Prosím o odstranění malware - pravděpodobně AKAMAIHD.net
Napsal: 09 črc 2014 09:28
Dobrý den, níže přikládám výpis z logu RSIT. Mám problémy se zpomalováním pc a v současně v prohlížeči CHROME mě vyskakují okna a reklamy od společnosti AKAMAIHD.
Zde je log RSIT
------------------------------------------------------------------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Kamila at 2014-07-09 10:10:36
Microsoft Windows 8.1
System drive C: has 419 GB (91%) free of 460 GB
Total RAM: 3979 MB (27% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:10:50, on 9. 7. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
C:\Program Files\Lexmark\Monitor\ACB\LMabMON.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Kamila.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0048292 - {11111111-1111-1111-1111-110411821192} - C:\Program Files (x86)\Sense\Sense-bho.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe
O4 - HKLM\..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [T-Mobile CManager] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE /EPT "EPLTarget\P0000000000000000" /M "L355 Series"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe
O4 - HKCU\..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
O4 - HKCU\..\Run: [Spybot-S&D Cleaning] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean
O4 - HKUS\S-1-5-18\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE /EPT "EPLTarget\P0000000000000000" /M "L355 Series" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE /EPT "EPLTarget\P0000000000000000" /M "L355 Series" (User 'Default user')
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem59.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: lmab_device - - C:\Windows\system32\LMabcoms.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13624 bytes
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
dashost.exe {8bbe872a-ae36-4a83-92e52606bfd5dfe0}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\system32\LMabcoms.exe -service
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files\Common Files\ShopperPro\spbiu.exe" /service
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
C:\Windows\system32\vcsFPService.exe
C:\Windows\system32\EscSvc64.exe
C:\WINDOWS\SysWOW64\svchost.exe -k MbnExt
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3b4ce520-074d-48d5-80b4-8e2c94480315 -SystemEventPortName:HostProcess-b9cfa17f-3b3d-4b91-95b4-ef6128b5d323 -IoCancelEventPortName:HostProcess-39303c2e-1507-4772-b369-422ca2f829e6 -NonStateChangingEventPortName:HostProcess-54ac87ec-8ebb-46d1-a1c2-30ffc8000b20 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:87230f87-a645-448e-a51a-32e53030d6ff -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9edce2c8-7566-49ec-8886-b1556bc66aff -SystemEventPortName:HostProcess-1fa495ce-8fba-4137-b7d3-6753aba2fc34 -IoCancelEventPortName:HostProcess-cacc916a-d66e-481c-95f7-e99b5fa720d0 -NonStateChangingEventPortName:HostProcess-4f23c4f1-47b6-404f-9ce3-4d4690ef050b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d753f0e4-cded-4576-afb9-3bf108e6501c -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
taskeng.exe {40170093-1859-49C1-B297-FF0595B1FD01}
C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Sense\Sense-nova.exe" /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /VyqoDMi /pjbTgehYw=Sense /GwamWkgE='nova' /eJPVqQJEd=http://js.clientdemocloud.com /nzJPxyFiY='{"asw":[0, 257, 0]}' /LgXrNxBX='http://update.demogensrv.com/novarun/{C ... pdate.json' /IZSOsP='task' /EIAIMMIR=''
taskhostex.exe
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\skydrive.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lexmark\Monitor\ACB\LMabMON.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Windows\System32\spool\drivers\x64\3\E_YATII4E.EXE" /EPT "EPLTarget\P0000000000000000" /M "L355 Series"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5472.0.1431068062\1031262232" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,15 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.3347 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.3.1161434747\553539680" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.6.52287791\873639800" /prefetch:673131151
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.39.1390266360\1531727702" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5472.53.1850614903\361600813" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.56.704483580\1446338899" /prefetch:673131151
taskhostex.exe Regular
C:\WINDOWS\system32\rundll32.exe aepdu.dll,AePduRunUpdate
C:\WINDOWS\system32\msfeedssync.exe sync
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.65.665456147\1298063327" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.68.833611636\394291064" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.77.967197320\238050245" /prefetch:673131151
C:\WINDOWS\System32\sdclt.exe /CONFIGNOTIFICATION
taskeng.exe {E615713C-C702-4FCD-A052-F9340D48898E}
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.99.834072825\574905116" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe31_ Global\UsGthrCtrlFltPipeMssGthrPipe31 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 592 596 604 65536 600
"C:\Users\Kamila\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe# /iNlXQ /IZSOsP=task /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /pjbTgehYw='Sense' /eJPVqQJEd=http://js.clientdemocloud.com /ZmxvjFWYH /nzJPxyFiY='{"asw":[0, 257, 0]}' /LgXrNxBX='http://update.demogensrv.com/ie_code_ag ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-11.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-11.exe# /YFEwml=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#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-2.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-2.exe# /RSGlzJJ /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /mrSPztd=11111111-1111-1111-1111-110411821192 /mAHikT=ch /ZmxvjFWYH /LgXrNxBX='http://update.demogensrv.com/ie_enable_ ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-4.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-4.exe# /lhmWTQtHR /QKznSGga='Sense' /GCypiblgD='C:\Program Files (x86)\Sense\48292.xpi' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /UOEXBoMoc=300 /Ogmvo=143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com /XhHWnQGUk=0.94 /WifGDThA=a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292 /RqQkQc=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /48292.rdf /kpdUhhFgO='Sense' /eyzOJ='.' /YZyHu='Object Browser' /mAHikT=ch /nzJPxyFiY='{"asw":[0, 257, 0]}' /ZmxvjFWYH /lQpUGoTHm /RUyzNYJ /LgXrNxBX='http://update.demogensrv.com/ff_agent_u ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-5.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-5.exe# /DplMAPRMI /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /ZkhxjVpda=http://ipgeoapi.com/ /wGlHrCD=http://update.demogensrv.com /kbOtJ=2 /COnYWTE=http://logs.demogensrv.com /LgXrNxBX='http://update.demogensrv.com/updater_ag ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-5_user.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-5.exe# /DplMAPRMI /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /ZkhxjVpda=http://ipgeoapi.com/ /wGlHrCD=http://update.demogensrv.com /kbOtJ=2 /COnYWTE=http://logs.demogensrv.com /LgXrNxBX='http://update.demogensrv.com/updater_ag ... pdate.json' /zkLRd /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-6.job - C:\Program Files (x86)\Sense\Sense-novainstaller.exe# /bepdIGamD /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /VyqoDMi /pjbTgehYw=Sense /GwamWkgE='nova' /eJPVqQJEd=http://js.clientdemocloud.com /nzJPxyFiY='{"asw":[0, 257, 0]}' /IZSOsP=task /LgXrNxBX='http://update.demogensrv.com/novacode/{ ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-7.job - C:\Program Files (x86)\Sense\Sense-nova.exe# /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /VyqoDMi /pjbTgehYw=Sense /GwamWkgE='nova' /eJPVqQJEd=http://js.clientdemocloud.com /nzJPxyFiY='{"asw":[0, 257, 0]}' /LgXrNxBX='http://update.demogensrv.com/novarun/{C ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /ua /installsource scheduler#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /ua /installsource scheduler#
C:\WINDOWS\tasks\HPCeeScheduleForKamila.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe# HPCeeScheduleForKamila (null)#
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho64.dll [2014-07-04 894976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2014-06-26 524136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho.dll [2014-07-04 655872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2014-06-26 435560]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-30 171992]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-30 399832]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-30 442328]
"LMPSSDMON"=C:\Program Files\Lexmark\Monitor\ACB\LMabMON.exe [2010-09-16 753664]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2014-02-26 1664000]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-04-22 21720]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile CManager"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2013-10-31 2166552]
"EPLTarget\P0000000000000000"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE [2012-02-28 283232]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe [2014-06-26 3211776]
"YTDownloader"=C:\Program Files (x86)\YTDownloader\YTDownloader.exe /boot []
"Spybot-S&D Cleaning"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [2014-04-25 4566984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2012-07-17 684064]
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2012-08-16 364032]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-24 491120]
"RemoteControl10"=c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2013-10-16 337184]
""= []
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2014-04-01 2007392]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe [2014-06-26 3211776]
"YTDownloader"=C:\Program Files (x86)\YTDownloader\YTDownloader.exe /boot []
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-04-25 4101584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-30 442880]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-09 10:10:36 ----D---- C:\rsit
2014-07-09 10:10:36 ----D---- C:\Program Files\trend micro
2014-07-07 14:57:17 ----A---- C:\WINDOWS\wininit.ini
2014-07-07 13:57:49 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-07-07 13:57:48 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-07-07 13:57:39 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-07-07 13:48:48 ----D---- C:\Program Files\CCleaner
2014-07-04 15:20:23 ----D---- C:\ProgramData\Norton
2014-07-04 15:20:20 ----D---- C:\ProgramData\NortonInstaller
2014-07-04 15:20:20 ----D---- C:\Program Files (x86)\NortonInstaller
2014-07-04 15:06:40 ----D---- C:\Program Files (x86)\7-Zip
2014-07-04 15:06:32 ----D---- C:\Users\Kamila\AppData\Roaming\JGArcadeApp
2014-07-04 15:04:31 ----D---- C:\Program Files (x86)\Sense
2014-07-04 15:04:30 ----D---- C:\Program Files (x86)\globalUpdate
2014-07-04 15:04:08 ----D---- C:\ProgramData\ShopperPro
2014-07-04 15:04:03 ----D---- C:\Program Files\Common Files\ShopperPro
2014-07-04 15:03:56 ----D---- C:\Program Files (x86)\ShopperPro
2014-06-11 09:01:04 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2014-06-11 07:12:44 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-06-11 07:12:43 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-06-11 07:12:42 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-06-11 07:12:41 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2014-06-11 07:12:41 ----A---- C:\WINDOWS\system32\gdi32.dll
2014-06-11 07:12:39 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-06-11 07:12:38 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-06-11 07:12:38 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-06-11 07:12:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-06-11 07:12:37 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-06-11 07:12:37 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-06-11 07:12:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-06-11 07:12:36 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-06-11 07:12:34 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-06-11 07:12:34 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-06-11 07:12:33 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-06-11 07:12:33 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-06-11 07:12:32 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-06-11 07:12:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-06-11 07:12:30 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-06-11 07:12:29 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-06-11 07:12:28 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-06-11 07:12:27 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-06-11 07:12:26 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-06-11 07:12:26 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-06-11 07:12:25 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-06-11 07:12:25 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-06-11 07:12:24 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-06-11 07:12:23 ----A---- C:\WINDOWS\system32\wininet.dll
2014-06-11 07:12:21 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-06-11 07:12:19 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-06-11 07:12:19 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-06-11 07:12:15 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-06-11 07:12:15 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-06-11 07:12:12 ----A---- C:\WINDOWS\system32\WSReset.exe
2014-06-11 07:12:11 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-06-11 07:12:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-11 07:12:11 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-06-11 07:12:11 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-11 07:11:53 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-06-11 07:11:52 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-06-11 07:11:51 ----A---- C:\WINDOWS\system32\twinui.dll
2014-06-11 07:11:50 ----A---- C:\WINDOWS\system32\shell32.dll
2014-06-11 07:11:48 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-06-11 07:11:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2014-06-11 07:11:45 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-06-11 07:11:44 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-06-11 07:11:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2014-06-11 07:11:43 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-06-11 07:11:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-06-11 07:11:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-06-11 07:11:40 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-06-11 07:11:39 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-06-11 07:11:39 ----A---- C:\WINDOWS\system32\gpsvc.dll
2014-06-11 07:11:39 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\win32k.sys
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\localspl.dll
2014-06-11 07:11:36 ----AC---- C:\WINDOWS\system32\drivers\bthport.sys
2014-06-11 07:11:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\wmpmde.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\winmde.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\services.exe
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\mfsvr.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2014-06-11 07:11:35 ----AC---- C:\WINDOWS\system32\drivers\volsnap.sys
2014-06-11 07:11:35 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\XpsGdiConverter.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\srvsvc.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\XpsGdiConverter.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\MDEServer.exe
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-06-11 07:11:33 ----AC---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2014-06-11 07:11:33 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\swprv.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\resutils.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\rdpencom.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\ploptin.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\dwmapi.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\defragsvc.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-06-11 07:11:32 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys
2014-06-11 07:11:32 ----AC---- C:\WINDOWS\system32\drivers\msiscsi.sys
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\rpchttp.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\MSVideoDSP.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\wscsvc.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\VSSVC.exe
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\rpchttp.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\propsys.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\mf.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\gpapi.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\wintrust.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\srcore.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\mfps.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\mfpmp.exe
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\mfplat.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\energyprov.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\clusapi.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\tlscsp.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\wlansvc.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\tlscsp.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\mispace.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\srclient.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\wlansec.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\wlanapi.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\tsgqec.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\srclient.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\rstrui.exe
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-06-11 07:11:28 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2014-06-11 07:11:28 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\SYSWOW64\drvinst.exe
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\FntCache.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\DWrite.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\drvinst.exe
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\drvcfg.exe
2014-06-11 07:10:43 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-06-11 07:10:43 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-06-11 07:10:43 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-06-11 07:10:42 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-06-11 07:10:42 ----A---- C:\WINDOWS\system32\wpccpl.dll
2014-06-11 07:10:41 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2014-06-11 07:08:17 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2014-06-11 07:07:22 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-06-11 07:07:22 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-06-11 07:07:17 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieetwcollectorres.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-06-11 07:07:16 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-06-11 07:07:16 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-06-11 07:07:16 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-06-11 07:07:14 ----A---- C:\WINDOWS\system32\msrating.dll
======List of files/folders modified in the last 1 month======
2014-07-09 10:10:36 ----RD---- C:\Program Files
2014-07-09 10:10:33 ----D---- C:\WINDOWS\Prefetch
2014-07-09 10:09:01 ----D---- C:\Users\Kamila\AppData\Roaming\Skype
2014-07-09 10:00:00 ----D---- C:\WINDOWS\system32\sru
2014-07-09 09:05:15 ----D---- C:\WINDOWS\Temp
2014-07-09 09:04:56 ----D---- C:\WINDOWS\system32\Tasks
2014-07-09 09:02:05 ----D---- C:\WINDOWS\Microsoft.NET
2014-07-09 08:10:08 ----D---- C:\WINDOWS\system32\FxsTmp
2014-07-09 07:45:50 ----D---- C:\ProgramData\PDFC
2014-07-09 07:30:10 ----D---- C:\WINDOWS\AppReadiness
2014-07-09 07:12:31 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2014-07-09 07:12:13 ----D---- C:\WINDOWS\system32\config
2014-07-09 07:09:29 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2014-07-09 07:09:26 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2014-07-08 10:52:43 ----SHD---- C:\System Volume Information
2014-07-08 09:54:08 ----HD---- C:\Program Files\WindowsApps
2014-07-08 09:42:30 ----A---- C:\WINDOWS\SYSWOW64\REMOTEDEVICE.INI
2014-07-08 07:49:53 ----D---- C:\WINDOWS\debug
2014-07-08 07:08:27 ----D---- C:\Windows
2014-07-08 07:08:22 ----D---- C:\WINDOWS\SoftwareDistribution
2014-07-07 15:39:22 ----RD---- C:\Program Files (x86)
2014-07-07 15:39:22 ----D---- C:\WINDOWS\Tasks
2014-07-07 15:39:02 ----SHD---- C:\WINDOWS\Installer
2014-07-07 15:39:01 ----SHD---- C:\Config.Msi
2014-07-07 15:37:02 ----D---- C:\WINDOWS\system32\drivers
2014-07-07 15:35:52 ----RD---- C:\WINDOWS\System32
2014-07-07 15:35:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-07 15:35:51 ----D---- C:\WINDOWS\Inf
2014-07-07 15:31:54 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-07-07 13:58:01 ----SD---- C:\ProgramData\Microsoft
2014-07-07 13:57:48 ----HD---- C:\ProgramData
2014-07-07 13:51:29 ----DC---- C:\WINDOWS\Panther
2014-07-07 13:51:29 ----D---- C:\WINDOWS\ModemLogs
2014-07-07 13:51:27 ----D---- C:\WINDOWS\Minidump
2014-07-04 15:33:02 ----D---- C:\Program Files (x86)\Common Files
2014-07-04 15:04:24 ----D---- C:\Program Files\Common Files\System
2014-07-04 15:04:03 ----D---- C:\Program Files\Common Files
2014-07-03 07:20:02 ----D---- C:\Users\Kamila\AppData\Roaming\XnView
2014-06-26 07:41:45 ----D---- C:\WINDOWS\CbsTemp
2014-06-26 07:41:42 ----D---- C:\WINDOWS\WinSxS
2014-06-12 09:09:07 ----D---- C:\WINDOWS\system32\DriverStore
2014-06-12 08:37:15 ----D---- C:\WINDOWS\system32\catroot2
2014-06-12 08:27:39 ----D---- C:\WINDOWS\rescache
2014-06-11 15:48:47 ----RD---- C:\WINDOWS\ToastData
2014-06-11 15:48:47 ----D---- C:\WINDOWS\WinStore
2014-06-11 15:48:47 ----D---- C:\WINDOWS\SysWOW64
2014-06-11 15:48:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-06-11 15:48:44 ----D---- C:\WINDOWS\system32\oobe
2014-06-11 15:48:44 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2014-06-11 15:48:43 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-06-11 15:48:43 ----D---- C:\WINDOWS\system32\wbem
2014-06-11 15:48:43 ----D---- C:\WINDOWS\system32\migration
2014-06-11 15:48:43 ----D---- C:\WINDOWS\system32\cs-CZ
2014-06-11 15:48:43 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-11 15:48:42 ----D---- C:\Program Files\Internet Explorer
2014-06-11 09:25:09 ----D---- C:\WINDOWS\system32\MRT
2014-06-11 09:23:08 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 hpdskflt;@oem59.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-08-22 31040]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 SPDRIVER_1.37.1.189;SPDRIVER_1.37.1.189; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.sys [2014-06-26 52584]
R3 Accelerometer;@oem59.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-08-22 43328]
R3 BtAudioBusSrv;@oem8.inf,%SvcDesc%;IVT Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-20 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2013-08-22 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-08-14 48736]
R3 HpqKbFiltr;@oem66.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2012-08-27 26504]
R3 huawei_enumerator;huawei_enumerator; C:\WINDOWS\System32\drivers\ew_jubusenum.sys [2012-04-23 90112]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-30 5363200]
R3 IntcDAud;@oem14.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MEIx64;@oem64.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2014-02-26 62784]
R3 netr28x;@oem1.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-02 2483376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 rtbth;@oem63.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;Služba Reflektor UMDF pro knihovnu SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2013-08-22 230912]
R3 SNP2UVC;@oem15.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2012-07-28 1862536]
R3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys [2014-06-26 41856]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2014-02-26 543744]
R3 SynTP;@oem54.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-04-11 1200128]
S3 dg_ssudbus;@oem53.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2013-10-28 107288]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-15 41272]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2012-08-15 43832]
S3 ssudmdm;@oem52.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2013-10-28 204568]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2012-08-15 1578496]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc64.exe [2011-12-12 135824]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2013-10-16 681760]
R2 hpsrv;@oem59.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-08-22 33600]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-12-10 732160]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2014-02-26 131032]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-02-26 165336]
R2 lmab_device;lmab_device; C:\Windows\system32\LMabcoms.exe [2012-09-28 1048576]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-02-26 279000]
R2 MbnExt;Mobile Broadband Extension Service; C:\WINDOWS\syswow64\svchost.exe [2013-08-22 31552]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2012-07-17 1134624]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-04-25 1738200]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-04-25 2081752]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 SPBIUpd;ShopperPro Update; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2014-06-26 2346880]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2014-02-26 327680]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2014-02-07 5093216]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2014-02-26 366040]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2012-07-19 2714232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2012-08-15 138752]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-07-04 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02 116648]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-30 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-07-04 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2012-12-10 803872]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2013-08-22 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]
-----------------EOF-----------------
Zde je log RSIT
------------------------------------------------------------------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Kamila at 2014-07-09 10:10:36
Microsoft Windows 8.1
System drive C: has 419 GB (91%) free of 460 GB
Total RAM: 3979 MB (27% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:10:50, on 9. 7. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
C:\Program Files\Lexmark\Monitor\ACB\LMabMON.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Kamila.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0048292 - {11111111-1111-1111-1111-110411821192} - C:\Program Files (x86)\Sense\Sense-bho.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe
O4 - HKLM\..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [T-Mobile CManager] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE /EPT "EPLTarget\P0000000000000000" /M "L355 Series"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe
O4 - HKCU\..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
O4 - HKCU\..\Run: [Spybot-S&D Cleaning] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean
O4 - HKUS\S-1-5-18\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE /EPT "EPLTarget\P0000000000000000" /M "L355 Series" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE /EPT "EPLTarget\P0000000000000000" /M "L355 Series" (User 'Default user')
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem59.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: lmab_device - - C:\Windows\system32\LMabcoms.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13624 bytes
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
dashost.exe {8bbe872a-ae36-4a83-92e52606bfd5dfe0}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\system32\LMabcoms.exe -service
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files\Common Files\ShopperPro\spbiu.exe" /service
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
C:\Windows\system32\vcsFPService.exe
C:\Windows\system32\EscSvc64.exe
C:\WINDOWS\SysWOW64\svchost.exe -k MbnExt
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3b4ce520-074d-48d5-80b4-8e2c94480315 -SystemEventPortName:HostProcess-b9cfa17f-3b3d-4b91-95b4-ef6128b5d323 -IoCancelEventPortName:HostProcess-39303c2e-1507-4772-b369-422ca2f829e6 -NonStateChangingEventPortName:HostProcess-54ac87ec-8ebb-46d1-a1c2-30ffc8000b20 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:87230f87-a645-448e-a51a-32e53030d6ff -DeviceGroupId:
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9edce2c8-7566-49ec-8886-b1556bc66aff -SystemEventPortName:HostProcess-1fa495ce-8fba-4137-b7d3-6753aba2fc34 -IoCancelEventPortName:HostProcess-cacc916a-d66e-481c-95f7-e99b5fa720d0 -NonStateChangingEventPortName:HostProcess-4f23c4f1-47b6-404f-9ce3-4d4690ef050b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d753f0e4-cded-4576-afb9-3bf108e6501c -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
taskeng.exe {40170093-1859-49C1-B297-FF0595B1FD01}
C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Sense\Sense-nova.exe" /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /VyqoDMi /pjbTgehYw=Sense /GwamWkgE='nova' /eJPVqQJEd=http://js.clientdemocloud.com /nzJPxyFiY='{"asw":[0, 257, 0]}' /LgXrNxBX='http://update.demogensrv.com/novarun/{C ... pdate.json' /IZSOsP='task' /EIAIMMIR=''
taskhostex.exe
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\skydrive.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lexmark\Monitor\ACB\LMabMON.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
"C:\Windows\System32\spool\drivers\x64\3\E_YATII4E.EXE" /EPT "EPLTarget\P0000000000000000" /M "L355 Series"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5472.0.1431068062\1031262232" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,15 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.3347 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.3.1161434747\553539680" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.6.52287791\873639800" /prefetch:673131151
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.39.1390266360\1531727702" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5472.53.1850614903\361600813" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.56.704483580\1446338899" /prefetch:673131151
taskhostex.exe Regular
C:\WINDOWS\system32\rundll32.exe aepdu.dll,AePduRunUpdate
C:\WINDOWS\system32\msfeedssync.exe sync
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.65.665456147\1298063327" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.68.833611636\394291064" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.77.967197320\238050245" /prefetch:673131151
C:\WINDOWS\System32\sdclt.exe /CONFIGNOTIFICATION
taskeng.exe {E615713C-C702-4FCD-A052-F9340D48898E}
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_54/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5472.99.834072825\574905116" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe31_ Global\UsGthrCtrlFltPipeMssGthrPipe31 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 592 596 604 65536 600
"C:\Users\Kamila\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe# /iNlXQ /IZSOsP=task /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /pjbTgehYw='Sense' /eJPVqQJEd=http://js.clientdemocloud.com /ZmxvjFWYH /nzJPxyFiY='{"asw":[0, 257, 0]}' /LgXrNxBX='http://update.demogensrv.com/ie_code_ag ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-11.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-11.exe# /YFEwml=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#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-2.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-2.exe# /RSGlzJJ /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /mrSPztd=11111111-1111-1111-1111-110411821192 /mAHikT=ch /ZmxvjFWYH /LgXrNxBX='http://update.demogensrv.com/ie_enable_ ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-4.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-4.exe# /lhmWTQtHR /QKznSGga='Sense' /GCypiblgD='C:\Program Files (x86)\Sense\48292.xpi' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /UOEXBoMoc=300 /Ogmvo=143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com /XhHWnQGUk=0.94 /WifGDThA=a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292 /RqQkQc=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /48292.rdf /kpdUhhFgO='Sense' /eyzOJ='.' /YZyHu='Object Browser' /mAHikT=ch /nzJPxyFiY='{"asw":[0, 257, 0]}' /ZmxvjFWYH /lQpUGoTHm /RUyzNYJ /LgXrNxBX='http://update.demogensrv.com/ff_agent_u ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-5.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-5.exe# /DplMAPRMI /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /ZkhxjVpda=http://ipgeoapi.com/ /wGlHrCD=http://update.demogensrv.com /kbOtJ=2 /COnYWTE=http://logs.demogensrv.com /LgXrNxBX='http://update.demogensrv.com/updater_ag ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-5_user.job - C:\Program Files (x86)\Sense\4b2c416e-f468-4649-a776-70905f3ac508-5.exe# /DplMAPRMI /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /ZkhxjVpda=http://ipgeoapi.com/ /wGlHrCD=http://update.demogensrv.com /kbOtJ=2 /COnYWTE=http://logs.demogensrv.com /LgXrNxBX='http://update.demogensrv.com/updater_ag ... pdate.json' /zkLRd /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-6.job - C:\Program Files (x86)\Sense\Sense-novainstaller.exe# /bepdIGamD /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /VyqoDMi /pjbTgehYw=Sense /GwamWkgE='nova' /eJPVqQJEd=http://js.clientdemocloud.com /nzJPxyFiY='{"asw":[0, 257, 0]}' /IZSOsP=task /LgXrNxBX='http://update.demogensrv.com/novacode/{ ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\4b2c416e-f468-4649-a776-70905f3ac508-7.job - C:\Program Files (x86)\Sense\Sense-nova.exe# /QKznSGga='Sense' /bVBjfdNQ=48292 /kQSbsKe='000803' /gzMygfn='0' /LKiWVdB='eyJkYXRhIjp7ImRhdGUiOiJFNzR6YWRrYywwNGU4ZjI2Yi0xMTYxLTQ0MDQtYjBiNC1kNjM0Y2NlZGE4YWIsIiwidW5xIjoiMDRlOGYyNmItMTE2MS00NDA0LWIwYjQtZDYzNGNjZWRhOGFiIn19' /LgRGCP=2463E5F5D1304B9AB8061A3FE045D2E8IE /axcjFnQ=f1ad30abe208f47df40ffb3ce44b0a79 /crxHkjy=1_34_07_01 /HgYue=1.34.7.1 /PymIVkWe=1404479060 /RnpoOm=http://stats.demogensrv.com /nevRquvFu=http://errors.demogensrv.com /XwkgZpB=http://js.demogensrv.com /mAHikT=ch /VyqoDMi /pjbTgehYw=Sense /GwamWkgE='nova' /eJPVqQJEd=http://js.clientdemocloud.com /nzJPxyFiY='{"asw":[0, 257, 0]}' /LgXrNxBX='http://update.demogensrv.com/novarun/{C ... pdate.json' /IZSOsP='task' /EIAIMMIR=''#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /ua /installsource scheduler#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /ua /installsource scheduler#
C:\WINDOWS\tasks\HPCeeScheduleForKamila.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe# HPCeeScheduleForKamila (null)#
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho64.dll [2014-07-04 894976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2014-06-26 524136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho.dll [2014-07-04 655872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2014-06-26 435560]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-01-30 171992]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-01-30 399832]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-01-30 442328]
"LMPSSDMON"=C:\Program Files\Lexmark\Monitor\ACB\LMabMON.exe [2010-09-16 753664]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2014-02-26 1664000]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-04-22 21720]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile CManager"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2013-10-31 2166552]
"EPLTarget\P0000000000000000"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII4E.EXE [2012-02-28 283232]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe [2014-06-26 3211776]
"YTDownloader"=C:\Program Files (x86)\YTDownloader\YTDownloader.exe /boot []
"Spybot-S&D Cleaning"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [2014-04-25 4566984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2012-07-17 684064]
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2012-08-16 364032]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-24 491120]
"RemoteControl10"=c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2013-10-16 337184]
""= []
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2014-04-01 2007392]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.exe [2014-06-26 3211776]
"YTDownloader"=C:\Program Files (x86)\YTDownloader\YTDownloader.exe /boot []
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-04-25 4101584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-01-30 442880]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-09 10:10:36 ----D---- C:\rsit
2014-07-09 10:10:36 ----D---- C:\Program Files\trend micro
2014-07-07 14:57:17 ----A---- C:\WINDOWS\wininit.ini
2014-07-07 13:57:49 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2014-07-07 13:57:48 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-07-07 13:57:39 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-07-07 13:48:48 ----D---- C:\Program Files\CCleaner
2014-07-04 15:20:23 ----D---- C:\ProgramData\Norton
2014-07-04 15:20:20 ----D---- C:\ProgramData\NortonInstaller
2014-07-04 15:20:20 ----D---- C:\Program Files (x86)\NortonInstaller
2014-07-04 15:06:40 ----D---- C:\Program Files (x86)\7-Zip
2014-07-04 15:06:32 ----D---- C:\Users\Kamila\AppData\Roaming\JGArcadeApp
2014-07-04 15:04:31 ----D---- C:\Program Files (x86)\Sense
2014-07-04 15:04:30 ----D---- C:\Program Files (x86)\globalUpdate
2014-07-04 15:04:08 ----D---- C:\ProgramData\ShopperPro
2014-07-04 15:04:03 ----D---- C:\Program Files\Common Files\ShopperPro
2014-07-04 15:03:56 ----D---- C:\Program Files (x86)\ShopperPro
2014-06-11 09:01:04 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2014-06-11 07:12:44 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-06-11 07:12:43 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-06-11 07:12:42 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-06-11 07:12:41 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2014-06-11 07:12:41 ----A---- C:\WINDOWS\system32\gdi32.dll
2014-06-11 07:12:39 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-06-11 07:12:38 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-06-11 07:12:38 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-06-11 07:12:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-06-11 07:12:37 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-06-11 07:12:37 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-06-11 07:12:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-06-11 07:12:36 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-06-11 07:12:34 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-06-11 07:12:34 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-06-11 07:12:33 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-06-11 07:12:33 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-06-11 07:12:32 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-06-11 07:12:31 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-06-11 07:12:30 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-06-11 07:12:29 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-06-11 07:12:28 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-06-11 07:12:27 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-06-11 07:12:26 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-06-11 07:12:26 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-06-11 07:12:25 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-06-11 07:12:25 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-06-11 07:12:24 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-06-11 07:12:23 ----A---- C:\WINDOWS\system32\wininet.dll
2014-06-11 07:12:21 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-06-11 07:12:19 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-06-11 07:12:19 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-06-11 07:12:15 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-06-11 07:12:15 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-06-11 07:12:12 ----A---- C:\WINDOWS\system32\WSReset.exe
2014-06-11 07:12:11 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-06-11 07:12:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-11 07:12:11 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-06-11 07:12:11 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-11 07:11:53 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-06-11 07:11:52 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-06-11 07:11:51 ----A---- C:\WINDOWS\system32\twinui.dll
2014-06-11 07:11:50 ----A---- C:\WINDOWS\system32\shell32.dll
2014-06-11 07:11:48 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-06-11 07:11:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2014-06-11 07:11:45 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-06-11 07:11:44 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-06-11 07:11:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2014-06-11 07:11:43 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-06-11 07:11:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-06-11 07:11:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-06-11 07:11:40 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-06-11 07:11:39 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-06-11 07:11:39 ----A---- C:\WINDOWS\system32\gpsvc.dll
2014-06-11 07:11:39 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-06-11 07:11:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\win32k.sys
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-06-11 07:11:37 ----A---- C:\WINDOWS\system32\localspl.dll
2014-06-11 07:11:36 ----AC---- C:\WINDOWS\system32\drivers\bthport.sys
2014-06-11 07:11:36 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\wmpmde.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\winmde.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\services.exe
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\mfsvr.dll
2014-06-11 07:11:36 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2014-06-11 07:11:35 ----AC---- C:\WINDOWS\system32\drivers\volsnap.sys
2014-06-11 07:11:35 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\XpsGdiConverter.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\srvsvc.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2014-06-11 07:11:35 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\XpsGdiConverter.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\MDEServer.exe
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2014-06-11 07:11:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-06-11 07:11:33 ----AC---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2014-06-11 07:11:33 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\swprv.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\resutils.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\rdpencom.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\ploptin.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\dwmapi.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\defragsvc.dll
2014-06-11 07:11:33 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-06-11 07:11:32 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys
2014-06-11 07:11:32 ----AC---- C:\WINDOWS\system32\drivers\msiscsi.sys
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\rpchttp.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\MSVideoDSP.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\wscsvc.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\VSSVC.exe
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\rpchttp.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\propsys.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\mf.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\gpapi.dll
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2014-06-11 07:11:32 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\wintrust.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\srcore.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\mfps.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\mfpmp.exe
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\mfplat.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\energyprov.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\clusapi.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-06-11 07:11:31 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\tlscsp.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\wlansvc.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\tlscsp.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\mispace.dll
2014-06-11 07:11:30 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\srclient.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\wlansec.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\wlanapi.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\tsgqec.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\srclient.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\rstrui.exe
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2014-06-11 07:11:29 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-06-11 07:11:28 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2014-06-11 07:11:28 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\SYSWOW64\drvinst.exe
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\FntCache.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\DWrite.dll
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\drvinst.exe
2014-06-11 07:10:45 ----A---- C:\WINDOWS\system32\drvcfg.exe
2014-06-11 07:10:43 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-06-11 07:10:43 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-06-11 07:10:43 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-06-11 07:10:42 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-06-11 07:10:42 ----A---- C:\WINDOWS\system32\wpccpl.dll
2014-06-11 07:10:41 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2014-06-11 07:08:17 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2014-06-11 07:07:22 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-06-11 07:07:22 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-06-11 07:07:17 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieetwcollectorres.dll
2014-06-11 07:07:17 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-06-11 07:07:16 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-06-11 07:07:16 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-06-11 07:07:16 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-06-11 07:07:14 ----A---- C:\WINDOWS\system32\msrating.dll
======List of files/folders modified in the last 1 month======
2014-07-09 10:10:36 ----RD---- C:\Program Files
2014-07-09 10:10:33 ----D---- C:\WINDOWS\Prefetch
2014-07-09 10:09:01 ----D---- C:\Users\Kamila\AppData\Roaming\Skype
2014-07-09 10:00:00 ----D---- C:\WINDOWS\system32\sru
2014-07-09 09:05:15 ----D---- C:\WINDOWS\Temp
2014-07-09 09:04:56 ----D---- C:\WINDOWS\system32\Tasks
2014-07-09 09:02:05 ----D---- C:\WINDOWS\Microsoft.NET
2014-07-09 08:10:08 ----D---- C:\WINDOWS\system32\FxsTmp
2014-07-09 07:45:50 ----D---- C:\ProgramData\PDFC
2014-07-09 07:30:10 ----D---- C:\WINDOWS\AppReadiness
2014-07-09 07:12:31 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2014-07-09 07:12:13 ----D---- C:\WINDOWS\system32\config
2014-07-09 07:09:29 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2014-07-09 07:09:26 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2014-07-08 10:52:43 ----SHD---- C:\System Volume Information
2014-07-08 09:54:08 ----HD---- C:\Program Files\WindowsApps
2014-07-08 09:42:30 ----A---- C:\WINDOWS\SYSWOW64\REMOTEDEVICE.INI
2014-07-08 07:49:53 ----D---- C:\WINDOWS\debug
2014-07-08 07:08:27 ----D---- C:\Windows
2014-07-08 07:08:22 ----D---- C:\WINDOWS\SoftwareDistribution
2014-07-07 15:39:22 ----RD---- C:\Program Files (x86)
2014-07-07 15:39:22 ----D---- C:\WINDOWS\Tasks
2014-07-07 15:39:02 ----SHD---- C:\WINDOWS\Installer
2014-07-07 15:39:01 ----SHD---- C:\Config.Msi
2014-07-07 15:37:02 ----D---- C:\WINDOWS\system32\drivers
2014-07-07 15:35:52 ----RD---- C:\WINDOWS\System32
2014-07-07 15:35:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-07 15:35:51 ----D---- C:\WINDOWS\Inf
2014-07-07 15:31:54 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-07-07 13:58:01 ----SD---- C:\ProgramData\Microsoft
2014-07-07 13:57:48 ----HD---- C:\ProgramData
2014-07-07 13:51:29 ----DC---- C:\WINDOWS\Panther
2014-07-07 13:51:29 ----D---- C:\WINDOWS\ModemLogs
2014-07-07 13:51:27 ----D---- C:\WINDOWS\Minidump
2014-07-04 15:33:02 ----D---- C:\Program Files (x86)\Common Files
2014-07-04 15:04:24 ----D---- C:\Program Files\Common Files\System
2014-07-04 15:04:03 ----D---- C:\Program Files\Common Files
2014-07-03 07:20:02 ----D---- C:\Users\Kamila\AppData\Roaming\XnView
2014-06-26 07:41:45 ----D---- C:\WINDOWS\CbsTemp
2014-06-26 07:41:42 ----D---- C:\WINDOWS\WinSxS
2014-06-12 09:09:07 ----D---- C:\WINDOWS\system32\DriverStore
2014-06-12 08:37:15 ----D---- C:\WINDOWS\system32\catroot2
2014-06-12 08:27:39 ----D---- C:\WINDOWS\rescache
2014-06-11 15:48:47 ----RD---- C:\WINDOWS\ToastData
2014-06-11 15:48:47 ----D---- C:\WINDOWS\WinStore
2014-06-11 15:48:47 ----D---- C:\WINDOWS\SysWOW64
2014-06-11 15:48:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-06-11 15:48:44 ----D---- C:\WINDOWS\system32\oobe
2014-06-11 15:48:44 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2014-06-11 15:48:43 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-06-11 15:48:43 ----D---- C:\WINDOWS\system32\wbem
2014-06-11 15:48:43 ----D---- C:\WINDOWS\system32\migration
2014-06-11 15:48:43 ----D---- C:\WINDOWS\system32\cs-CZ
2014-06-11 15:48:43 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-11 15:48:42 ----D---- C:\Program Files\Internet Explorer
2014-06-11 09:25:09 ----D---- C:\WINDOWS\system32\MRT
2014-06-11 09:23:08 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 hpdskflt;@oem59.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-08-22 31040]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 SPDRIVER_1.37.1.189;SPDRIVER_1.37.1.189; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.1.189\jsdrv.sys [2014-06-26 52584]
R3 Accelerometer;@oem59.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-08-22 43328]
R3 BtAudioBusSrv;@oem8.inf,%SvcDesc%;IVT Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-20 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2013-08-22 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-08-14 48736]
R3 HpqKbFiltr;@oem66.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2012-08-27 26504]
R3 huawei_enumerator;huawei_enumerator; C:\WINDOWS\System32\drivers\ew_jubusenum.sys [2012-04-23 90112]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-01-30 5363200]
R3 IntcDAud;@oem14.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MEIx64;@oem64.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2014-02-26 62784]
R3 netr28x;@oem1.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-02 2483376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 rtbth;@oem63.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;Služba Reflektor UMDF pro knihovnu SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2013-08-22 230912]
R3 SNP2UVC;@oem15.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2012-07-28 1862536]
R3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys [2014-06-26 41856]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2014-02-26 543744]
R3 SynTP;@oem54.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-04-11 1200128]
S3 dg_ssudbus;@oem53.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2013-10-28 107288]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-15 41272]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2012-08-15 43832]
S3 ssudmdm;@oem52.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2013-10-28 204568]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2012-08-15 1578496]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc64.exe [2011-12-12 135824]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2013-10-16 681760]
R2 hpsrv;@oem59.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-08-22 33600]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-12-10 732160]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2014-02-26 131032]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-02-26 165336]
R2 lmab_device;lmab_device; C:\Windows\system32\LMabcoms.exe [2012-09-28 1048576]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-02-26 279000]
R2 MbnExt;Mobile Broadband Extension Service; C:\WINDOWS\syswow64\svchost.exe [2013-08-22 31552]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2012-07-17 1134624]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-04-25 1738200]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-04-25 2081752]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928]
R2 SPBIUpd;ShopperPro Update; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2014-06-26 2346880]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2014-02-26 327680]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2014-02-07 5093216]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2014-02-26 366040]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2012-07-19 2714232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2012-08-15 138752]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-07-04 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02 116648]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-01-30 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-07-04 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2012-12-10 803872]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2013-08-22 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]
-----------------EOF-----------------