Re: prosím o kontrolu logu
Napsal: 06 črc 2014 08:50
Logfile of random's system information tool 1.10 (written by random/random)
Run by Peter at 2014-07-06 09:39:05
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 22 GB (22%) free of 100 GB
Total RAM: 3578 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:39:10, on 6.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\notepad.exe
C:\Windows\Explorer.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Peter\Downloads\RSIT.exe
C:\Program Files\trend micro\Peter.exe
C:\Windows\system32\DllHost.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour SDK\Bin\ExplorerPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Abrosoft: Abrosoft FantaMorph update permissions manager. 12810. - Unknown owner - C:\Program Files\Abrosoft\FantaMorph5\FantaUp.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Smart Disk Mounter Service (SmartDiskMounter) - Unknown owner - C:\Program Files\SmartDiskMounter\sdfs.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\Windows\system32\viakaraokesrv.exe
--
End of file - 4630 bytes
=========Mozilla firefox=========
ProfilePath - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\p3burv9g.default
prefs.js - "browser.search.useDBForOrder" - "false"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"bonjour4firefox@apple.com"=C:\Program Files\Bonjour SDK\Bin\FirefoxExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\p3burv9g.default\extensions\
ascsurfingprotection@iobit.com
staged
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\p3burv9g.default\searchplugins\
yahoo_ff.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-06-22 436600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 171944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-04 3890208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2011-09-27 59240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DIMProbíhá stahování aktualizace...1338924290338]
c:\Program Files\Corel\CorelDRAW Graphics Suite X6\PHOTO-PAINT\DIM.exe [2012-02-23 179576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2011-04-06 2154096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smart Disk Mounter]
C:\Program Files\SmartDiskMounter\Smart Disk Mounter.exe [2014-06-04 279192]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-07-06 09:39:05 ----D---- C:\rsit
2014-07-06 09:39:05 ----D---- C:\Program Files\trend micro
2014-07-06 09:24:41 ----A---- C:\ComboFix.txt
2014-07-06 09:23:03 ----D---- C:\$RECYCLE.BIN
2014-07-06 09:08:00 ----D---- C:\Windows\temp
2014-07-05 23:45:33 ----D---- C:\Windows\system32\appmgmt
2014-07-05 22:54:27 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-07-05 22:48:46 ----A---- C:\TDSSKiller.3.0.0.39_05.07.2014_22.48.46_log.txt
2014-07-05 22:22:39 ----A---- C:\ComboFixLog.txt
2014-07-05 22:11:46 ----D---- C:\Windows\SysWow64
2014-07-05 21:58:42 ----A---- C:\Windows\zip.exe
2014-07-05 21:58:42 ----A---- C:\Windows\SWSC.exe
2014-07-05 21:58:42 ----A---- C:\Windows\SWREG.exe
2014-07-05 21:58:42 ----A---- C:\Windows\sed.exe
2014-07-05 21:58:42 ----A---- C:\Windows\PEV.exe
2014-07-05 21:58:42 ----A---- C:\Windows\NIRCMD.exe
2014-07-05 21:58:42 ----A---- C:\Windows\MBR.exe
2014-07-05 21:58:42 ----A---- C:\Windows\grep.exe
2014-07-05 21:57:45 ----D---- C:\Windows\erdnt
2014-07-05 20:26:30 ----A---- C:\Windows\system32\sqlite3.dll
2014-07-05 20:25:35 ----D---- C:\AdwCleaner
2014-07-05 02:25:36 ----ASH---- C:\pagefile.sys
2014-07-05 02:25:06 ----D---- C:\Windows\Minidump
2014-07-05 02:20:55 ----A---- C:\TDSSKiller.3.0.0.39_05.07.2014_02.20.55_log.txt
2014-07-05 01:44:00 ----D---- C:\FRST
2014-07-05 01:37:14 ----D---- C:\ProgramData\HitmanPro
2014-07-05 01:22:04 ----A---- C:\Windows\ntbtlog.txt
2014-07-05 01:21:06 ----D---- C:\Windows\pss
2014-07-04 23:59:15 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-07-04 23:58:56 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-07-04 23:58:56 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-07-04 23:58:56 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-07-04 23:58:55 ----D---- C:\ProgramData\Malwarebytes
2014-07-04 23:58:55 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2014-07-04 22:56:47 ----D---- C:\Users\Peter\AppData\Roaming\ProductData
2014-07-04 22:55:20 ----D---- C:\ProgramData\ProductData
2014-07-04 22:55:15 ----D---- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-07-04 22:52:13 ----D---- C:\Windows\455F074C814E4520B69B5584BD90400C.TMP
2014-07-04 22:49:12 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2014-07-04 22:15:46 ----D---- C:\Users\Peter\AppData\Roaming\Apple Computer
2014-07-04 22:05:44 ----D---- C:\Program Files\FreeRapid-0.9u4
2014-07-02 19:46:19 ----D---- C:\ProgramData\Apple Computer
2014-07-02 19:46:19 ----D---- C:\Program Files\QuickTime
2014-07-02 19:44:50 ----D---- C:\Program Files\Common Files\Apple
2014-07-02 19:44:22 ----D---- C:\Program Files\Apple Software Update
2014-06-23 20:24:38 ----D---- C:\Users\Peter\AppData\Roaming\DropboxMaster
2014-06-23 20:23:21 ----D---- C:\Users\Peter\AppData\Roaming\Dropbox
2014-06-22 20:38:27 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-06-22 20:38:20 ----A---- C:\Windows\avastSS.scr
2014-06-20 20:19:09 ----D---- C:\ProgramData\AppSnow
2014-06-20 20:18:15 ----D---- C:\ProgramData\4d66ec623310361d
2014-06-20 20:17:17 ----D---- C:\ProgramData\InstallMate
2014-06-15 17:17:17 ----D---- C:\Users\Peter\AppData\Roaming\Mnemosyne
2014-06-15 17:14:39 ----D---- C:\Program Files\Mnemosyne
2014-06-11 05:57:36 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 05:57:36 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-06-11 05:57:36 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-06-11 05:57:35 ----A---- C:\Windows\system32\urlmon.dll
2014-06-11 05:57:35 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-11 05:57:34 ----A---- C:\Windows\system32\jsproxy.dll
2014-06-11 05:57:34 ----A---- C:\Windows\system32\ieUnatt.exe
2014-06-11 05:57:33 ----A---- C:\Windows\system32\msfeeds.dll
2014-06-11 05:57:33 ----A---- C:\Windows\system32\iernonce.dll
2014-06-11 05:57:33 ----A---- C:\Windows\system32\dxtmsft.dll
2014-06-11 05:57:32 ----A---- C:\Windows\system32\msrating.dll
2014-06-11 05:57:32 ----A---- C:\Windows\system32\ie4uinit.exe
2014-06-11 05:57:31 ----A---- C:\Windows\system32\iesetup.dll
2014-06-11 05:57:31 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-06-11 05:57:31 ----A---- C:\Windows\system32\ieapfltr.dll
2014-06-11 05:57:30 ----A---- C:\Windows\system32\wininet.dll
2014-06-11 05:57:29 ----A---- C:\Windows\system32\ieui.dll
2014-06-11 05:57:29 ----A---- C:\Windows\system32\dxtrans.dll
2014-06-11 05:57:28 ----A---- C:\Windows\system32\mshtmled.dll
2014-06-11 05:57:28 ----A---- C:\Windows\system32\ieframe.dll
2014-06-11 05:57:27 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-06-11 05:57:27 ----A---- C:\Windows\system32\iertutil.dll
2014-06-11 05:57:26 ----A---- C:\Windows\system32\jscript9diag.dll
2014-06-11 05:57:25 ----A---- C:\Windows\system32\mshtml.dll
2014-06-11 05:57:24 ----A---- C:\Windows\system32\vbscript.dll
2014-06-11 05:57:24 ----A---- C:\Windows\system32\jscript9.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml6r.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml6.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml3r.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml3.dll
2014-06-11 05:56:56 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-06-11 05:56:55 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 05:56:54 ----A---- C:\Windows\system32\aepdu.dll
2014-06-11 05:56:51 ----A---- C:\Windows\system32\aeinv.dll
2014-06-11 05:56:50 ----A---- C:\Windows\system32\usp10.dll
======List of files/folders modified in the last 1 month======
2014-07-06 09:39:10 ----D---- C:\Windows\Prefetch
2014-07-06 09:39:05 ----RD---- C:\Program Files
2014-07-06 09:24:43 ----D---- C:\Windows\system32\drivers
2014-07-06 09:24:43 ----AD---- C:\Qoobox
2014-07-06 09:23:07 ----D---- C:\Windows
2014-07-06 09:23:07 ----A---- C:\Windows\system.ini
2014-07-06 09:22:58 ----D---- C:\Windows\system32\drivers\etc
2014-07-06 09:09:08 ----D---- C:\ProgramData\NVIDIA
2014-07-06 09:08:15 ----D---- C:\Windows\system32\config
2014-07-06 09:06:16 ----D---- C:\Windows\AppPatch
2014-07-06 00:04:55 ----SHD---- C:\System Volume Information
2014-07-05 23:52:08 ----D---- C:\Users\Peter\AppData\Roaming\eM Client
2014-07-05 23:45:33 ----D---- C:\Windows\System32
2014-07-05 22:54:27 ----D---- C:\ProgramData
2014-07-05 22:21:51 ----RD---- C:\Users
2014-07-05 22:15:43 ----D---- C:\Program Files (x86)
2014-07-05 20:27:10 ----D---- C:\Program Files\Common Files
2014-07-05 01:08:12 ----D---- C:\Windows\Tasks
2014-07-05 01:08:12 ----D---- C:\Windows\system32\Tasks
2014-07-05 00:15:31 ----D---- C:\Windows\addins
2014-07-05 00:13:27 ----SHD---- C:\Windows\Installer
2014-07-04 23:04:23 ----D---- C:\Users\Peter\AppData\Roaming\AIMP3
2014-07-02 19:46:49 ----D---- C:\Program Files\Internet Explorer
2014-07-01 23:00:01 ----D---- C:\Users\Peter\AppData\Roaming\FileZilla
2014-06-29 04:48:25 ----D---- C:\Oslava života
2014-06-22 22:32:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-22 22:32:29 ----D---- C:\Windows\inf
2014-06-22 20:38:20 ----A---- C:\Windows\system32\aswBoot.exe
2014-06-20 20:18:13 ----D---- C:\Program Files\Google
2014-06-12 04:13:25 ----D---- C:\Windows\rescache
2014-06-12 03:23:25 ----D---- C:\Windows\winsxs
2014-06-12 03:19:59 ----D---- C:\Windows\system32\en-US
2014-06-12 03:19:51 ----SD---- C:\Windows\system32\CompatTel
2014-06-12 03:19:48 ----D---- C:\Windows\system32\DriverStore
2014-06-12 03:03:36 ----D---- C:\Windows\system32\MRT
2014-06-12 03:01:26 ----A---- C:\Windows\system32\MRT.exe
2014-06-11 05:56:46 ----D---- C:\Windows\system32\catroot
2014-06-11 05:56:36 ----D---- C:\Windows\system32\catroot2
2014-06-09 23:45:06 ----D---- C:\Users\Peter\AppData\Roaming\Skype
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-06-22 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-06-22 180632]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2009-04-17 44944]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-06-22 81768]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-06-22 777488]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-06-22 411680]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-06-22 24184]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-06-22 67824]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-06-22 68312]
R2 SmartDisk;SmartDisk; \??\C:\Program Files\SmartDiskMounter\sdfs.sys [2014-05-30 74392]
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2011-06-02 101352]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2011-06-02 317416]
R3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
R3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
R3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2012-12-19 154040]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-08-23 414824]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2011-03-29 1804400]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2011-06-07 211984]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\Peter\AppData\Local\Temp\catchme.sys []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 silabenm;Silicon Labs CP210x USB to UART Bridge Serial Port Enumerator Driver; C:\Windows\system32\DRIVERS\silabenm.sys [2014-03-25 47176]
S3 silabser;Silicon Labs CP210x USB to UART Bridge Driver; C:\Windows\system32\DRIVERS\silabser.sys [2014-03-25 63104]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUSB;WinUSB - Kernel Driver 06/18/2013 6.1.7600.16385; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Abrosoft: Abrosoft FantaMorph update permissions manager. 12810.;Abrosoft: Abrosoft FantaMorph update permissions manager. 12810.; C:\Program Files\Abrosoft\FantaMorph5\FantaUp.exe [2010-11-18 224176]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-07-28 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-07-28 291840]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-06-22 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-03-15 634144]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-03-10 189728]
R2 SmartDiskMounter;Smart Disk Mounter Service; C:\Program Files\SmartDiskMounter\sdfs.exe [2014-05-30 31896]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-03-14 383264]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2011-03-29 27760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe /svc []
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-03-15 1266464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-05-30 108032]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-05 119408]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-01 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Run by Peter at 2014-07-06 09:39:05
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 22 GB (22%) free of 100 GB
Total RAM: 3578 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:39:10, on 6.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\notepad.exe
C:\Windows\Explorer.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Peter\Downloads\RSIT.exe
C:\Program Files\trend micro\Peter.exe
C:\Windows\system32\DllHost.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour SDK\Bin\ExplorerPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Abrosoft: Abrosoft FantaMorph update permissions manager. 12810. - Unknown owner - C:\Program Files\Abrosoft\FantaMorph5\FantaUp.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Smart Disk Mounter Service (SmartDiskMounter) - Unknown owner - C:\Program Files\SmartDiskMounter\sdfs.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\Windows\system32\viakaraokesrv.exe
--
End of file - 4630 bytes
=========Mozilla firefox=========
ProfilePath - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\p3burv9g.default
prefs.js - "browser.search.useDBForOrder" - "false"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"bonjour4firefox@apple.com"=C:\Program Files\Bonjour SDK\Bin\FirefoxExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\p3burv9g.default\extensions\
ascsurfingprotection@iobit.com
staged
C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\p3burv9g.default\searchplugins\
yahoo_ff.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-03-17 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-06-22 436600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-03-17 171944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-04 3890208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2011-09-27 59240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DIMProbíhá stahování aktualizace...1338924290338]
c:\Program Files\Corel\CorelDRAW Graphics Suite X6\PHOTO-PAINT\DIM.exe [2012-02-23 179576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2011-04-06 2154096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smart Disk Mounter]
C:\Program Files\SmartDiskMounter\Smart Disk Mounter.exe [2014-06-04 279192]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.ac3filter"=ac3filter.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2014-07-06 09:39:05 ----D---- C:\rsit
2014-07-06 09:39:05 ----D---- C:\Program Files\trend micro
2014-07-06 09:24:41 ----A---- C:\ComboFix.txt
2014-07-06 09:23:03 ----D---- C:\$RECYCLE.BIN
2014-07-06 09:08:00 ----D---- C:\Windows\temp
2014-07-05 23:45:33 ----D---- C:\Windows\system32\appmgmt
2014-07-05 22:54:27 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-07-05 22:48:46 ----A---- C:\TDSSKiller.3.0.0.39_05.07.2014_22.48.46_log.txt
2014-07-05 22:22:39 ----A---- C:\ComboFixLog.txt
2014-07-05 22:11:46 ----D---- C:\Windows\SysWow64
2014-07-05 21:58:42 ----A---- C:\Windows\zip.exe
2014-07-05 21:58:42 ----A---- C:\Windows\SWSC.exe
2014-07-05 21:58:42 ----A---- C:\Windows\SWREG.exe
2014-07-05 21:58:42 ----A---- C:\Windows\sed.exe
2014-07-05 21:58:42 ----A---- C:\Windows\PEV.exe
2014-07-05 21:58:42 ----A---- C:\Windows\NIRCMD.exe
2014-07-05 21:58:42 ----A---- C:\Windows\MBR.exe
2014-07-05 21:58:42 ----A---- C:\Windows\grep.exe
2014-07-05 21:57:45 ----D---- C:\Windows\erdnt
2014-07-05 20:26:30 ----A---- C:\Windows\system32\sqlite3.dll
2014-07-05 20:25:35 ----D---- C:\AdwCleaner
2014-07-05 02:25:36 ----ASH---- C:\pagefile.sys
2014-07-05 02:25:06 ----D---- C:\Windows\Minidump
2014-07-05 02:20:55 ----A---- C:\TDSSKiller.3.0.0.39_05.07.2014_02.20.55_log.txt
2014-07-05 01:44:00 ----D---- C:\FRST
2014-07-05 01:37:14 ----D---- C:\ProgramData\HitmanPro
2014-07-05 01:22:04 ----A---- C:\Windows\ntbtlog.txt
2014-07-05 01:21:06 ----D---- C:\Windows\pss
2014-07-04 23:59:15 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-07-04 23:58:56 ----A---- C:\Windows\system32\drivers\mwac.sys
2014-07-04 23:58:56 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2014-07-04 23:58:56 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-07-04 23:58:55 ----D---- C:\ProgramData\Malwarebytes
2014-07-04 23:58:55 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2014-07-04 22:56:47 ----D---- C:\Users\Peter\AppData\Roaming\ProductData
2014-07-04 22:55:20 ----D---- C:\ProgramData\ProductData
2014-07-04 22:55:15 ----D---- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-07-04 22:52:13 ----D---- C:\Windows\455F074C814E4520B69B5584BD90400C.TMP
2014-07-04 22:49:12 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2014-07-04 22:15:46 ----D---- C:\Users\Peter\AppData\Roaming\Apple Computer
2014-07-04 22:05:44 ----D---- C:\Program Files\FreeRapid-0.9u4
2014-07-02 19:46:19 ----D---- C:\ProgramData\Apple Computer
2014-07-02 19:46:19 ----D---- C:\Program Files\QuickTime
2014-07-02 19:44:50 ----D---- C:\Program Files\Common Files\Apple
2014-07-02 19:44:22 ----D---- C:\Program Files\Apple Software Update
2014-06-23 20:24:38 ----D---- C:\Users\Peter\AppData\Roaming\DropboxMaster
2014-06-23 20:23:21 ----D---- C:\Users\Peter\AppData\Roaming\Dropbox
2014-06-22 20:38:27 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-06-22 20:38:20 ----A---- C:\Windows\avastSS.scr
2014-06-20 20:19:09 ----D---- C:\ProgramData\AppSnow
2014-06-20 20:18:15 ----D---- C:\ProgramData\4d66ec623310361d
2014-06-20 20:17:17 ----D---- C:\ProgramData\InstallMate
2014-06-15 17:17:17 ----D---- C:\Users\Peter\AppData\Roaming\Mnemosyne
2014-06-15 17:14:39 ----D---- C:\Program Files\Mnemosyne
2014-06-11 05:57:36 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 05:57:36 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-06-11 05:57:36 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-06-11 05:57:35 ----A---- C:\Windows\system32\urlmon.dll
2014-06-11 05:57:35 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-11 05:57:34 ----A---- C:\Windows\system32\jsproxy.dll
2014-06-11 05:57:34 ----A---- C:\Windows\system32\ieUnatt.exe
2014-06-11 05:57:33 ----A---- C:\Windows\system32\msfeeds.dll
2014-06-11 05:57:33 ----A---- C:\Windows\system32\iernonce.dll
2014-06-11 05:57:33 ----A---- C:\Windows\system32\dxtmsft.dll
2014-06-11 05:57:32 ----A---- C:\Windows\system32\msrating.dll
2014-06-11 05:57:32 ----A---- C:\Windows\system32\ie4uinit.exe
2014-06-11 05:57:31 ----A---- C:\Windows\system32\iesetup.dll
2014-06-11 05:57:31 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-06-11 05:57:31 ----A---- C:\Windows\system32\ieapfltr.dll
2014-06-11 05:57:30 ----A---- C:\Windows\system32\wininet.dll
2014-06-11 05:57:29 ----A---- C:\Windows\system32\ieui.dll
2014-06-11 05:57:29 ----A---- C:\Windows\system32\dxtrans.dll
2014-06-11 05:57:28 ----A---- C:\Windows\system32\mshtmled.dll
2014-06-11 05:57:28 ----A---- C:\Windows\system32\ieframe.dll
2014-06-11 05:57:27 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-06-11 05:57:27 ----A---- C:\Windows\system32\iertutil.dll
2014-06-11 05:57:26 ----A---- C:\Windows\system32\jscript9diag.dll
2014-06-11 05:57:25 ----A---- C:\Windows\system32\mshtml.dll
2014-06-11 05:57:24 ----A---- C:\Windows\system32\vbscript.dll
2014-06-11 05:57:24 ----A---- C:\Windows\system32\jscript9.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml6r.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml6.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml3r.dll
2014-06-11 05:56:57 ----A---- C:\Windows\system32\msxml3.dll
2014-06-11 05:56:56 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-06-11 05:56:55 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 05:56:54 ----A---- C:\Windows\system32\aepdu.dll
2014-06-11 05:56:51 ----A---- C:\Windows\system32\aeinv.dll
2014-06-11 05:56:50 ----A---- C:\Windows\system32\usp10.dll
======List of files/folders modified in the last 1 month======
2014-07-06 09:39:10 ----D---- C:\Windows\Prefetch
2014-07-06 09:39:05 ----RD---- C:\Program Files
2014-07-06 09:24:43 ----D---- C:\Windows\system32\drivers
2014-07-06 09:24:43 ----AD---- C:\Qoobox
2014-07-06 09:23:07 ----D---- C:\Windows
2014-07-06 09:23:07 ----A---- C:\Windows\system.ini
2014-07-06 09:22:58 ----D---- C:\Windows\system32\drivers\etc
2014-07-06 09:09:08 ----D---- C:\ProgramData\NVIDIA
2014-07-06 09:08:15 ----D---- C:\Windows\system32\config
2014-07-06 09:06:16 ----D---- C:\Windows\AppPatch
2014-07-06 00:04:55 ----SHD---- C:\System Volume Information
2014-07-05 23:52:08 ----D---- C:\Users\Peter\AppData\Roaming\eM Client
2014-07-05 23:45:33 ----D---- C:\Windows\System32
2014-07-05 22:54:27 ----D---- C:\ProgramData
2014-07-05 22:21:51 ----RD---- C:\Users
2014-07-05 22:15:43 ----D---- C:\Program Files (x86)
2014-07-05 20:27:10 ----D---- C:\Program Files\Common Files
2014-07-05 01:08:12 ----D---- C:\Windows\Tasks
2014-07-05 01:08:12 ----D---- C:\Windows\system32\Tasks
2014-07-05 00:15:31 ----D---- C:\Windows\addins
2014-07-05 00:13:27 ----SHD---- C:\Windows\Installer
2014-07-04 23:04:23 ----D---- C:\Users\Peter\AppData\Roaming\AIMP3
2014-07-02 19:46:49 ----D---- C:\Program Files\Internet Explorer
2014-07-01 23:00:01 ----D---- C:\Users\Peter\AppData\Roaming\FileZilla
2014-06-29 04:48:25 ----D---- C:\Oslava života
2014-06-22 22:32:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-22 22:32:29 ----D---- C:\Windows\inf
2014-06-22 20:38:20 ----A---- C:\Windows\system32\aswBoot.exe
2014-06-20 20:18:13 ----D---- C:\Program Files\Google
2014-06-12 04:13:25 ----D---- C:\Windows\rescache
2014-06-12 03:23:25 ----D---- C:\Windows\winsxs
2014-06-12 03:19:59 ----D---- C:\Windows\system32\en-US
2014-06-12 03:19:51 ----SD---- C:\Windows\system32\CompatTel
2014-06-12 03:19:48 ----D---- C:\Windows\system32\DriverStore
2014-06-12 03:03:36 ----D---- C:\Windows\system32\MRT
2014-06-12 03:01:26 ----A---- C:\Windows\system32\MRT.exe
2014-06-11 05:56:46 ----D---- C:\Windows\system32\catroot
2014-06-11 05:56:36 ----D---- C:\Windows\system32\catroot2
2014-06-09 23:45:06 ----D---- C:\Users\Peter\AppData\Roaming\Skype
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-06-22 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-06-22 180632]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2009-04-17 44944]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-06-22 81768]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-06-22 777488]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-06-22 411680]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-06-22 24184]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-06-22 67824]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-06-22 68312]
R2 SmartDisk;SmartDisk; \??\C:\Program Files\SmartDiskMounter\sdfs.sys [2014-05-30 74392]
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 asmthub3;ASMedia USB3 Hub Service; C:\Windows\system32\DRIVERS\asmthub3.sys [2011-06-02 101352]
R3 asmtxhci;ASMEDIA XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2011-06-02 317416]
R3 dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
R3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
R3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2012-12-19 154040]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-08-23 414824]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2011-03-29 1804400]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2011-06-07 211984]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\Peter\AppData\Local\Temp\catchme.sys []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 silabenm;Silicon Labs CP210x USB to UART Bridge Serial Port Enumerator Driver; C:\Windows\system32\DRIVERS\silabenm.sys [2014-03-25 47176]
S3 silabser;Silicon Labs CP210x USB to UART Bridge Driver; C:\Windows\system32\DRIVERS\silabser.sys [2014-03-25 63104]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUSB;WinUSB - Kernel Driver 06/18/2013 6.1.7600.16385; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Abrosoft: Abrosoft FantaMorph update permissions manager. 12810.;Abrosoft: Abrosoft FantaMorph update permissions manager. 12810.; C:\Program Files\Abrosoft\FantaMorph5\FantaUp.exe [2010-11-18 224176]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-07-28 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-07-28 291840]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-06-22 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-03-15 634144]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-03-10 189728]
R2 SmartDiskMounter;Smart Disk Mounter Service; C:\Program Files\SmartDiskMounter\sdfs.exe [2014-05-30 31896]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-03-14 383264]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2011-03-29 27760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe /svc []
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-03-15 1266464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe /medsvc []
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-05-30 108032]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-05 119408]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-01 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------