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-12-21 39008]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-07-31 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-07-31 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-07-31 968536]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-07-31 513496]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-07-31 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-07-31 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-07-31 163416]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R3 ACPIVPC;@oem35.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-12-21 33560]
R3 AmdAS4;@oem47.inf,%AmdAS4.SVCDESC%;AmdAS4 service; C:\WINDOWS\System32\drivers\AmdAS4.sys [2013-02-08 17504]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-08-12 26706432]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-08-12 518656]
R3 AtiHDAudioService;@oem78.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-03-01 111120]
R3 bcbtums;@oem69.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
R3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 – ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2015-10-30 7585280]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-08-03 84992]
R3 CnxtHdAudService;@oem77.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-08-05 1561728]
R3 dtlitescsibus;@oem15.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-11-08 30264]
R3 ETD;@oem68.inf,%PS2.DeviceDesc%;ELAN Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-10-07 525512]
R3 Hamachi;@oem17.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-11-12 45680]
R3 mfesapsn;McAfee Process Start Notification Service; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [2016-06-06 46240]
S0 amdkmafd;@oem70.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2015-07-28 40720]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-18 219360]
S3 aswHdsKe;aswHdsKe; \??\C:\WINDOWS\system32\drivers\aswHdsKe.sys [2016-08-26 83312]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-08-03 112640]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-08-03 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-08-03 954368]
S3 btwampfl;@oem69.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-13 117248]
S3 dg_ssudbus;@oem79.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2016-04-25 129152]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 ksapi64;ksapi64; \??\C:\WINDOWS\system32\drivers\ksapi64.sys [2015-10-13 56680]
S3 L1C;@oem3.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2013-04-03 129224]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdaptiveSleepService;AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [2016-06-24 138752]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-08-12 287232]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-07-31 197640]
R2 BcmBtRSupport;@oem69.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-03-27 2251992]
R2 cmcore;Clean Master Core Service; c:\program files (x86)\cmcm\Clean Master\cmcore.exe [2015-10-13 315208]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-05-27 2139328]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-10-07 144072]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2016-07-20 2554376]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [2016-07-20 419248]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [2016-08-22 163592]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-16 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_111a31;Hostitel synchronizace_111a31; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_126b6f;Hostitel synchronizace_126b6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_1e0f04;Hostitel synchronizace_1e0f04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_237580;Hostitel synchronizace_237580; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_252dca;Hostitel synchronizace_252dca; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_26cb58;Hostitel synchronizace_26cb58; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2e7ee;Hostitel synchronizace_2e7ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_30357;Hostitel synchronizace_30357; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_30ceb;Hostitel synchronizace_30ceb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_31477;Hostitel synchronizace_31477; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_32676;Hostitel synchronizace_32676; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3277d;Hostitel synchronizace_3277d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_32cda;Hostitel synchronizace_32cda; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_32e2c;Hostitel synchronizace_32e2c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_331cd;Hostitel synchronizace_331cd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_34735;Hostitel synchronizace_34735; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3482d;Hostitel synchronizace_3482d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_34a24;Hostitel synchronizace_34a24; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35c5a;Hostitel synchronizace_35c5a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35ebb;Hostitel synchronizace_35ebb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_35f0d;Hostitel synchronizace_35f0d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_36b1b;Hostitel synchronizace_36b1b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37007;Hostitel synchronizace_37007; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_372bb;Hostitel synchronizace_372bb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_373e9;Hostitel synchronizace_373e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_373fe;Hostitel synchronizace_373fe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_377c3;Hostitel synchronizace_377c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_37d0f;Hostitel synchronizace_37d0f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_380ef;Hostitel synchronizace_380ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38106;Hostitel synchronizace_38106; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38331;Hostitel synchronizace_38331; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38b47;Hostitel synchronizace_38b47; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38d9b;Hostitel synchronizace_38d9b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_38f4e;Hostitel synchronizace_38f4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_390ad;Hostitel synchronizace_390ad; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_391dc;Hostitel synchronizace_391dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_39a04;Hostitel synchronizace_39a04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3a4c5;Hostitel synchronizace_3a4c5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b05c;Hostitel synchronizace_3b05c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b244;Hostitel synchronizace_3b244; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3b95e;Hostitel synchronizace_3b95e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c00d;Hostitel synchronizace_3c00d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c1cf;Hostitel synchronizace_3c1cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c24f;Hostitel synchronizace_3c24f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3c729;Hostitel synchronizace_3c729; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12 270016]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [2015-06-18 1268568]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-16 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_111a31;Služba zasílání zpráv_111a31; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_126b6f;Služba zasílání zpráv_126b6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_1e0f04;Služba zasílání zpráv_1e0f04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_237580;Služba zasílání zpráv_237580; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_252dca;Služba zasílání zpráv_252dca; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_26cb58;Služba zasílání zpráv_26cb58; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2e7ee;Služba zasílání zpráv_2e7ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_30357;Služba zasílání zpráv_30357; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_30ceb;Služba zasílání zpráv_30ceb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_31477;Služba zasílání zpráv_31477; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_32676;Služba zasílání zpráv_32676; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3277d;Služba zasílání zpráv_3277d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_32cda;Služba zasílání zpráv_32cda; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_32e2c;Služba zasílání zpráv_32e2c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_331cd;Služba zasílání zpráv_331cd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34735;Služba zasílání zpráv_34735; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3482d;Služba zasílání zpráv_3482d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34a24;Služba zasílání zpráv_34a24; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35c5a;Služba zasílání zpráv_35c5a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35ebb;Služba zasílání zpráv_35ebb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_35f0d;Služba zasílání zpráv_35f0d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_36b1b;Služba zasílání zpráv_36b1b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37007;Služba zasílání zpráv_37007; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_372bb;Služba zasílání zpráv_372bb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_373e9;Služba zasílání zpráv_373e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_373fe;Služba zasílání zpráv_373fe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_377c3;Služba zasílání zpráv_377c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_37d0f;Služba zasílání zpráv_37d0f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_380ef;Služba zasílání zpráv_380ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38106;Služba zasílání zpráv_38106; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38331;Služba zasílání zpráv_38331; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38b47;Služba zasílání zpráv_38b47; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38d9b;Služba zasílání zpráv_38d9b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_38f4e;Služba zasílání zpráv_38f4e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_390ad;Služba zasílání zpráv_390ad; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_391dc;Služba zasílání zpráv_391dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_39a04;Služba zasílání zpráv_39a04; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3a4c5;Služba zasílání zpráv_3a4c5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b05c;Služba zasílání zpráv_3b05c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b244;Služba zasílání zpráv_3b244; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3b95e;Služba zasílání zpráv_3b95e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c00d;Služba zasílání zpráv_3c00d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c1cf;Služba zasílání zpráv_3c1cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c24f;Služba zasílání zpráv_3c24f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3c729;Služba zasílání zpráv_3c729; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d0c3;Služba zasílání zpráv_3d0c3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d2c8;Služba zasílání zpráv_3d2c8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d460;Služba zasílání zpráv_3d460; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3d7af;Služba zasílání zpráv_3d7af; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3deb7;Služba zasílání zpráv_3deb7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e0ab;Služba zasílání zpráv_3e0ab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3e1c0;Služba zasílání zpráv_3e1c0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ebcb;Služba zasílání zpráv_3ebcb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3ef44;Služba zasílání zpráv_3ef44; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3fc20;Služba zasílání zpráv_3fc20; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4023f;Služba zasílání zpráv_4023f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40375;Služba zasílání zpráv_40375; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40508;Služba zasílání zpráv_40508; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40510;Služba zasílání zpráv_40510; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_40adc;Služba zasílání zpráv_40adc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_413e6;Služba zasílání zpráv_413e6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4147f;Služba zasílání zpráv_4147f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_41f50;Služba zasílání zpráv_41f50; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4279e;Služba zasílání zpráv_4279e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_42881;Služba zasílání zpráv_42881; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4360f;Služba zasílání zpráv_4360f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_43d4b;Služba zasílání zpráv_43d4b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_43dce;Služba zasílání zpráv_43dce; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44068;Služba zasílání zpráv_44068; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_444f3;Služba zasílání zpráv_444f3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44557;Služba zasílání zpráv_44557; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44797;Služba zasílání zpráv_44797; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4488f;Služba zasílání zpráv_4488f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44f57;Služba zasílání zpráv_44f57; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_44f70;Služba zasílání zpráv_44f70; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_45481;Služba zasílání zpráv_45481; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_461da;Služba zasílání zpráv_461da; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_464b0;Služba zasílání zpráv_464b0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_46b73;Služba zasílání zpráv_46b73; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_470b1;Služba zasílání zpráv_470b1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_47403;Služba zasílání zpráv_47403; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_48fcc;Služba zasílání zpráv_48fcc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_492d5;Služba zasílání zpráv_492d5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_498a7;Služba zasílání zpráv_498a7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a2b7;Služba zasílání zpráv_4a2b7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a648;Služba zasílání zpráv_4a648; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4a8cf;Služba zasílání zpráv_4a8cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4b01d;Služba zasílání zpráv_4b01d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e3cf;Služba zasílání zpráv_4e3cf; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4e9b9;Služba zasílání zpráv_4e9b9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f0e9;Služba zasílání zpráv_4f0e9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_4f33b;Služba zasílání zpráv_4f33b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_50479;Služba zasílání zpráv_50479; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_504fd;Služba zasílání zpráv_504fd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_53fa0;Služba zasílání zpráv_53fa0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_55570;Služba zasílání zpráv_55570; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_55fdc;Služba zasílání zpráv_55fdc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_56364;Služba zasílání zpráv_56364; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_57653;Služba zasílání zpráv_57653; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_57706;Služba zasílání zpráv_57706; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5a9add;Služba zasílání zpráv_5a9add; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5f0ee;Služba zasílání zpráv_5f0ee; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6047825;Služba zasílání zpráv_6047825; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_63f43;Služba zasílání zpráv_63f43; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_64ed0;Služba zasílání zpráv_64ed0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_6c4b7;Služba zasílání zpráv_6c4b7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_750a4;Služba zasílání zpráv_750a4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7897e;Služba zasílání zpráv_7897e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_78fdd;Služba zasílání zpráv_78fdd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7a48c;Služba zasílání zpráv_7a48c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7c4d5;Služba zasílání zpráv_7c4d5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7cc2b;Služba zasílání zpráv_7cc2b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_80587;Služba zasílání zpráv_80587; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_8269c;Služba zasílání zpráv_8269c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_87d2f;Služba zasílání zpráv_87d2f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_8d733;Služba zasílání zpráv_8d733; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_8f7a7;Služba zasílání zpráv_8f7a7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_96c30;Služba zasílání zpráv_96c30; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_96df4;Služba zasílání zpráv_96df4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_9f522;Služba zasílání zpráv_9f522; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_a4665;Služba zasílání zpráv_a4665; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-05-06 114800]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\syswow64\GameMon.des [2015-09-22 3520872]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zamrzání pc, problikávání monitoru
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zamrzání pc, problikávání monitoru
Po spuštění adw bylo nalezeno 243 hrozeb. Bohužel program při čištění přestal pracovat ( https://postimg.org/image/43oka56wr/ )
Po znovu spuštění programu hlásíl už jen 4x hrozeb. Po vyžádaném restartu stále problikává monitor. Zde je log z druhého pokusu :
# AdwCleaner v6.010 - Log soubor vytvořen 03/09/2016 na 16:41:38
# Aktualizováno dne 12/08/2016 z ToolsLib
# Databáze : 2016-09-03.1 [Server]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Dragoone666 - DRAGOONE666
# Beží od : C:\Users\Dragoone\Downloads\adwcleaner_6.010.exe
# Mod: Čištění
# Podpora : https://toolslib.net/forum
***** [ Služby ] *****
***** [ Adresáře ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupce ] *****
***** [ Plánovač úloh ] *****
***** [ Registry ] *****
[-] Data obnovena:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data obnovena:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data obnovena:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data obnovena:HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Hodnota smazána:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Klíč smazán:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data obnovena:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Hodnota smazána:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Klíč smazán:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes\{32FA4D0C-2993-44A4-88A9-BE06BA582019}
[-] Data obnovena:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Klíč smazán:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Klíč smazán:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes\{AF1C832F-395D-4700-9738-44B1BD96AD6A}
[#] Hodnota smazána po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{32FA4D0C-2993-44A4-88A9-BE06BA582019}
[-] Data obnovena:HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AF1C832F-395D-4700-9738-44B1BD96AD6A}
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Klíč smazán:HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
[-] Klíč smazán:HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
[-] Hodnota smazána:[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [ApnTBMon]
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GLOBALUPDATE.EXE
[-] Hodnota smazána:HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
[#] Hodnota smazána po restartování:HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
[#] Hodnota smazána po restartování:HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
***** [ Prohlížeče ] *****
[-] Firefox nastavení vyčištěno:"browser.newtab.url" - "hxxp://searchinterneat-a.akamaihd.net/t?eq=U0EeFFhaR1oWHANCJl8KU1pIDARGc1gVVVtARBhCeQkLTAlHRQNAIw4IBw4XRRNBNARaB0tXUUEeGGlxR1dMbUBAK0B6E1AWSUE="
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.alias" - "mystartsearch"
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.iconURL" - "hxxp://www.mystartsearch.com/favicon.ico"
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.name" - "mystartsearch"
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.url" - "hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}"
[-] Firefox nastavení vyčištěno:"browser.startup.homepage" - "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA18DB0VXfWFoKB8fHHlWI1JBI0sYRl1X"
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:"keyword.URL" - "hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ9ZB19DE1YabQhdUlhcFVcSJRRZWAlCDAUVJA9bAg5BRwJFJB9aFQQTR0cFME0FB18EURNNfXVNAlIIY0dKJ1FM&q={searchTerms}"
[-] [C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Smazání:hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA1oDB0VXfV5bFElXTwhvNVpTGHsDSFJLNA==
[-] [ask.com] [Search Provider] Smazání:ask.com
*************************
:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [5552 Bajtů] - [03/09/2016 16:41:38]
C:\AdwCleaner\AdwCleaner[S0].txt - [24322 Bajtů] - [03/09/2016 16:33:08]
C:\AdwCleaner\AdwCleaner[S1].txt - [8669 Bajtů] - [03/09/2016 16:41:12]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [5775 Bajtů] ##########
Po znovu spuštění programu hlásíl už jen 4x hrozeb. Po vyžádaném restartu stále problikává monitor. Zde je log z druhého pokusu :
# AdwCleaner v6.010 - Log soubor vytvořen 03/09/2016 na 16:41:38
# Aktualizováno dne 12/08/2016 z ToolsLib
# Databáze : 2016-09-03.1 [Server]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Dragoone666 - DRAGOONE666
# Beží od : C:\Users\Dragoone\Downloads\adwcleaner_6.010.exe
# Mod: Čištění
# Podpora : https://toolslib.net/forum
***** [ Služby ] *****
***** [ Adresáře ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupce ] *****
***** [ Plánovač úloh ] *****
***** [ Registry ] *****
[-] Data obnovena:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data obnovena:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data obnovena:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data obnovena:HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Hodnota smazána:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Klíč smazán:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data obnovena:[x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Hodnota smazána:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Klíč smazán:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes\{32FA4D0C-2993-44A4-88A9-BE06BA582019}
[-] Data obnovena:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Klíč smazán:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Klíč smazán:HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\SearchScopes\{AF1C832F-395D-4700-9738-44B1BD96AD6A}
[#] Hodnota smazána po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{32FA4D0C-2993-44A4-88A9-BE06BA582019}
[-] Data obnovena:HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[#] Klíč smazán po restartování:HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AF1C832F-395D-4700-9738-44B1BD96AD6A}
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Klíč smazán:HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
[-] Klíč smazán:HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
[-] Hodnota smazána:[x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [ApnTBMon]
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GLOBALUPDATE.EXE
[-] Hodnota smazána:HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
[#] Hodnota smazána po restartování:HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
[#] Hodnota smazána po restartování:HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
***** [ Prohlížeče ] *****
[-] Firefox nastavení vyčištěno:"browser.newtab.url" - "hxxp://searchinterneat-a.akamaihd.net/t?eq=U0EeFFhaR1oWHANCJl8KU1pIDARGc1gVVVtARBhCeQkLTAlHRQNAIw4IBw4XRRNBNARaB0tXUUEeGGlxR1dMbUBAK0B6E1AWSUE="
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.alias" - "mystartsearch"
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.iconURL" - "hxxp://www.mystartsearch.com/favicon.ico"
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.name" - "mystartsearch"
[-] Firefox nastavení vyčištěno:"browser.search.searchengine.url" - "hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}"
[-] Firefox nastavení vyčištěno:"browser.startup.homepage" - "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA18DB0VXfWFoKB8fHHlWI1JBI0sYRl1X"
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:
[-] Firefox nastavení vyčištěno:"keyword.URL" - "hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ9ZB19DE1YabQhdUlhcFVcSJRRZWAlCDAUVJA9bAg5BRwJFJB9aFQQTR0cFME0FB18EURNNfXVNAlIIY0dKJ1FM&q={searchTerms}"
[-] [C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Smazání:hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA1oDB0VXfV5bFElXTwhvNVpTGHsDSFJLNA==
[-] [ask.com] [Search Provider] Smazání:ask.com
*************************
:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [5552 Bajtů] - [03/09/2016 16:41:38]
C:\AdwCleaner\AdwCleaner[S0].txt - [24322 Bajtů] - [03/09/2016 16:33:08]
C:\AdwCleaner\AdwCleaner[S1].txt - [8669 Bajtů] - [03/09/2016 16:41:12]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [5775 Bajtů] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zamrzání pc, problikávání monitoru
Teď dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zamrzání pc, problikávání monitoru
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-08-2016
Ran by Dragoone666 (administrator) on DRAGOONE666 (03-09-2016 18:09:41)
Running from C:\Users\Dragoone\Desktop
Loaded Profiles: Dragoone666 (Available Profiles: Dragoone666)
Platform: Windows 10 Home Version 1511 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Kingsoft Corporation) C:\Program Files (x86)\cmcm\Clean Master\cmcore.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(AMD) C:\Program Files\AMD\amdkmpfd_un\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(AMD) C:\Program Files\AMD\amdkmpfd_un\atieclxx.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Kingsoft Corporation) C:\Program Files (x86)\cmcm\Clean Master\cmtray.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\system\rads_user_kernel.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.26\deploy\LoLLauncher.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.66\deploy\LoLPatcher.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.214\deploy\LolClient.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-07] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6339656 2013-04-10] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17097200 2013-12-21] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2013-12-21] (Lenovo(beijing) Limited)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [6613896 2016-06-24] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-19] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-09] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9071752 2016-07-31] (AVAST Software)
HKLM-x32\...\Run: [cmsc] => c:\program files (x86)\cmcm\Clean Master\cmtray.exe [771912 2015-10-13] (Kingsoft Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-07-20] (LogMeIn Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [1009632 2016-08-08] (DivX, LLC)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [Clownfish] => C:\Program Files (x86)\Clownfish\Clownfish.exe [1122040 2012-09-27] (Bogdan Sharkov)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2851408 2016-07-09] (Valve Corporation)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dragoone\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: F - "F:\Setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {059685f8-d0d5-11e5-bf28-342387e8f530} - "G:\.autorun\autorun.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {467a3da8-5f64-11e6-bfb5-201a068f5f38} - "G:\Lenovo_Suite.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {60e6a330-853e-11e5-bf0c-342387e8f530} - "F:\setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {7092eb7c-ddf2-11e5-bf2b-342387e8f530} - "H:\Setup.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-07-31] (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: [NameServer] 8.8.4.4,8.8.8.8
Tcpip\..\Interfaces\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{646e384f-1188-44d6-87ec-70a3947bbdba}: [DhcpNameServer] 7.254.254.254
Tcpip\..\Interfaces\{a2b52d72-a9c0-479a-b3bc-c471cec7edc2}: [NameServer] 8.8.4.4,8.8.8.8
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
SearchScopes: HKLM -> OldSearch URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {3C275238-044B-4AC1-BF65-F34B5F89EB6A} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {45B033C4-1758-45ED-BBFA-AA91C6FC254C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {5D8A0ADB-3813-4912-A723-3A73D1B8BA4B} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {68B4916B-8F3D-4F4B-A163-9DD346613167} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {917D5894-C4F1-4071-AC15-3C318D4C50B3} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {A1A2A3F4-7031-408B-8B41-D31673CAEC17} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=21171&r=2015/04/24&hid=6026983096723995405&lg=EN&cc=CZ&unqvl=86
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {CCC8123E-6881-45D1-A13B-A6B7BAC2761E} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {D059CD2F-0CAC-40C4-93FD-E1A579F1F946} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {F4778AF4-C351-45D2-B414-A58ACFA00CE5} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-12] (Adobe Systems Incorporated)
BHO-x32: Lucky Bright -> {d47f39c7-2f7f-43e5-ba53-faffe2da42af} -> C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll => No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
FireFox:
========
FF ProfilePath: C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default
FF DefaultSearchEngine: Default
FF DefaultSearchEngine,S: WebSearch
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF SearchEngineOrder.1,S: WebSearch
FF SelectedSearchEngine: Default
FF SelectedSearchEngine,S: WebSearch
FF Homepage: hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA18DB0VXfWFoKB8fHHlWI1JBI0sYRl1X
FF Keyword.URL: hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ9ZB19DE1YabQhdUlhcFVcSJRRZWAlCDAUVJA9bAg5BRwJFJB9aFQQTR0cFME0FB18EURNNfXVNAlIIY0dKJ1FM&q={searchTerms}
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1221171.dll [2015-10-19] (Adobe Systems, Inc.)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2016-08-08] (DivX, LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF user.js: detected! => C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\user.js [2015-12-13]
FF SearchPlugin: C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\searchplugins\seznam-avast.xml [2015-11-08]
FF Extension: (Seznam lištička) - C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2016-01-27]
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-08-26]
FF Extension: (Lucky Bright) - C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\Extensions\{33a34241-30c4-4e2d-8862-20f42b5dabc1}.xpi [2015-11-08] [not signed]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-07-31]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-07-31]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\prefs.js [2015-08-23] <==== ATTENTION (Points to *.cfg file)
Chrome:
=======
CHR RestoreOnStartup: Default -> "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA1oDB0VXfV5bFElXTwhvNVpTGHsDSFJLNA=="
CHR DefaultSearchURL: Default -> hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ9ZB19DE1YabQhdUlhcFVcSJRRZWAlCDAUVJA9bAg5BRwJFJB9aFQQTQkcFME0FBloEURNNfXVNAlIIY0dKJ1FM&q={searchTerms}
CHR DefaultSearchKeyword: Default -> searchinterneat-a.akamaihd.net
CHR DefaultNewTabURL: Default -> hxxp://searchinterneat-a.akamaihd.net/t?eq=U0EeFFhaR1oWHANCJl8KU1pIDARGc1gVVVtARBhCeQkLTAlHRQNAIw4IBw4XRRNBNARaAktXUUEeJ1pNER8fHHlWI1JBI0sYRl1X
CHR Profile: C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-15]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2016-01-31]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2016-02-10]
CHR Extension: (YouTube) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-15]
CHR Extension: (Vyhledávání Google) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-15]
CHR Extension: (AdBlock) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-08-25]
CHR Extension: (Ad_Block +Plus) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\nljichlipmkbibppkobpndecbchajpmp [2016-05-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2016-08-16]
CHR Extension: (Gmail) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-15]
CHR Extension: (Chrome Media Router) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-02]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [138752 2016-06-24] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197640 2016-07-31] (AVAST Software)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2015-03-27] (Broadcom Corporation.)
R2 cmcore; c:\program files (x86)\cmcm\Clean Master\cmcore.exe [315208 2015-10-13] (Kingsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-07] (ELAN Microelectronics Corp.)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2554376 2016-07-20] (LogMeIn Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-07-20] (LogMeIn, Inc.)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [163592 2016-08-22] (McAfee, Inc.)
S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3520872 2015-09-22] (INCA Internet Co., Ltd.)
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2013-11-22] (Razer Inc.)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [814064 2015-12-22] (Tunngle.net GmbH)
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2015-10-30] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-07-01] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [17504 2013-02-08] (Advanced Micro Devices, INC.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [37472 2013-02-14] (Advanced Micro Devices, Inc.)
S2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
S3 aswHdsKe; C:\WINDOWS\system32\drivers\aswHdsKe.sys [83312 2016-08-26] (AVAST Software)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-07-31] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-07-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-07-31] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-07-31] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-07-31] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [968536 2016-07-31] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-07-31] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-07-31] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-05] (AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-03-01] (Advanced Micro Devices)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [173312 2015-03-27] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7585280 2015-10-30] (Broadcom Corporation)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-11-08] (Disc Soft Ltd)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-11-12] (LogMeIn Inc.)
S3 ksapi64; C:\WINDOWS\system32\drivers\ksapi64.sys [56680 2015-10-13] (Kingsoft Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8243272 2013-04-10] (Realtek Semiconductor Corp.)
S3 tap0901t; C:\Windows\System32\drivers\tap0901t.sys [40568 2015-12-04] (Tunngle.net)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-03 18:09 - 2016-09-03 18:11 - 00027038 _____ C:\Users\Dragoone\Desktop\FRST.txt
2016-09-03 18:08 - 2016-09-03 18:08 - 00112640 _____ (forum.viry.cz) C:\Users\Dragoone\Downloads\Nepotvrzeno 914200.crdownload
2016-09-03 18:07 - 2016-09-03 18:09 - 00000000 ____D C:\FRST
2016-09-03 18:06 - 2016-09-03 18:07 - 02397696 _____ (Farbar) C:\Users\Dragoone\Desktop\FRST64.exe
2016-09-03 16:25 - 2016-09-03 16:41 - 00000000 ____D C:\AdwCleaner
2016-09-03 16:24 - 2016-09-03 16:25 - 03826240 _____ C:\Users\Dragoone\Downloads\adwcleaner_6.010.exe
2016-09-03 14:14 - 2016-09-03 14:15 - 00000000 ____D C:\rsit
2016-09-03 14:14 - 2016-09-03 14:15 - 00000000 ____D C:\Program Files\trend micro
2016-09-03 14:14 - 2016-09-03 14:14 - 01222144 _____ C:\Users\Dragoone\Downloads\RSITx64.exe
2016-09-02 18:44 - 2016-09-02 18:45 - 00000027 _____ C:\Users\Dragoone\Desktop\Nový textový dokument.txt
2016-08-30 10:54 - 2016-08-30 10:54 - 00002874 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-08-30 10:54 - 2016-08-30 10:54 - 00000874 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-08-30 10:54 - 2016-08-30 10:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-08-30 10:54 - 2016-08-30 10:54 - 00000000 ____D C:\Program Files\CCleaner
2016-08-30 10:53 - 2016-08-30 11:00 - 00000000 ____D C:\Program Files\Recuva
2016-08-30 10:53 - 2016-08-30 10:53 - 05473600 _____ (Piriform Ltd) C:\Users\Dragoone\Downloads\rcsetup153.exe
2016-08-30 10:53 - 2016-08-30 10:53 - 00001710 _____ C:\Users\Public\Desktop\Recuva.lnk
2016-08-30 10:53 - 2016-08-30 10:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2016-08-30 10:50 - 2016-08-30 10:50 - 01125921 _____ C:\Users\Dragoone\Downloads\dmde-3.0.6.648-win32-gui.zip
2016-08-30 10:50 - 2016-08-30 10:50 - 01125921 _____ C:\Users\Dragoone\Downloads\dmde-3.0.6.648-win32-gui (1).zip
2016-08-30 10:50 - 2016-08-30 10:50 - 00000000 ____D C:\Users\Dragoone\Desktop\lll
2016-08-30 10:28 - 2016-08-30 10:29 - 00000000 ____D C:\Users\Dragoone\Desktop\fotky mobil
2016-08-26 23:50 - 2016-08-26 23:50 - 00003352 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task
2016-08-26 23:45 - 2016-08-26 17:18 - 00083312 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2016-08-24 16:12 - 2016-08-24 16:12 - 00000000 ____D C:\Users\Dragoone\.MCTranscodingSDK
2016-08-24 16:06 - 2016-08-24 16:06 - 00958944 _____ C:\Users\Dragoone\Downloads\xvidcore-1.3.1.zip
2016-08-24 16:05 - 2016-08-24 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec Pack
2016-08-24 16:05 - 2016-08-24 16:05 - 00000000 ____D C:\Program Files (x86)\Codec Pack - All In 1
2016-08-24 16:05 - 2016-08-24 16:04 - 00737280 _____ (Indigo Rose Corporation) C:\WINDOWS\iun6002.exe
2016-08-24 16:04 - 2016-08-24 16:05 - 00034041 _____ C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2016-08-24 16:04 - 2016-08-24 16:04 - 10050902 _____ (hxxp://www.codecpack.com) C:\Users\Dragoone\Downloads\Codecs6030_allin1.exe
2016-08-24 15:58 - 2016-08-24 15:58 - 00003696 _____ C:\WINDOWS\System32\Tasks\DivXUpdate
2016-08-24 15:57 - 2016-08-24 20:47 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\DivX
2016-08-24 15:57 - 2016-08-24 15:57 - 00000000 ____D C:\Program Files\DivX
2016-08-24 15:55 - 2016-08-24 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
2016-08-24 15:53 - 2016-08-26 17:31 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-08-24 15:53 - 2016-08-24 15:59 - 00000000 ____D C:\ProgramData\DivX
2016-08-24 15:53 - 2016-08-24 15:59 - 00000000 ____D C:\Program Files (x86)\DivX
2016-08-24 15:53 - 2016-08-24 15:53 - 00000000 ____D C:\ProgramData\McAfee
2016-08-24 15:52 - 2016-08-24 15:52 - 02423752 _____ (DivX, LLC) C:\Users\Dragoone\Downloads\DivXInstaller.exe
2016-08-24 15:50 - 2016-08-24 15:50 - 32706160 _____ C:\Users\Dragoone\Downloads\Nepotvrzeno 359490.crdownload
2016-08-24 15:44 - 2016-08-24 15:44 - 05952680 _____ C:\Users\Dragoone\Downloads\Nepotvrzeno 280324.crdownload
2016-08-24 15:43 - 2016-08-24 15:43 - 05952680 _____ C:\Users\Dragoone\Downloads\Nepotvrzeno 526106.crdownload
2016-08-24 15:29 - 2016-08-24 15:29 - 51002034 _____ C:\Users\Dragoone\Downloads\playboy2003.zip
2016-08-19 21:26 - 2016-08-19 21:26 - 07093624 _____ (VS Revo Group ) C:\Users\Dragoone\Downloads\revosetup.exe
2016-08-19 20:56 - 2016-08-19 20:59 - 38084160 _____ (Hewlett-Packard Company ) C:\Users\Dragoone\Downloads\sp66089.exe
2016-08-19 20:39 - 2016-08-19 20:40 - 18954816 _____ (Hewlett-Packard ) C:\Users\Dragoone\Downloads\sp65599.exe
2016-08-19 20:10 - 2016-08-19 20:10 - 08079744 _____ C:\Users\Dragoone\Downloads\slimdrivers-setup.exe
2016-08-16 18:18 - 2016-08-16 18:18 - 00023686 _____ C:\Users\Dragoone\Downloads\[CzT]Mafia_CZ.torrent
2016-08-15 19:46 - 2016-08-15 19:46 - 00001152 _____ C:\Users\Dragoone\Desktop\Counter-Strike 1.6.lnk
2016-08-15 19:46 - 2016-08-15 19:46 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6
2016-08-15 19:44 - 2016-08-15 19:46 - 00000000 ____D C:\Program Files (x86)\Counter-Strike 1.6
2016-08-15 19:29 - 2016-08-15 19:29 - 00013454 _____ C:\Users\Dragoone\Downloads\[CzT]Par_parmenu_spolecenstvo_zluteho_tentononcu_2004_CZ_ (1) (1).torrent
2016-08-15 19:29 - 2016-08-15 19:29 - 00000000 ____D C:\Users\Dragoone\Downloads\Counter Strike 1.6
2016-08-15 19:29 - 2016-08-15 19:29 - 00000000 ____D C:\Users\Dragoone\AppData\LocalLow\BitTorrent
2016-08-15 19:27 - 2016-08-15 19:27 - 00019769 _____ C:\Users\Dragoone\Downloads\[CzT]Counter_Strike_1_6_bots_100_serveru_100_nej_map.torrent
2016-08-14 21:53 - 2016-08-14 21:54 - 00000000 ____D C:\Users\Dragoone\Downloads\Pár Pařmenů
2016-08-14 21:52 - 2016-08-14 21:52 - 00013454 _____ C:\Users\Dragoone\Downloads\[CzT]Par_parmenu_spolecenstvo_zluteho_tentononcu_2004_CZ_.torrent
2016-08-14 21:52 - 2016-08-14 21:52 - 00013454 _____ C:\Users\Dragoone\Downloads\[CzT]Par_parmenu_spolecenstvo_zluteho_tentononcu_2004_CZ_ (1).torrent
2016-08-13 17:11 - 2016-08-13 17:11 - 00000222 _____ C:\Users\Dragoone\Desktop\Don't Starve Together.url
2016-08-12 13:43 - 2016-08-12 13:43 - 00000000 ____D C:\Program Files (x86)\AMD
2016-08-12 01:07 - 2016-08-12 01:07 - 10317568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 09340136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 09131736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 08892696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 08738920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 07258160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 07115928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 01273928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00479368 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00164280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00159088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00154920 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00152800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00138176 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00137224 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00123120 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00123104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00105344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00105344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 38266368 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 32555512 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 26639360 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 21641216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 15729152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 14320128 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 08830456 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 08627704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 07076352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 06956032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 02376704 _____ C:\WINDOWS\system32\amdoclvp9lib64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 02286584 _____ C:\WINDOWS\SysWOW64\amdoclvp9lib32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 02147328 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 01837568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00991232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00991232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00883192 _____ (AMD) C:\WINDOWS\system32\coinst_16.30.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00751616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00627192 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00459776 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00402944 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00350208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00292352 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00287744 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00275968 _____ C:\WINDOWS\system32\GameManager64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00270336 _____ C:\WINDOWS\system32\clinfo.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00268792 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00249336 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00241152 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00234496 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00231424 _____ C:\WINDOWS\system32\atieah64.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00222208 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00209408 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00201728 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00181760 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00176640 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00159736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00137208 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00135168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00130560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00123896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00118784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00113664 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00111616 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00109568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00108544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00108544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00104448 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00083960 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmcl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00079864 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00069632 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00068608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00068096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00067584 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmcl32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00066560 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00060920 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00055800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00021496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2016-08-10 10:42 - 2016-08-03 13:14 - 01505984 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-08-10 10:42 - 2016-08-03 13:14 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-08-10 10:42 - 2016-08-03 13:14 - 00050368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-10 10:42 - 2016-08-03 12:36 - 07469408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-08-10 10:42 - 2016-08-03 12:36 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-08-10 10:42 - 2016-08-03 12:36 - 00037744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2016-08-10 10:42 - 2016-08-03 12:30 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-08-10 10:42 - 2016-08-03 12:23 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-08-10 10:42 - 2016-08-03 12:23 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-08-10 10:42 - 2016-08-03 12:22 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-08-10 10:42 - 2016-08-03 12:22 - 00465248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-08-10 10:42 - 2016-08-03 12:22 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-08-10 10:42 - 2016-08-03 12:21 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-08-10 10:42 - 2016-08-03 12:21 - 00566112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-10 10:42 - 2016-08-03 12:21 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-08-10 10:42 - 2016-08-03 12:20 - 01540224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-08-10 10:42 - 2016-08-03 12:20 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-08-10 10:42 - 2016-08-03 12:19 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-08-10 10:42 - 2016-08-03 12:19 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-08-10 10:42 - 2016-08-03 12:13 - 01988448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-08-10 10:42 - 2016-08-03 12:13 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-08-10 10:42 - 2016-08-03 12:13 - 00393056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-08-10 10:42 - 2016-08-03 11:51 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-08-10 10:42 - 2016-08-03 11:51 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-08-10 10:42 - 2016-08-03 11:46 - 22384128 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-08-10 10:42 - 2016-08-03 11:44 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-08-10 10:42 - 2016-08-03 11:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-08-10 10:42 - 2016-08-03 11:44 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2016-08-10 10:42 - 2016-08-03 11:43 - 16985088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-10 10:42 - 2016-08-03 11:41 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2016-08-10 10:42 - 2016-08-03 11:41 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-08-10 10:42 - 2016-08-03 11:41 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-08-10 10:42 - 2016-08-03 11:41 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-08-10 10:42 - 2016-08-03 11:40 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-08-10 10:42 - 2016-08-03 11:40 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-08-10 10:42 - 2016-08-03 11:40 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-08-10 10:42 - 2016-08-03 11:40 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 10:42 - 2016-08-03 11:39 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-08-10 10:42 - 2016-08-03 11:39 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-08-10 10:42 - 2016-08-03 11:38 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-08-10 10:42 - 2016-08-03 11:37 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-08-10 10:42 - 2016-08-03 11:36 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-08-10 10:42 - 2016-08-03 11:36 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-08-10 10:42 - 2016-08-03 11:35 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-08-10 10:42 - 2016-08-03 11:35 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-08-10 10:42 - 2016-08-03 11:33 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-08-10 10:42 - 2016-08-03 11:31 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-08-10 10:42 - 2016-08-03 11:31 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe
2016-08-10 10:42 - 2016-08-03 11:30 - 24613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-08-10 10:42 - 2016-08-03 11:30 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 11:29 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-08-10 10:42 - 2016-08-03 11:29 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-08-10 10:42 - 2016-08-03 11:29 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-08-10 10:42 - 2016-08-03 11:29 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-08-10 10:42 - 2016-08-03 11:29 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-08-10 10:42 - 2016-08-03 11:29 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-08-10 10:42 - 2016-08-03 11:29 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-08-10 10:42 - 2016-08-03 11:28 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-08-10 10:42 - 2016-08-03 11:28 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-08-10 10:42 - 2016-08-03 11:27 - 07536640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-08-10 10:42 - 2016-08-03 11:27 - 01717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 10:42 - 2016-08-03 11:27 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-08-10 10:42 - 2016-08-03 11:20 - 13390336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-08-10 10:42 - 2016-08-03 11:18 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 10:42 - 2016-08-03 11:18 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-08-10 10:42 - 2016-08-03 11:18 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-08-10 10:42 - 2016-08-03 11:17 - 02175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-08-10 10:42 - 2016-08-03 11:16 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-08-10 10:42 - 2016-08-03 11:16 - 03589120 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-08-10 10:42 - 2016-08-03 11:16 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-08-10 10:42 - 2016-08-03 11:16 - 01732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-08-10 10:42 - 2016-08-03 11:15 - 07833088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-08-10 10:42 - 2016-08-03 11:14 - 04895232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-08-10 10:42 - 2016-08-03 11:14 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 11:13 - 03025920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-08-10 10:42 - 2016-08-03 11:13 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-08-10 10:42 - 2016-08-03 11:12 - 02746368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-08-10 10:42 - 2016-08-03 11:11 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-08-10 10:42 - 2016-08-03 07:52 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2016-08-10 10:42 - 2016-08-03 07:34 - 00501592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-08-10 10:42 - 2016-08-03 07:34 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-08-10 10:42 - 2016-08-03 07:33 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-08-10 10:42 - 2016-08-03 07:31 - 02921368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-08-10 10:42 - 2016-08-03 07:31 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-08-10 10:42 - 2016-08-03 07:31 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-08-10 10:42 - 2016-08-03 07:30 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-08-10 10:42 - 2016-08-03 07:30 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-08-10 10:42 - 2016-08-03 07:30 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-08-10 10:42 - 2016-08-03 06:57 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe
2016-08-10 10:42 - 2016-08-03 06:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-08-10 10:42 - 2016-08-03 06:47 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-08-10 10:42 - 2016-08-03 06:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-08-10 10:42 - 2016-08-03 06:44 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2016-08-10 10:42 - 2016-08-03 06:42 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-08-10 10:42 - 2016-08-03 06:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-08-10 10:42 - 2016-08-03 06:39 - 19351040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-08-10 10:42 - 2016-08-03 06:37 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-08-10 10:42 - 2016-08-03 06:35 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtutil.exe
2016-08-10 10:42 - 2016-08-03 06:34 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-08-10 10:42 - 2016-08-03 06:34 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 06:33 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-08-10 10:42 - 2016-08-03 06:33 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-08-10 10:42 - 2016-08-03 06:33 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-08-10 10:42 - 2016-08-03 06:32 - 12585984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-08-10 10:42 - 2016-08-03 06:32 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-08-10 10:42 - 2016-08-03 06:32 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-08-10 10:42 - 2016-08-03 06:31 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-08-10 10:42 - 2016-08-03 06:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-08-10 10:42 - 2016-08-03 06:29 - 12133376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-08-10 10:42 - 2016-08-03 06:28 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-08-10 10:42 - 2016-08-03 06:25 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-08-10 10:42 - 2016-08-03 06:25 - 04078080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-08-10 10:42 - 2016-08-03 06:23 - 05660672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-08-10 10:42 - 2016-08-03 06:23 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-08-10 10:42 - 2016-08-03 06:22 - 02501120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-08-10 10:42 - 2016-08-03 06:22 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-08-10 10:42 - 2016-08-03 06:21 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 06:19 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-08-10 10:41 - 2016-08-03 12:22 - 01322760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-08-10 10:41 - 2016-08-03 12:22 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-08-10 10:41 - 2016-08-03 12:21 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-08-10 10:41 - 2016-08-03 12:11 - 00422744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-08-10 10:41 - 2016-08-03 11:40 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2016-08-10 10:41 - 2016-08-03 11:38 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-08-10 10:41 - 2016-08-03 11:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-08-10 10:41 - 2016-08-03 11:34 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 10:41 - 2016-08-03 11:33 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-08-10 10:41 - 2016-08-03 11:31 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-08-10 10:41 - 2016-08-03 11:30 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-08-10 10:41 - 2016-08-03 11:28 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-08-10 10:41 - 2016-08-03 11:27 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 10:41 - 2016-08-03 06:37 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-08-10 10:41 - 2016-08-03 06:35 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-08-10 10:41 - 2016-08-03 06:32 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-08-08 12:18 - 2016-08-08 12:19 - 00000000 ___HD C:\$WINDOWS.~BT
2016-08-08 10:42 - 2016-08-08 10:43 - 00000000 ____D C:\Users\Dragoone\AppData\Local\Apps\Windows 7 USB DVD Download Tool
2016-08-08 10:42 - 2016-08-08 10:42 - 00002663 _____ C:\Users\Dragoone\Desktop\Windows 7 USB DVD Download Tool.lnk
2016-08-08 10:42 - 2016-08-08 10:42 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
2016-08-08 10:41 - 2016-08-08 10:42 - 10219584 _____ C:\Users\Dragoone\Downloads\Windows7-USB-DVD-Download-Tool-Installer-en-US.exe
2016-08-08 10:30 - 2016-08-19 21:51 - 00000000 ____D C:\Users\Dragoone\Downloads\Windows 7 Home Premium
2016-08-08 10:28 - 2016-08-08 10:28 - 00015593 _____ C:\Users\Dragoone\Downloads\[CzT]Windows_7_Home_Premium_CZ_x64_.torrent
2016-08-07 22:13 - 2016-08-07 22:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Active@ ISO Burner
2016-08-07 22:13 - 2016-08-07 22:13 - 00000000 ____D C:\Program Files (x86)\LSoft Technologies
2016-08-07 22:10 - 2016-08-07 22:11 - 04097491 _____ C:\Users\Dragoone\Downloads\Iso-burner.zip
2016-08-07 22:03 - 2016-08-07 22:08 - 00000000 ____D C:\Users\Dragoone\Downloads\Microsoft Windows XP Professional SP3 CZ [ 8.2013 ]
2016-08-07 22:01 - 2016-08-07 22:01 - 00014510 _____ C:\Users\Dragoone\Downloads\[CzT]Microsoft_Windows_XP_Professional_SP3_CZ_8_2013_.torrent
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-03 17:26 - 2015-11-17 20:13 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-09-03 17:25 - 2015-12-14 14:59 - 00000984 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-09-03 16:51 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-09-03 16:51 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-09-03 16:49 - 2015-08-19 14:30 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Seznam.cz
2016-09-03 16:44 - 2016-03-19 23:01 - 00000000 ____D C:\Users\Dragoone\AppData\Local\LogMeIn Hamachi
2016-09-03 16:44 - 2015-12-14 14:59 - 00000980 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-09-03 16:43 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-09-03 16:43 - 2014-09-16 10:10 - 00000442 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2016-09-03 16:42 - 2015-12-13 16:27 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-09-03 16:42 - 2015-12-13 15:56 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-09-03 16:42 - 2015-10-30 08:28 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2016-09-03 16:41 - 2015-12-13 16:03 - 00000000 ____D C:\Users\Dragoone
2016-09-03 16:35 - 2015-01-03 16:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-02 18:47 - 2016-05-08 22:31 - 00000000 ____D C:\Users\Dragoone\Desktop\World of Warcraft 2.4.3 TBC
2016-09-01 12:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-09-01 12:43 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-08-31 23:59 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-08-30 10:43 - 2016-01-27 17:51 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\vlc
2016-08-29 22:18 - 2014-09-15 21:26 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Skype
2016-08-29 22:15 - 2016-02-28 19:40 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-08-26 23:50 - 2015-12-13 17:43 - 00002449 _____ C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-08-26 23:50 - 2014-09-27 14:38 - 00000000 __RDO C:\Users\Dragoone\OneDrive
2016-08-24 15:37 - 2014-09-16 11:20 - 00000000 ____D C:\Users\Dragoone\AppData\Local\ElevatedDiagnostics
2016-08-19 20:58 - 2015-12-13 16:25 - 01771468 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-19 20:58 - 2015-10-30 20:31 - 00751272 _____ C:\WINDOWS\system32\perfh005.dat
2016-08-19 20:58 - 2015-10-30 20:31 - 00150860 _____ C:\WINDOWS\system32\perfc005.dat
2016-08-18 20:52 - 2015-12-13 15:49 - 00000000 ___DC C:\WINDOWS\Panther
2016-08-16 12:43 - 2015-08-19 14:55 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\BitTorrent
2016-08-15 10:16 - 2013-12-21 12:50 - 00000000 ____D C:\ProgramData\AMD
2016-08-14 22:32 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-08-13 18:16 - 2015-10-13 21:03 - 00000000 ____D C:\Program Files (x86)\Steam
2016-08-13 17:11 - 2016-05-03 16:22 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-08-12 13:42 - 2015-12-13 15:55 - 00000000 ____D C:\Program Files\AMD
2016-08-12 13:37 - 2014-09-27 03:51 - 00000000 ____D C:\AMD
2016-08-12 01:07 - 2016-04-05 09:43 - 00138688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-08-12 01:07 - 2015-10-21 03:10 - 10995344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-08-12 01:07 - 2015-10-21 03:10 - 01547544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-08-12 01:07 - 2015-10-21 03:10 - 00183952 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-08-12 01:06 - 2016-04-05 09:38 - 00521728 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-08-12 01:06 - 2016-04-05 09:38 - 00287232 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-08-12 01:06 - 2015-12-16 21:07 - 48819200 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-08-12 01:06 - 2015-12-16 21:07 - 27489280 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-08-12 01:06 - 2015-12-16 21:07 - 01323008 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-08-12 01:06 - 2015-12-16 21:07 - 00202744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-08-12 01:06 - 2015-10-21 03:11 - 26706432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-08-12 01:06 - 2015-10-21 03:11 - 00518656 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-08-11 11:35 - 2014-09-16 09:47 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-08-11 03:34 - 2015-10-30 20:35 - 00000000 ____D C:\Program Files\Windows Journal
2016-08-11 03:34 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-08-10 11:39 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-08-10 11:38 - 2014-09-15 22:06 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-08-10 11:26 - 2014-09-15 22:06 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-08-08 11:30 - 2014-09-16 07:40 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\DAEMON Tools Lite
2016-08-07 22:13 - 2013-12-21 12:50 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-08-05 01:39 - 2015-10-13 21:16 - 00292704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys
==================== Files in the root of some directories =======
2015-05-15 14:44 - 2015-07-15 00:23 - 0000024 _____ () C:\Users\Dragoone\AppData\Roaming\appdataFr25.bin
2015-04-29 16:31 - 2015-05-12 23:08 - 0000020 _____ () C:\Users\Dragoone\AppData\Roaming\appdataFr3.bin
2016-05-08 20:40 - 2016-05-08 20:40 - 0007606 _____ () C:\Users\Dragoone\AppData\Local\Resmon.ResmonCfg
2015-12-13 15:56 - 2015-12-13 15:56 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\Dragoone\AppData\Local\Temp\iuxim2bo.dll
C:\Users\Dragoone\AppData\Local\Temp\libeay32.dll
C:\Users\Dragoone\AppData\Local\Temp\msvcr120.dll
C:\Users\Dragoone\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-08-30 11:42
==================== End of FRST.txt ============================
Ran by Dragoone666 (administrator) on DRAGOONE666 (03-09-2016 18:09:41)
Running from C:\Users\Dragoone\Desktop
Loaded Profiles: Dragoone666 (Available Profiles: Dragoone666)
Platform: Windows 10 Home Version 1511 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Kingsoft Corporation) C:\Program Files (x86)\cmcm\Clean Master\cmcore.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(AMD) C:\Program Files\AMD\amdkmpfd_un\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(AMD) C:\Program Files\AMD\amdkmpfd_un\atieclxx.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Kingsoft Corporation) C:\Program Files (x86)\cmcm\Clean Master\cmtray.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\system\rads_user_kernel.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.26\deploy\LoLLauncher.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.66\deploy\LoLPatcher.exe
() C:\Users\Dragoone\Desktop\Hry\LoLko\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.214\deploy\LolClient.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-07] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6339656 2013-04-10] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17097200 2013-12-21] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2013-12-21] (Lenovo(beijing) Limited)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [6613896 2016-06-24] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-19] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-09] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9071752 2016-07-31] (AVAST Software)
HKLM-x32\...\Run: [cmsc] => c:\program files (x86)\cmcm\Clean Master\cmtray.exe [771912 2015-10-13] (Kingsoft Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-07-20] (LogMeIn Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [1009632 2016-08-08] (DivX, LLC)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [Clownfish] => C:\Program Files (x86)\Clownfish\Clownfish.exe [1122040 2012-09-27] (Bogdan Sharkov)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2851408 2016-07-09] (Valve Corporation)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd)
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dragoone\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dragoone\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\RunOnce: [Uninstall C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Dragoone\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: F - "F:\Setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {059685f8-d0d5-11e5-bf28-342387e8f530} - "G:\.autorun\autorun.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {467a3da8-5f64-11e6-bfb5-201a068f5f38} - "G:\Lenovo_Suite.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {60e6a330-853e-11e5-bf0c-342387e8f530} - "F:\setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {7092eb7c-ddf2-11e5-bf2b-342387e8f530} - "H:\Setup.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-07-31] (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: [NameServer] 8.8.4.4,8.8.8.8
Tcpip\..\Interfaces\{4a76b207-e0ad-44fc-809e-8f8a4b745741}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{646e384f-1188-44d6-87ec-70a3947bbdba}: [DhcpNameServer] 7.254.254.254
Tcpip\..\Interfaces\{a2b52d72-a9c0-479a-b3bc-c471cec7edc2}: [NameServer] 8.8.4.4,8.8.8.8
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=12454
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
SearchScopes: HKLM -> OldSearch URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {3C275238-044B-4AC1-BF65-F34B5F89EB6A} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {45B033C4-1758-45ED-BBFA-AA91C6FC254C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {5D8A0ADB-3813-4912-A723-3A73D1B8BA4B} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {68B4916B-8F3D-4F4B-A163-9DD346613167} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {917D5894-C4F1-4071-AC15-3C318D4C50B3} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {A1A2A3F4-7031-408B-8B41-D31673CAEC17} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=21171&r=2015/04/24&hid=6026983096723995405&lg=EN&cc=CZ&unqvl=86
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {CCC8123E-6881-45D1-A13B-A6B7BAC2761E} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {D059CD2F-0CAC-40C4-93FD-E1A579F1F946} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {F4778AF4-C351-45D2-B414-A58ACFA00CE5} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-12] (Adobe Systems Incorporated)
BHO-x32: Lucky Bright -> {d47f39c7-2f7f-43e5-ba53-faffe2da42af} -> C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll => No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-08-22] (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
FireFox:
========
FF ProfilePath: C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default
FF DefaultSearchEngine: Default
FF DefaultSearchEngine,S: WebSearch
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF SearchEngineOrder.1,S: WebSearch
FF SelectedSearchEngine: Default
FF SelectedSearchEngine,S: WebSearch
FF Homepage: hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA18DB0VXfWFoKB8fHHlWI1JBI0sYRl1X
FF Keyword.URL: hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ9ZB19DE1YabQhdUlhcFVcSJRRZWAlCDAUVJA9bAg5BRwJFJB9aFQQTR0cFME0FB18EURNNfXVNAlIIY0dKJ1FM&q={searchTerms}
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1221171.dll [2015-10-19] (Adobe Systems, Inc.)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2016-08-08] (DivX, LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-31] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF user.js: detected! => C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\user.js [2015-12-13]
FF SearchPlugin: C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\searchplugins\seznam-avast.xml [2015-11-08]
FF Extension: (Seznam lištička) - C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2016-01-27]
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-08-26]
FF Extension: (Lucky Bright) - C:\Users\Dragoone\AppData\Roaming\Mozilla\Firefox\Profiles\sgkmy15z.default\Extensions\{33a34241-30c4-4e2d-8862-20f42b5dabc1}.xpi [2015-11-08] [not signed]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-07-31]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-07-31]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\prefs.js [2015-08-23] <==== ATTENTION (Points to *.cfg file)
Chrome:
=======
CHR RestoreOnStartup: Default -> "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA1oDB0VXfV5bFElXTwhvNVpTGHsDSFJLNA=="
CHR DefaultSearchURL: Default -> hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ9ZB19DE1YabQhdUlhcFVcSJRRZWAlCDAUVJA9bAg5BRwJFJB9aFQQTQkcFME0FBloEURNNfXVNAlIIY0dKJ1FM&q={searchTerms}
CHR DefaultSearchKeyword: Default -> searchinterneat-a.akamaihd.net
CHR DefaultNewTabURL: Default -> hxxp://searchinterneat-a.akamaihd.net/t?eq=U0EeFFhaR1oWHANCJl8KU1pIDARGc1gVVVtARBhCeQkLTAlHRQNAIw4IBw4XRRNBNARaAktXUUEeJ1pNER8fHHlWI1JBI0sYRl1X
CHR Profile: C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-15]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2016-01-31]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2016-02-10]
CHR Extension: (YouTube) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-15]
CHR Extension: (Vyhledávání Google) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-15]
CHR Extension: (AdBlock) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-08-25]
CHR Extension: (Ad_Block +Plus) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\nljichlipmkbibppkobpndecbchajpmp [2016-05-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2016-08-16]
CHR Extension: (Gmail) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-15]
CHR Extension: (Chrome Media Router) - C:\Users\Dragoone\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-02]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [138752 2016-06-24] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197640 2016-07-31] (AVAST Software)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2015-03-27] (Broadcom Corporation.)
R2 cmcore; c:\program files (x86)\cmcm\Clean Master\cmcore.exe [315208 2015-10-13] (Kingsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-07] (ELAN Microelectronics Corp.)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2554376 2016-07-20] (LogMeIn Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-07-20] (LogMeIn, Inc.)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [163592 2016-08-22] (McAfee, Inc.)
S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3520872 2015-09-22] (INCA Internet Co., Ltd.)
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2013-11-22] (Razer Inc.)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [814064 2015-12-22] (Tunngle.net GmbH)
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2015-10-30] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-07-01] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [17504 2013-02-08] (Advanced Micro Devices, INC.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [37472 2013-02-14] (Advanced Micro Devices, Inc.)
S2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
S3 aswHdsKe; C:\WINDOWS\system32\drivers\aswHdsKe.sys [83312 2016-08-26] (AVAST Software)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-07-31] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-07-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-07-31] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-07-31] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-07-31] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [968536 2016-07-31] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-07-31] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-07-31] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-05] (AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-03-01] (Advanced Micro Devices)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [173312 2015-03-27] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7585280 2015-10-30] (Broadcom Corporation)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-11-08] (Disc Soft Ltd)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-11-12] (LogMeIn Inc.)
S3 ksapi64; C:\WINDOWS\system32\drivers\ksapi64.sys [56680 2015-10-13] (Kingsoft Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8243272 2013-04-10] (Realtek Semiconductor Corp.)
S3 tap0901t; C:\Windows\System32\drivers\tap0901t.sys [40568 2015-12-04] (Tunngle.net)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-03 18:09 - 2016-09-03 18:11 - 00027038 _____ C:\Users\Dragoone\Desktop\FRST.txt
2016-09-03 18:08 - 2016-09-03 18:08 - 00112640 _____ (forum.viry.cz) C:\Users\Dragoone\Downloads\Nepotvrzeno 914200.crdownload
2016-09-03 18:07 - 2016-09-03 18:09 - 00000000 ____D C:\FRST
2016-09-03 18:06 - 2016-09-03 18:07 - 02397696 _____ (Farbar) C:\Users\Dragoone\Desktop\FRST64.exe
2016-09-03 16:25 - 2016-09-03 16:41 - 00000000 ____D C:\AdwCleaner
2016-09-03 16:24 - 2016-09-03 16:25 - 03826240 _____ C:\Users\Dragoone\Downloads\adwcleaner_6.010.exe
2016-09-03 14:14 - 2016-09-03 14:15 - 00000000 ____D C:\rsit
2016-09-03 14:14 - 2016-09-03 14:15 - 00000000 ____D C:\Program Files\trend micro
2016-09-03 14:14 - 2016-09-03 14:14 - 01222144 _____ C:\Users\Dragoone\Downloads\RSITx64.exe
2016-09-02 18:44 - 2016-09-02 18:45 - 00000027 _____ C:\Users\Dragoone\Desktop\Nový textový dokument.txt
2016-08-30 10:54 - 2016-08-30 10:54 - 00002874 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-08-30 10:54 - 2016-08-30 10:54 - 00000874 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-08-30 10:54 - 2016-08-30 10:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-08-30 10:54 - 2016-08-30 10:54 - 00000000 ____D C:\Program Files\CCleaner
2016-08-30 10:53 - 2016-08-30 11:00 - 00000000 ____D C:\Program Files\Recuva
2016-08-30 10:53 - 2016-08-30 10:53 - 05473600 _____ (Piriform Ltd) C:\Users\Dragoone\Downloads\rcsetup153.exe
2016-08-30 10:53 - 2016-08-30 10:53 - 00001710 _____ C:\Users\Public\Desktop\Recuva.lnk
2016-08-30 10:53 - 2016-08-30 10:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2016-08-30 10:50 - 2016-08-30 10:50 - 01125921 _____ C:\Users\Dragoone\Downloads\dmde-3.0.6.648-win32-gui.zip
2016-08-30 10:50 - 2016-08-30 10:50 - 01125921 _____ C:\Users\Dragoone\Downloads\dmde-3.0.6.648-win32-gui (1).zip
2016-08-30 10:50 - 2016-08-30 10:50 - 00000000 ____D C:\Users\Dragoone\Desktop\lll
2016-08-30 10:28 - 2016-08-30 10:29 - 00000000 ____D C:\Users\Dragoone\Desktop\fotky mobil
2016-08-26 23:50 - 2016-08-26 23:50 - 00003352 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task
2016-08-26 23:45 - 2016-08-26 17:18 - 00083312 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2016-08-24 16:12 - 2016-08-24 16:12 - 00000000 ____D C:\Users\Dragoone\.MCTranscodingSDK
2016-08-24 16:06 - 2016-08-24 16:06 - 00958944 _____ C:\Users\Dragoone\Downloads\xvidcore-1.3.1.zip
2016-08-24 16:05 - 2016-08-24 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec Pack
2016-08-24 16:05 - 2016-08-24 16:05 - 00000000 ____D C:\Program Files (x86)\Codec Pack - All In 1
2016-08-24 16:05 - 2016-08-24 16:04 - 00737280 _____ (Indigo Rose Corporation) C:\WINDOWS\iun6002.exe
2016-08-24 16:04 - 2016-08-24 16:05 - 00034041 _____ C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2016-08-24 16:04 - 2016-08-24 16:04 - 10050902 _____ (hxxp://www.codecpack.com) C:\Users\Dragoone\Downloads\Codecs6030_allin1.exe
2016-08-24 15:58 - 2016-08-24 15:58 - 00003696 _____ C:\WINDOWS\System32\Tasks\DivXUpdate
2016-08-24 15:57 - 2016-08-24 20:47 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\DivX
2016-08-24 15:57 - 2016-08-24 15:57 - 00000000 ____D C:\Program Files\DivX
2016-08-24 15:55 - 2016-08-24 15:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
2016-08-24 15:53 - 2016-08-26 17:31 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-08-24 15:53 - 2016-08-24 15:59 - 00000000 ____D C:\ProgramData\DivX
2016-08-24 15:53 - 2016-08-24 15:59 - 00000000 ____D C:\Program Files (x86)\DivX
2016-08-24 15:53 - 2016-08-24 15:53 - 00000000 ____D C:\ProgramData\McAfee
2016-08-24 15:52 - 2016-08-24 15:52 - 02423752 _____ (DivX, LLC) C:\Users\Dragoone\Downloads\DivXInstaller.exe
2016-08-24 15:50 - 2016-08-24 15:50 - 32706160 _____ C:\Users\Dragoone\Downloads\Nepotvrzeno 359490.crdownload
2016-08-24 15:44 - 2016-08-24 15:44 - 05952680 _____ C:\Users\Dragoone\Downloads\Nepotvrzeno 280324.crdownload
2016-08-24 15:43 - 2016-08-24 15:43 - 05952680 _____ C:\Users\Dragoone\Downloads\Nepotvrzeno 526106.crdownload
2016-08-24 15:29 - 2016-08-24 15:29 - 51002034 _____ C:\Users\Dragoone\Downloads\playboy2003.zip
2016-08-19 21:26 - 2016-08-19 21:26 - 07093624 _____ (VS Revo Group ) C:\Users\Dragoone\Downloads\revosetup.exe
2016-08-19 20:56 - 2016-08-19 20:59 - 38084160 _____ (Hewlett-Packard Company ) C:\Users\Dragoone\Downloads\sp66089.exe
2016-08-19 20:39 - 2016-08-19 20:40 - 18954816 _____ (Hewlett-Packard ) C:\Users\Dragoone\Downloads\sp65599.exe
2016-08-19 20:10 - 2016-08-19 20:10 - 08079744 _____ C:\Users\Dragoone\Downloads\slimdrivers-setup.exe
2016-08-16 18:18 - 2016-08-16 18:18 - 00023686 _____ C:\Users\Dragoone\Downloads\[CzT]Mafia_CZ.torrent
2016-08-15 19:46 - 2016-08-15 19:46 - 00001152 _____ C:\Users\Dragoone\Desktop\Counter-Strike 1.6.lnk
2016-08-15 19:46 - 2016-08-15 19:46 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6
2016-08-15 19:44 - 2016-08-15 19:46 - 00000000 ____D C:\Program Files (x86)\Counter-Strike 1.6
2016-08-15 19:29 - 2016-08-15 19:29 - 00013454 _____ C:\Users\Dragoone\Downloads\[CzT]Par_parmenu_spolecenstvo_zluteho_tentononcu_2004_CZ_ (1) (1).torrent
2016-08-15 19:29 - 2016-08-15 19:29 - 00000000 ____D C:\Users\Dragoone\Downloads\Counter Strike 1.6
2016-08-15 19:29 - 2016-08-15 19:29 - 00000000 ____D C:\Users\Dragoone\AppData\LocalLow\BitTorrent
2016-08-15 19:27 - 2016-08-15 19:27 - 00019769 _____ C:\Users\Dragoone\Downloads\[CzT]Counter_Strike_1_6_bots_100_serveru_100_nej_map.torrent
2016-08-14 21:53 - 2016-08-14 21:54 - 00000000 ____D C:\Users\Dragoone\Downloads\Pár Pařmenů
2016-08-14 21:52 - 2016-08-14 21:52 - 00013454 _____ C:\Users\Dragoone\Downloads\[CzT]Par_parmenu_spolecenstvo_zluteho_tentononcu_2004_CZ_.torrent
2016-08-14 21:52 - 2016-08-14 21:52 - 00013454 _____ C:\Users\Dragoone\Downloads\[CzT]Par_parmenu_spolecenstvo_zluteho_tentononcu_2004_CZ_ (1).torrent
2016-08-13 17:11 - 2016-08-13 17:11 - 00000222 _____ C:\Users\Dragoone\Desktop\Don't Starve Together.url
2016-08-12 13:43 - 2016-08-12 13:43 - 00000000 ____D C:\Program Files (x86)\AMD
2016-08-12 01:07 - 2016-08-12 01:07 - 10317568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 09340136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 09131736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 08892696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 08738920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 07258160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 07115928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 01273928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00479368 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00164280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00159088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00154920 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00152800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00138176 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00137224 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00123120 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00123104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00105344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-08-12 01:07 - 2016-08-12 01:07 - 00105344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 38266368 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 32555512 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 26639360 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 21641216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 15729152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 14320128 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 08830456 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 08627704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 07076352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 06956032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 02376704 _____ C:\WINDOWS\system32\amdoclvp9lib64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 02286584 _____ C:\WINDOWS\SysWOW64\amdoclvp9lib32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 02147328 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 01837568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00991232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00991232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00883192 _____ (AMD) C:\WINDOWS\system32\coinst_16.30.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00751616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00627192 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00459776 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00402944 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00350208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00292352 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00287744 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00275968 _____ C:\WINDOWS\system32\GameManager64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00270336 _____ C:\WINDOWS\system32\clinfo.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00268792 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00249336 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00241152 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00234496 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00231424 _____ C:\WINDOWS\system32\atieah64.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00222208 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00209408 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00201728 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00181760 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00176640 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00159736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00137208 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00135168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00130560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00123896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00118784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00113664 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00111616 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00109568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00108544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00108544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00104448 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00083960 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmcl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00079864 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00073216 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00069632 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00068608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2016-08-12 01:06 - 2016-08-12 01:06 - 00068096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00067584 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmcl32.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00066560 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00060920 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00055800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-08-12 01:06 - 2016-08-12 01:06 - 00021496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2016-08-10 10:42 - 2016-08-03 13:14 - 01505984 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-08-10 10:42 - 2016-08-03 13:14 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-08-10 10:42 - 2016-08-03 13:14 - 00050368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-08-10 10:42 - 2016-08-03 12:36 - 07469408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-08-10 10:42 - 2016-08-03 12:36 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-08-10 10:42 - 2016-08-03 12:36 - 00037744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2016-08-10 10:42 - 2016-08-03 12:30 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-08-10 10:42 - 2016-08-03 12:23 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-08-10 10:42 - 2016-08-03 12:23 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-08-10 10:42 - 2016-08-03 12:22 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-08-10 10:42 - 2016-08-03 12:22 - 00465248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-08-10 10:42 - 2016-08-03 12:22 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-08-10 10:42 - 2016-08-03 12:21 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-08-10 10:42 - 2016-08-03 12:21 - 00566112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-08-10 10:42 - 2016-08-03 12:21 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-08-10 10:42 - 2016-08-03 12:20 - 01540224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-08-10 10:42 - 2016-08-03 12:20 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-08-10 10:42 - 2016-08-03 12:19 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-08-10 10:42 - 2016-08-03 12:19 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-08-10 10:42 - 2016-08-03 12:13 - 01988448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-08-10 10:42 - 2016-08-03 12:13 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-08-10 10:42 - 2016-08-03 12:13 - 00393056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-08-10 10:42 - 2016-08-03 11:51 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-08-10 10:42 - 2016-08-03 11:51 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-08-10 10:42 - 2016-08-03 11:46 - 22384128 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-08-10 10:42 - 2016-08-03 11:44 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-08-10 10:42 - 2016-08-03 11:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-08-10 10:42 - 2016-08-03 11:44 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2016-08-10 10:42 - 2016-08-03 11:43 - 16985088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-10 10:42 - 2016-08-03 11:41 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2016-08-10 10:42 - 2016-08-03 11:41 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-08-10 10:42 - 2016-08-03 11:41 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-08-10 10:42 - 2016-08-03 11:41 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-08-10 10:42 - 2016-08-03 11:40 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-08-10 10:42 - 2016-08-03 11:40 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-08-10 10:42 - 2016-08-03 11:40 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-08-10 10:42 - 2016-08-03 11:40 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 10:42 - 2016-08-03 11:39 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-08-10 10:42 - 2016-08-03 11:39 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-08-10 10:42 - 2016-08-03 11:38 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-08-10 10:42 - 2016-08-03 11:37 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-08-10 10:42 - 2016-08-03 11:36 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-08-10 10:42 - 2016-08-03 11:36 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-08-10 10:42 - 2016-08-03 11:35 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-08-10 10:42 - 2016-08-03 11:35 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-08-10 10:42 - 2016-08-03 11:33 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-08-10 10:42 - 2016-08-03 11:31 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-08-10 10:42 - 2016-08-03 11:31 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe
2016-08-10 10:42 - 2016-08-03 11:30 - 24613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-08-10 10:42 - 2016-08-03 11:30 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 11:29 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-08-10 10:42 - 2016-08-03 11:29 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-08-10 10:42 - 2016-08-03 11:29 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-08-10 10:42 - 2016-08-03 11:29 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-08-10 10:42 - 2016-08-03 11:29 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-08-10 10:42 - 2016-08-03 11:29 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-08-10 10:42 - 2016-08-03 11:29 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-08-10 10:42 - 2016-08-03 11:28 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-08-10 10:42 - 2016-08-03 11:28 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-08-10 10:42 - 2016-08-03 11:27 - 07536640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-08-10 10:42 - 2016-08-03 11:27 - 01717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 10:42 - 2016-08-03 11:27 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-08-10 10:42 - 2016-08-03 11:20 - 13390336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-08-10 10:42 - 2016-08-03 11:18 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 10:42 - 2016-08-03 11:18 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-08-10 10:42 - 2016-08-03 11:18 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-08-10 10:42 - 2016-08-03 11:17 - 02175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-08-10 10:42 - 2016-08-03 11:16 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-08-10 10:42 - 2016-08-03 11:16 - 03589120 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-08-10 10:42 - 2016-08-03 11:16 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-08-10 10:42 - 2016-08-03 11:16 - 01732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-08-10 10:42 - 2016-08-03 11:15 - 07833088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-08-10 10:42 - 2016-08-03 11:14 - 04895232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-08-10 10:42 - 2016-08-03 11:14 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 11:13 - 03025920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-08-10 10:42 - 2016-08-03 11:13 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-08-10 10:42 - 2016-08-03 11:12 - 02746368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-08-10 10:42 - 2016-08-03 11:11 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-08-10 10:42 - 2016-08-03 07:52 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2016-08-10 10:42 - 2016-08-03 07:34 - 00501592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-08-10 10:42 - 2016-08-03 07:34 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-08-10 10:42 - 2016-08-03 07:33 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-08-10 10:42 - 2016-08-03 07:31 - 02921368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-08-10 10:42 - 2016-08-03 07:31 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-08-10 10:42 - 2016-08-03 07:31 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-08-10 10:42 - 2016-08-03 07:30 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-08-10 10:42 - 2016-08-03 07:30 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-08-10 10:42 - 2016-08-03 07:30 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-08-10 10:42 - 2016-08-03 06:57 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe
2016-08-10 10:42 - 2016-08-03 06:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-08-10 10:42 - 2016-08-03 06:47 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-08-10 10:42 - 2016-08-03 06:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-08-10 10:42 - 2016-08-03 06:44 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2016-08-10 10:42 - 2016-08-03 06:42 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-08-10 10:42 - 2016-08-03 06:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-08-10 10:42 - 2016-08-03 06:39 - 19351040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-08-10 10:42 - 2016-08-03 06:37 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-08-10 10:42 - 2016-08-03 06:35 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtutil.exe
2016-08-10 10:42 - 2016-08-03 06:34 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-08-10 10:42 - 2016-08-03 06:34 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 06:33 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-08-10 10:42 - 2016-08-03 06:33 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-08-10 10:42 - 2016-08-03 06:33 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-08-10 10:42 - 2016-08-03 06:32 - 12585984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-08-10 10:42 - 2016-08-03 06:32 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-08-10 10:42 - 2016-08-03 06:32 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-08-10 10:42 - 2016-08-03 06:31 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-08-10 10:42 - 2016-08-03 06:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-08-10 10:42 - 2016-08-03 06:29 - 12133376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-08-10 10:42 - 2016-08-03 06:28 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-08-10 10:42 - 2016-08-03 06:25 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-08-10 10:42 - 2016-08-03 06:25 - 04078080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-08-10 10:42 - 2016-08-03 06:23 - 05660672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-08-10 10:42 - 2016-08-03 06:23 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-08-10 10:42 - 2016-08-03 06:22 - 02501120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-08-10 10:42 - 2016-08-03 06:22 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-08-10 10:42 - 2016-08-03 06:21 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-08-10 10:42 - 2016-08-03 06:19 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-08-10 10:41 - 2016-08-03 12:22 - 01322760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-08-10 10:41 - 2016-08-03 12:22 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-08-10 10:41 - 2016-08-03 12:21 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-08-10 10:41 - 2016-08-03 12:11 - 00422744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-08-10 10:41 - 2016-08-03 11:40 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2016-08-10 10:41 - 2016-08-03 11:38 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-08-10 10:41 - 2016-08-03 11:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-08-10 10:41 - 2016-08-03 11:34 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 10:41 - 2016-08-03 11:33 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-08-10 10:41 - 2016-08-03 11:31 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-08-10 10:41 - 2016-08-03 11:30 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-08-10 10:41 - 2016-08-03 11:28 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-08-10 10:41 - 2016-08-03 11:27 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 10:41 - 2016-08-03 06:37 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-08-10 10:41 - 2016-08-03 06:35 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-08-10 10:41 - 2016-08-03 06:32 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-08-08 12:18 - 2016-08-08 12:19 - 00000000 ___HD C:\$WINDOWS.~BT
2016-08-08 10:42 - 2016-08-08 10:43 - 00000000 ____D C:\Users\Dragoone\AppData\Local\Apps\Windows 7 USB DVD Download Tool
2016-08-08 10:42 - 2016-08-08 10:42 - 00002663 _____ C:\Users\Dragoone\Desktop\Windows 7 USB DVD Download Tool.lnk
2016-08-08 10:42 - 2016-08-08 10:42 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
2016-08-08 10:41 - 2016-08-08 10:42 - 10219584 _____ C:\Users\Dragoone\Downloads\Windows7-USB-DVD-Download-Tool-Installer-en-US.exe
2016-08-08 10:30 - 2016-08-19 21:51 - 00000000 ____D C:\Users\Dragoone\Downloads\Windows 7 Home Premium
2016-08-08 10:28 - 2016-08-08 10:28 - 00015593 _____ C:\Users\Dragoone\Downloads\[CzT]Windows_7_Home_Premium_CZ_x64_.torrent
2016-08-07 22:13 - 2016-08-07 22:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Active@ ISO Burner
2016-08-07 22:13 - 2016-08-07 22:13 - 00000000 ____D C:\Program Files (x86)\LSoft Technologies
2016-08-07 22:10 - 2016-08-07 22:11 - 04097491 _____ C:\Users\Dragoone\Downloads\Iso-burner.zip
2016-08-07 22:03 - 2016-08-07 22:08 - 00000000 ____D C:\Users\Dragoone\Downloads\Microsoft Windows XP Professional SP3 CZ [ 8.2013 ]
2016-08-07 22:01 - 2016-08-07 22:01 - 00014510 _____ C:\Users\Dragoone\Downloads\[CzT]Microsoft_Windows_XP_Professional_SP3_CZ_8_2013_.torrent
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-09-03 17:26 - 2015-11-17 20:13 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-09-03 17:25 - 2015-12-14 14:59 - 00000984 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-09-03 16:51 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-09-03 16:51 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-09-03 16:49 - 2015-08-19 14:30 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Seznam.cz
2016-09-03 16:44 - 2016-03-19 23:01 - 00000000 ____D C:\Users\Dragoone\AppData\Local\LogMeIn Hamachi
2016-09-03 16:44 - 2015-12-14 14:59 - 00000980 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-09-03 16:43 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-09-03 16:43 - 2014-09-16 10:10 - 00000442 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2016-09-03 16:42 - 2015-12-13 16:27 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-09-03 16:42 - 2015-12-13 15:56 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-09-03 16:42 - 2015-10-30 08:28 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2016-09-03 16:41 - 2015-12-13 16:03 - 00000000 ____D C:\Users\Dragoone
2016-09-03 16:35 - 2015-01-03 16:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-02 18:47 - 2016-05-08 22:31 - 00000000 ____D C:\Users\Dragoone\Desktop\World of Warcraft 2.4.3 TBC
2016-09-01 12:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-09-01 12:43 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-08-31 23:59 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-08-30 10:43 - 2016-01-27 17:51 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\vlc
2016-08-29 22:18 - 2014-09-15 21:26 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Skype
2016-08-29 22:15 - 2016-02-28 19:40 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-08-26 23:50 - 2015-12-13 17:43 - 00002449 _____ C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-08-26 23:50 - 2014-09-27 14:38 - 00000000 __RDO C:\Users\Dragoone\OneDrive
2016-08-24 15:37 - 2014-09-16 11:20 - 00000000 ____D C:\Users\Dragoone\AppData\Local\ElevatedDiagnostics
2016-08-19 20:58 - 2015-12-13 16:25 - 01771468 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-19 20:58 - 2015-10-30 20:31 - 00751272 _____ C:\WINDOWS\system32\perfh005.dat
2016-08-19 20:58 - 2015-10-30 20:31 - 00150860 _____ C:\WINDOWS\system32\perfc005.dat
2016-08-18 20:52 - 2015-12-13 15:49 - 00000000 ___DC C:\WINDOWS\Panther
2016-08-16 12:43 - 2015-08-19 14:55 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\BitTorrent
2016-08-15 10:16 - 2013-12-21 12:50 - 00000000 ____D C:\ProgramData\AMD
2016-08-14 22:32 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-08-13 18:16 - 2015-10-13 21:03 - 00000000 ____D C:\Program Files (x86)\Steam
2016-08-13 17:11 - 2016-05-03 16:22 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-08-12 13:42 - 2015-12-13 15:55 - 00000000 ____D C:\Program Files\AMD
2016-08-12 13:37 - 2014-09-27 03:51 - 00000000 ____D C:\AMD
2016-08-12 01:07 - 2016-04-05 09:43 - 00138688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-08-12 01:07 - 2015-10-21 03:10 - 10995344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-08-12 01:07 - 2015-10-21 03:10 - 01547544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-08-12 01:07 - 2015-10-21 03:10 - 00183952 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-08-12 01:06 - 2016-04-05 09:38 - 00521728 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-08-12 01:06 - 2016-04-05 09:38 - 00287232 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-08-12 01:06 - 2015-12-16 21:07 - 48819200 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-08-12 01:06 - 2015-12-16 21:07 - 27489280 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-08-12 01:06 - 2015-12-16 21:07 - 01323008 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-08-12 01:06 - 2015-12-16 21:07 - 00202744 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-08-12 01:06 - 2015-10-21 03:11 - 26706432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-08-12 01:06 - 2015-10-21 03:11 - 00518656 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-08-11 11:35 - 2014-09-16 09:47 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-08-11 03:34 - 2015-10-30 20:35 - 00000000 ____D C:\Program Files\Windows Journal
2016-08-11 03:34 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-08-10 11:39 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-08-10 11:38 - 2014-09-15 22:06 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-08-10 11:26 - 2014-09-15 22:06 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-08-08 11:30 - 2014-09-16 07:40 - 00000000 ____D C:\Users\Dragoone\AppData\Roaming\DAEMON Tools Lite
2016-08-07 22:13 - 2013-12-21 12:50 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-08-05 01:39 - 2015-10-13 21:16 - 00292704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys
==================== Files in the root of some directories =======
2015-05-15 14:44 - 2015-07-15 00:23 - 0000024 _____ () C:\Users\Dragoone\AppData\Roaming\appdataFr25.bin
2015-04-29 16:31 - 2015-05-12 23:08 - 0000020 _____ () C:\Users\Dragoone\AppData\Roaming\appdataFr3.bin
2016-05-08 20:40 - 2016-05-08 20:40 - 0007606 _____ () C:\Users\Dragoone\AppData\Local\Resmon.ResmonCfg
2015-12-13 15:56 - 2015-12-13 15:56 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\Dragoone\AppData\Local\Temp\iuxim2bo.dll
C:\Users\Dragoone\AppData\Local\Temp\libeay32.dll
C:\Users\Dragoone\AppData\Local\Temp\msvcr120.dll
C:\Users\Dragoone\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-08-30 11:42
==================== End of FRST.txt ============================
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zamrzání pc, problikávání monitoru
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: F - "F:\Setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {059685f8-d0d5-11e5-bf28-342387e8f530} - "G:\.autorun\autorun.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {467a3da8-5f64-11e6-bfb5-201a068f5f38} - "G:\Lenovo_Suite.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {60e6a330-853e-11e5-bf0c-342387e8f530} - "F:\setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {7092eb7c-ddf2-11e5-bf2b-342387e8f530} - "H:\Setup.exe"
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> OldSearch URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=21171&r=2015/04/24&hid=6026983096723995405&lg=EN&cc=CZ&unqvl=86
BHO-x32: Lucky Bright -> {d47f39c7-2f7f-43e5-ba53-faffe2da42af} -> C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll => No File
FF DefaultSearchEngine,S: WebSearch
FF SearchEngineOrder.1,S: WebSearch
FF SelectedSearchEngine,S: WebSearch
FF Homepage: hxxp://searchinterneat-a.akamaihd.net/h ... JBI0sYRl1X
FF Keyword.URL: hxxp://searchinterneat-a.akamaihd.net/s ... 0dKJ1FM&q={searchTerms}
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\prefs.js [2015-08-23] <==== ATTENTION (Points to *.cfg file)
CHR RestoreOnStartup: Default -> "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA1oDB0VXfV5bFElXTwhvNVpTGHsDSFJLNA=="
CHR DefaultSearchURL: Default -> hxxp://searchinterneat-a.akamaihd.net/s ... 0dKJ1FM&q={searchTerms}
CHR DefaultSearchKeyword: Default -> searchinterneat-a.akamaihd.net
CHR DefaultNewTabURL: Default -> hxxp://searchinterneat-a.akamaihd.net/t ... JBI0sYRl1X
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\ProgramData\DP45977C.lfl
C:\Users\Dragoone\AppData\Local\Temp
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zamrzání pc, problikávání monitoru
Fix si vyžádal restart systému. Problikávání monitoru při log in obrazovce stále přetrvává.
Fix result of Farbar Recovery Scan Tool (x64) Version: 31-08-2016
Ran by Dragoone666 (03-09-2016 19:06:15) Run:1
Running from C:\Users\Dragoone\Desktop
Loaded Profiles: Dragoone666 (Available Profiles: Dragoone666)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: F - "F:\Setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {059685f8-d0d5-11e5-bf28-342387e8f530} - "G:\.autorun\autorun.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {467a3da8-5f64-11e6-bfb5-201a068f5f38} - "G:\Lenovo_Suite.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {60e6a330-853e-11e5-bf0c-342387e8f530} - "F:\setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {7092eb7c-ddf2-11e5-bf2b-342387e8f530} - "H:\Setup.exe"
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> OldSearch URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=21171&r=2015/04/24&hid=6026983096723995405&lg=EN&cc=CZ&unqvl=86
BHO-x32: Lucky Bright -> {d47f39c7-2f7f-43e5-ba53-faffe2da42af} -> C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll => No File
FF DefaultSearchEngine,S: WebSearch
FF SearchEngineOrder.1,S: WebSearch
FF SelectedSearchEngine,S: WebSearch
FF Homepage: hxxp://searchinterneat-a.akamaihd.net/h ... JBI0sYRl1X
FF Keyword.URL: hxxp://searchinterneat-a.akamaihd.net/s ... 0dKJ1FM&q={searchTerms}
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\prefs.js [2015-08-23] <==== ATTENTION (Points to *.cfg file)
CHR RestoreOnStartup: Default -> "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA1oDB0VXfV5bFElXTwhvNVpTGHsDSFJLNA=="
CHR DefaultSearchURL: Default -> hxxp://searchinterneat-a.akamaihd.net/s ... 0dKJ1FM&q={searchTerms}
CHR DefaultSearchKeyword: Default -> searchinterneat-a.akamaihd.net
CHR DefaultNewTabURL: Default -> hxxp://searchinterneat-a.akamaihd.net/t ... JBI0sYRl1X
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\ProgramData\DP45977C.lfl
C:\Users\Dragoone\AppData\Local\Temp
End
*****************
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\F" => key removed successfully
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{059685f8-d0d5-11e5-bf28-342387e8f530}" => key removed successfully
HKCR\CLSID\{059685f8-d0d5-11e5-bf28-342387e8f530} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{467a3da8-5f64-11e6-bfb5-201a068f5f38}" => key removed successfully
HKCR\CLSID\{467a3da8-5f64-11e6-bfb5-201a068f5f38} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{60e6a330-853e-11e5-bf0c-342387e8f530}" => key removed successfully
HKCR\CLSID\{60e6a330-853e-11e5-bf0c-342387e8f530} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7092eb7c-ddf2-11e5-bf2b-342387e8f530}" => key removed successfully
HKCR\CLSID\{7092eb7c-ddf2-11e5-bf2b-342387e8f530} => key not found.
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\OldSearch" => key removed successfully
HKCR\CLSID\OldSearch => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}" => key removed successfully
HKCR\Wow6432Node\CLSID\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}" => key removed successfully
HKCR\CLSID\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d47f39c7-2f7f-43e5-ba53-faffe2da42af}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{d47f39c7-2f7f-43e5-ba53-faffe2da42af}" => key removed successfully
Firefox DefaultSearchEngine,S removed successfully
Firefox SearchEngineOrder.1,S removed successfully
Firefox SelectedSearchEngine,S removed successfully
Firefox "homepage" removed successfully
Firefox "Keyword.URL" removed successfully
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\msktbird@mcafee.com => value removed successfully
C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\prefs.js => moved successfully
Chrome RestoreOnStartup => removed successfully
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
Chrome DefaultNewTabURL => removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
"C:\Users\Dragoone\AppData\Local\Temp" folder move:
Could not move "C:\Users\Dragoone\AppData\Local\Temp" => Scheduled to move on reboot.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 03-09-2016 19:10:04)
C:\Users\Dragoone\AppData\Local\Temp => moved successfully
==== End of Fixlog 19:10:11 ====
Fix result of Farbar Recovery Scan Tool (x64) Version: 31-08-2016
Ran by Dragoone666 (03-09-2016 19:06:15) Run:1
Running from C:\Users\Dragoone\Desktop
Loaded Profiles: Dragoone666 (Available Profiles: Dragoone666)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: F - "F:\Setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {059685f8-d0d5-11e5-bf28-342387e8f530} - "G:\.autorun\autorun.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {467a3da8-5f64-11e6-bfb5-201a068f5f38} - "G:\Lenovo_Suite.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {60e6a330-853e-11e5-bf0c-342387e8f530} - "F:\setup.exe"
HKU\S-1-5-21-4085554339-3383759998-359678847-1002\...\MountPoints2: {7092eb7c-ddf2-11e5-bf2b-342387e8f530} - "H:\Setup.exe"
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> OldSearch URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-4085554339-3383759998-359678847-1002 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=21171&r=2015/04/24&hid=6026983096723995405&lg=EN&cc=CZ&unqvl=86
BHO-x32: Lucky Bright -> {d47f39c7-2f7f-43e5-ba53-faffe2da42af} -> C:\Program Files (x86)\Lucky Bright\Extensions\d47f39c7-2f7f-43e5-ba53-faffe2da42af.dll => No File
FF DefaultSearchEngine,S: WebSearch
FF SearchEngineOrder.1,S: WebSearch
FF SelectedSearchEngine,S: WebSearch
FF Homepage: hxxp://searchinterneat-a.akamaihd.net/h ... JBI0sYRl1X
FF Keyword.URL: hxxp://searchinterneat-a.akamaihd.net/s ... 0dKJ1FM&q={searchTerms}
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\prefs.js [2015-08-23] <==== ATTENTION (Points to *.cfg file)
CHR RestoreOnStartup: Default -> "hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggVIV9eUwsSGBgSJQpZTA0TEFAOIQAIUhRBF1EVI1oPUV9GR1EFIk0FA1oDB0VXfV5bFElXTwhvNVpTGHsDSFJLNA=="
CHR DefaultSearchURL: Default -> hxxp://searchinterneat-a.akamaihd.net/s ... 0dKJ1FM&q={searchTerms}
CHR DefaultSearchKeyword: Default -> searchinterneat-a.akamaihd.net
CHR DefaultNewTabURL: Default -> hxxp://searchinterneat-a.akamaihd.net/t ... JBI0sYRl1X
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\ProgramData\DP45977C.lfl
C:\Users\Dragoone\AppData\Local\Temp
End
*****************
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\F" => key removed successfully
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{059685f8-d0d5-11e5-bf28-342387e8f530}" => key removed successfully
HKCR\CLSID\{059685f8-d0d5-11e5-bf28-342387e8f530} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{467a3da8-5f64-11e6-bfb5-201a068f5f38}" => key removed successfully
HKCR\CLSID\{467a3da8-5f64-11e6-bfb5-201a068f5f38} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{60e6a330-853e-11e5-bf0c-342387e8f530}" => key removed successfully
HKCR\CLSID\{60e6a330-853e-11e5-bf0c-342387e8f530} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7092eb7c-ddf2-11e5-bf2b-342387e8f530}" => key removed successfully
HKCR\CLSID\{7092eb7c-ddf2-11e5-bf2b-342387e8f530} => key not found.
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\OldSearch" => key removed successfully
HKCR\CLSID\OldSearch => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}" => key removed successfully
HKCR\Wow6432Node\CLSID\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE} => key not found.
"HKU\S-1-5-21-4085554339-3383759998-359678847-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}" => key removed successfully
HKCR\CLSID\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d47f39c7-2f7f-43e5-ba53-faffe2da42af}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{d47f39c7-2f7f-43e5-ba53-faffe2da42af}" => key removed successfully
Firefox DefaultSearchEngine,S removed successfully
Firefox SearchEngineOrder.1,S removed successfully
Firefox SelectedSearchEngine,S removed successfully
Firefox "homepage" removed successfully
Firefox "Keyword.URL" removed successfully
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\msktbird@mcafee.com => value removed successfully
C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\prefs.js => moved successfully
Chrome RestoreOnStartup => removed successfully
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
Chrome DefaultNewTabURL => removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
"C:\Users\Dragoone\AppData\Local\Temp" folder move:
Could not move "C:\Users\Dragoone\AppData\Local\Temp" => Scheduled to move on reboot.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 03-09-2016 19:10:04)
C:\Users\Dragoone\AppData\Local\Temp => moved successfully
==== End of Fixlog 19:10:11 ====
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zamrzání pc, problikávání monitoru
Vše bylo smazáno. Proč vám při login obrazovce monitor problikává, nevím, nemůže to ale být způsobeno malwarem. Možná by nebylo od věci to vyzkoušet s jiným PC (případně to vaše s jiným monitorem).
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Zamrzání pc, problikávání monitoru
Děkuji za pomoc. Windows se načítá mnohem rychleji a problémy s fps u hraní her už nejsou.
Ještě jednou děkuji. Radoss
Ještě jednou děkuji. Radoss
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zamrzání pc, problikávání monitoru
Rádo se stalo! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?