Vypíná se mi počítač
Napsal: 22 črc 2014 17:03
Mám problém s tím, že se mi vypne počítač. Měl jsme za to, že to způsobovala přehřátá grafika se kterou jsem měl před časem technické problémy. Podle kámoše to dělá něco jiného tak snad by mi někdo poradil
Mám už celkem starou Ati Radeon 5770
http://www.czc.cz/msi-r5770-pmd1g-pci-e/72029/produkt
Před měsícem cca mi vypadl větrák. Kápl jsem do něj trochu oleje a zase se rozjel. Bednu jsem nechal otevřenou. Před pár dny se mi poprvé počítač vypnul a i několikrát poté. Grafiku jsem vyčistil od prachu kterým byla zahlcená. Nyní má grafika teplotu při běžícím systému kolem 52%. Bude to dle mě asi moc
Budu rád za každou pomoc:)
Logfile of random's system information tool 1.10 (written by random/random)
Run by Frank at 2014-07-22 18:04:55
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 210 GB (60%) free of 350 GB
Total RAM: 8183 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:04:58, on 22.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
D:\Programy\Garena Plus\ggdllhost.exe
D:\Programy\Game Booster 3\gbtray.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
C:\Program Files (x86)\Overwolf\Overwolf.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Windows\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Common Files\Overwolf\0.76.1.0\OverwolfHelper.exe
D:\Programy\Torrent\utorrent.exe
D:\Programy\SpeedFan\speedfan.exe
D:\Programy\Avast\avastUi.exe
C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\AdbUpdate.exe
C:\Program Files\trend micro\Frank.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll
O2 - BHO: TrustMediaViewerV1alpha3354 - {0666f299-cba0-46f0-82a3-4b4f43d9fa64} - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha3354\ie\TrustMediaViewerV1alpha3354.dll
O2 - BHO: VideoPlayerV3beta278 - {2592c4c9-97dc-41bc-841e-861c515d0558} - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta278\ie\VideoPlayerV3beta278.dll
O2 - BHO: Slick Savings - {34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5} - C:\Users\Frank\AppData\Roaming\Slick Savings\Coupons.dll
O2 - BHO: MediaViewV1alpha6717 - {5d670909-08bf-4bae-9b8d-b1a651e96b83} - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha6717\ie\MediaViewV1alpha6717.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\Avast\aswWebRepIE.dll
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll
O2 - BHO: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll
O2 - BHO: MediaPlayerV1alpha876 - {b03109c3-d2bf-457d-9d39-92d074b46a8f} - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha876\ie\MediaPlayerV1alpha876.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: MediaViewV1alpha5 - {e3e2a9db-5317-421b-acc6-0b298c44ce8b} - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha5\ie\MediaViewV1alpha5.dll
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll
O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "D:\Programy\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Frank\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MzRAMBooster] D:\Programy\Mz RAM Booster\MzRAMBooster.exe
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe
O4 - HKCU\..\Run: [Slick Savings] "C:\Users\Frank\AppData\Roaming\Slick Savings\CouponsHelper.exe"
O4 - HKCU\..\Run: [Steam] "D:\Programy\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GarenaPlus] "D:\Programy\Garena Plus\GarenaMessenger.exe" -autolaunch
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Facebook Messenger.lnk = Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Startup: wupdate.exe
O4 - Global Startup: GamePark klient 2.lnk = D:\Programy\GamePark2\gpcl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.7\ViProtocol.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - D:\Programy\Avast\AvastSvc.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe
O23 - Service: PC Speed Up Service (PCSUService) - Unknown owner - C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Loki Drivers Auto Removal (pr2agqwb) (pr2agqwb) - Unknown owner - C:\Windows\system32\pr2agqwb.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: TunngleService - Tunngle.net GmbH - D:\Programy\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater18.1.7 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 14192 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
"C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\SysWOW64\nethtsrv.exe
"C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe" KMPProcess
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
taskeng.exe {5FE4084C-20C5-4DAB-BE9D-C98F51C90D4F}
C:\Windows\SysWOW64\netupdsrv.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskeng.exe {4E8BCC9F-C763-4C62-9671-34DA410A009C}
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe"
"D:\Programy\Garena Plus\ggdllhost.exe" "D:\Programy\Garena Plus\ggspawn.dll",rundll_entry
"D:\Programy\Game Booster 3\gbtray.exe"
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe"
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
"D:\Programy\Mz RAM Booster\MzRAMBooster.exe"
"C:\Program Files (x86)\Overwolf\Overwolf.exe" -silent
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Users\Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\loggingserver.exe" 72648 "C:\ProgramData\AVG Secure Search\Logger\logger.properties"
\??\C:\Windows\system32\conhost.exe "-11934913251830843408-242653796-1607248790-1084906786-1280885116-12475300112078438554
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:3052
szndesktop.exe default start
"C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "-1169613408-5320915821787937269166984018917899363893588623251410366938-368560106
"C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings64.exe" HOOK -Dwthx183.dll -IE"DefaultScope" -GC"C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Web Data" -FF"C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default\Prefs.js"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
ctfmon.exe
"C:\Program Files (x86)\Common Files\Overwolf\0.76.1.0\OverwolfHelper.exe" "path=C:\Program Files (x86)\Overwolf\0.76.1.0" "overwolfprocid=3160"
"C:\Program Files (x86)\Common Files\Overwolf\0.76.1.0\OverwolfHelper64.exe" "path=C:\Program Files (x86)\Overwolf\0.76.1.0\x64\OWExplorerLauncher.dll
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"D:\Programy\Torrent\utorrent.exe"
"D:\Programy\SpeedFan\speedfan.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"D:\Programy\Avast\AvastSvc.exe"
C:\Windows\system32\wbem\wmiprvse.exe
D:\Programy\Avast\avastUi.exe
"C:\Program Files\Windows Sidebar\sidebar.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe"
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe" /SkipUac
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe"
"C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\AdbUpdate.exe" /cplugin
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\Download\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3846953067-3704150249-2008587710-1000Core.job - C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3846953067-3704150249-2008587710-1000UA.job - C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\PC SpeedUp Service Deactivator.job - C:\Program Files (x86)\Zrychleni Pocitace\PCSUSD.exe /dev0 /idle
C:\Windows\tasks\Registry Optimizer_DEFAULT.job - C:\Program Files (x86)\WinZip Registry Optimizer\Winzipro.exe -default
C:\Windows\tasks\Registry Optimizer_UPDATES.job - C:\Program Files (x86)\WinZip Registry Optimizer\Winzipro.exe -updatecheck
=========Mozilla firefox=========
ProfilePath - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default
prefs.js - "keyword.URL" - "https://search.yahoo.com/search?fr=gree ... =800236&p="
prefs.js - "keyword.url" - "http://search.yahoo.com/search?fr=green ... =800236&p="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.7\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@raidcall.en/RCplugin]
"Description"=Raidcall plugin
"Path"=C:\Users\Frank\AppData\Roaming\raidcall\plugins\nprcplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@t.garena.com/garenatalk]
"Description"=Garena Talk Plugin
"Path"=D:\Programy\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=D:\Programy\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default\extensions\
adremoveext@adremoveext.net
ascsurfingprotection@iobit.com
edauyoeae@mpdmxjws.co.uk
krvd.7dwc@zvcaieey-.co.uk
ntk2-dfj@azggj-oa.net
uoio.04k@mywzmsy-.net
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default\searchplugins\
yahoo_ff.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0666f299-cba0-46f0-82a3-4b4f43d9fa64}]
TrustMediaViewerV1alpha3354 - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha3354\ie\TrustMediaViewerV1alpha3354x64.dll [2014-06-26 102912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-01-18 2486592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}]
Slick Savings - C:\Users\Frank\AppData\Roaming\Slick Savings\Coupons64.dll [2014-07-05 728424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE64.dll [2014-07-22 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
IObit Apps Toolbar - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll [2014-05-26 1398592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0666f299-cba0-46f0-82a3-4b4f43d9fa64}]
Trust Media Viewer - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha3354\ie\TrustMediaViewerV1alpha3354.dll [2014-06-26 87552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2592c4c9-97dc-41bc-841e-861c515d0558}]
Video Player - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta278\ie\VideoPlayerV3beta278.dll [2014-01-07 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}]
Slick Savings - C:\Users\Frank\AppData\Roaming\Slick Savings\Coupons.dll [2014-07-05 609128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5d670909-08bf-4bae-9b8d-b1a651e96b83}]
Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha6717\ie\MediaViewV1alpha6717.dll [2014-02-27 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE.dll [2014-07-22 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll [2014-06-03 3594264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}]
Ads Removal - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll [2014-06-11 464720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b03109c3-d2bf-457d-9d39-92d074b46a8f}]
Media Player - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha876\ie\MediaPlayerV1alpha876.dll [2014-01-28 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2013-11-25 665408]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e3e2a9db-5317-421b-acc6-0b298c44ce8b}]
Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha5\ie\MediaViewV1alpha5.dll [2014-02-26 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{03EB0E9C-7A91-4381-A220-9B52B641CDB1} - IObit Apps Toolbar - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE64.dll [2014-05-26 1997120]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll [2014-06-03 3594264]
{03EB0E9C-7A91-4381-A220-9B52B641CDB1} - IObit Apps Toolbar - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll [2014-05-26 1398592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-09-03 13651672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Frank\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Advanced SystemCare 7"=C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2013-12-18 2285344]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"MzRAMBooster"=D:\Programy\Mz RAM Booster\MzRAMBooster.exe [2011-02-10 295936]
"Facebook Update"=C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-18 138096]
"DAEMON Tools Lite"=D:\Programy\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Overwolf"=C:\Program Files (x86)\Overwolf\Overwolf.exe [2014-06-10 39712]
"PCSpeedUp"=C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe [2014-06-24 300840]
"Slick Savings"=C:\Users\Frank\AppData\Roaming\Slick Savings\CouponsHelper.exe [2014-02-13 832320]
"Steam"=D:\Programy\Steam\Steam.exe [2014-04-24 1825984]
"GarenaPlus"=D:\Programy\Garena Plus\GarenaMessenger.exe [2014-06-11 9936176]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe [2007-02-07 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe [2007-02-07 71216]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2014\avgui.exe [2014-05-13 5181456]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-04-06 102400]
"vProt"=C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2014-06-03 2567192]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
""= []
"SearchSettings"=C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [2014-05-26 1404736]
"AvastUI.exe"=D:\Programy\Avast\AvastUI.exe [2014-07-22 4086432]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
GamePark klient 2.lnk - D:\Programy\GamePark2\gpcl.exe
C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Facebook Messenger.lnk - C:\Users\Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
wupdate.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\PROGRA~2\GS-ENA~1\ASSIST~2.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\hry\Loki\Loki.exe"="D:\hry\Loki\Loki.exe:*:Enabled:Loki"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\msdrm.dll
2014-07-22 17:27:58 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2014-07-22 17:27:38 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll20140722175416.dll
2014-07-22 17:27:38 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll20140722172757.dll
2014-07-22 17:27:38 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2014-07-22 17:27:35 ----A---- C:\Windows\system32\drivers\SmartDefragDriver.sys
2014-07-22 16:40:22 ----D---- C:\Users\Frank\AppData\Roaming\AVAST Software
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswStm.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-07-22 16:39:58 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-07-22 16:39:58 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-07-22 16:39:58 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-07-22 16:39:55 ----A---- C:\Windows\system32\aswBoot.exe
2014-07-22 16:39:54 ----A---- C:\Windows\avastSS.scr
2014-07-22 16:38:45 ----D---- C:\ProgramData\AVAST Software
2014-07-22 16:30:04 ----SHD---- C:\Config.Msi
2014-07-22 16:21:39 ----D---- C:\Program Files\trend micro
2014-07-22 16:21:38 ----D---- C:\rsit
2014-07-22 15:30:45 ----A---- C:\awh6E2.tmp
2014-07-22 11:02:15 ----A---- C:\awh15FF.tmp
2014-07-21 19:03:11 ----A---- C:\awh2164.tmp
2014-07-21 18:02:40 ----AS---- C:\Windows\SYSWOW64\lcpmncydkypr.exe
2014-07-21 18:02:40 ----AS---- C:\Windows\SYSWOW64\dcgmncydkypr.exe
2014-07-21 18:02:39 ----AS---- C:\Windows\SYSWOW64\acumncydkypr.exe
2014-07-21 16:53:56 ----A---- C:\awh1FA0.tmp
2014-07-21 16:30:34 ----A---- C:\awh109.tmp
2014-07-21 15:36:24 ----A---- C:\awh5724.tmp
2014-07-21 10:40:58 ----A---- C:\awhA717.tmp
2014-07-20 21:18:00 ----A---- C:\awhBC7B.tmp
2014-07-20 19:20:12 ----A---- C:\awhD91F.tmp
2014-07-17 15:42:33 ----A---- C:\awh28F.tmp
2014-07-17 14:11:55 ----A---- C:\awhF862.tmp
2014-07-17 10:49:51 ----A---- C:\awh57FE.tmp
2014-07-17 10:37:45 ----A---- C:\awh5E55.tmp
2014-07-17 09:58:47 ----A---- C:\awh81DB.tmp
2014-07-16 13:07:18 ----A---- C:\awh732C.tmp
2014-07-16 05:08:21 ----SH---- C:\Trainer.dll
2014-07-16 01:39:15 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-07-15 21:05:36 ----A---- C:\awhEA0.tmp
2014-07-15 20:43:28 ----A---- C:\awhC3F.tmp
2014-07-15 18:47:00 ----A---- C:\awhE281.tmp
2014-07-15 18:37:28 ----A---- C:\awh943.tmp
2014-07-15 12:06:30 ----A---- C:\awhF8B0.tmp
2014-07-14 18:42:52 ----A---- C:\awhE629.tmp
2014-07-14 12:48:46 ----A---- C:\awh11EA.tmp
2014-07-14 00:42:10 ----A---- C:\awh646.tmp
2014-07-13 13:27:59 ----A---- C:\awh1831.tmp
2014-07-12 13:24:00 ----A---- C:\awh2DF2.tmp
2014-07-11 18:31:05 ----A---- C:\awh7169.tmp
2014-07-11 13:07:30 ----A---- C:\awh1BE8.tmp
2014-07-10 12:06:59 ----A---- C:\awh27EA.tmp
2014-07-09 13:06:40 ----A---- C:\awh2635.tmp
2014-07-09 09:28:56 ----A---- C:\Windows\system32\drivers\nethfdrv.sys
2014-07-09 09:28:30 ----A---- C:\Windows\SYSWOW64\installd.exe
2014-07-09 09:28:08 ----A---- C:\Windows\SYSWOW64\hfnapi.dll
2014-07-09 09:28:00 ----A---- C:\Windows\SYSWOW64\hfpapi.dll
2014-07-08 09:06:43 ----A---- C:\awh1C65.tmp
2014-07-07 10:06:38 ----A---- C:\awh1515.tmp
2014-07-06 12:08:44 ----A---- C:\awh6C3.tmp
2014-07-05 11:44:55 ----A---- C:\awh675.tmp
2014-07-04 15:49:19 ----A---- C:\awhE60A.tmp
2014-07-04 13:06:47 ----A---- C:\awh114E.tmp
2014-07-03 13:07:15 ----A---- C:\awh7493.tmp
2014-07-02 12:41:25 ----A---- C:\awh35CF.tmp
2014-07-02 12:39:22 ----D---- C:\Users\Frank\AppData\Roaming\QuickScan
2014-07-01 10:08:45 ----A---- C:\awh740.tmp
2014-07-01 02:37:55 ----A---- C:\awh560B.tmp
2014-07-01 01:34:23 ----A---- C:\awh56E5.tmp
2014-06-30 12:07:04 ----A---- C:\awh619F.tmp
2014-06-29 13:13:07 ----A---- C:\awh35CE.tmp
2014-06-28 18:26:04 ----D---- C:\Program Files (x86)\TrustMediaViewerV1
2014-06-28 18:09:10 ----A---- C:\awhDC8.tmp
2014-06-26 16:01:00 ----A---- C:\awh38DA.tmp
2014-06-25 17:33:11 ----A---- C:\awh1B2D.tmp
2014-06-24 15:50:30 ----A---- C:\awhDA6.tmp
2014-06-23 16:22:22 ----A---- C:\awh5E45.tmp
======List of files/folders modified in the last 1 month======
2014-07-22 18:04:57 ----D---- C:\Windows\Temp
2014-07-22 18:04:29 ----D---- C:\Users\Frank\AppData\Roaming\Skype
2014-07-22 17:54:28 ----D---- C:\Windows\system32\Tasks
2014-07-22 17:54:16 ----D---- C:\Windows\System32
2014-07-22 17:53:09 ----D---- C:\Windows\winsxs
2014-07-22 17:53:07 ----D---- C:\Windows\system32\catroot2
2014-07-22 17:53:07 ----D---- C:\Windows\system32\catroot
2014-07-22 17:48:28 ----D---- C:\Users\Frank\AppData\Roaming\TS3Client
2014-07-22 17:46:07 ----D---- C:\Users\Frank\AppData\Roaming\AIMP3
2014-07-22 17:46:05 ----SHD---- C:\Windows\Installer
2014-07-22 17:46:05 ----D---- C:\Windows\Microsoft.NET
2014-07-22 17:45:54 ----HD---- C:\ProgramData
2014-07-22 17:44:15 ----D---- C:\Programy
2014-07-22 17:40:46 ----SHD---- C:\System Volume Information
2014-07-22 17:38:23 ----D---- C:\Windows\SysWOW64
2014-07-22 17:38:23 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-07-22 17:38:15 ----D---- C:\Windows\inf
2014-07-22 17:38:14 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-07-22 17:37:20 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-07-22 17:37:20 ----D---- C:\Windows\system32\cs-CZ
2014-07-22 17:36:59 ----D---- C:\Windows\system32\config
2014-07-22 17:36:37 ----D---- C:\Windows\Logs
2014-07-22 17:36:37 ----D---- C:\Windows
2014-07-22 17:27:35 ----D---- C:\Windows\system32\drivers
2014-07-22 17:27:31 ----D---- C:\Program Files (x86)\IObit
2014-07-22 17:27:29 ----D---- C:\Users\Frank\AppData\Roaming\IObit
2014-07-22 17:11:45 ----D---- C:\Windows\Tasks
2014-07-22 16:40:09 ----D---- C:\Windows\Prefetch
2014-07-22 16:39:11 ----RD---- C:\Program Files
2014-07-22 16:32:41 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-07-22 16:31:42 ----D---- C:\ProgramData\MFAData
2014-07-22 16:28:11 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2014-07-22 16:04:02 ----SD---- C:\ProgramData\Microsoft
2014-07-22 15:30:51 ----D---- C:\Users\Frank\AppData\Roaming\Seznam.cz
2014-07-22 15:27:11 ----D---- C:\Program Files (x86)\Zrychleni Pocitace
2014-07-21 18:04:31 ----SD---- C:\Users\Frank\AppData\Roaming\Microsoft
2014-07-21 18:02:39 ----D---- C:\Windows\SYSWOW64\bitstreams
2014-07-21 17:43:01 ----RSD---- C:\Windows\assembly
2014-07-17 19:09:41 ----D---- C:\ProgramData\YTD Video Downloader
2014-07-16 01:39:15 ----RD---- C:\Program Files (x86)
2014-07-16 01:04:11 ----D---- C:\Users\Frank\AppData\Roaming\vlc
2014-07-09 20:01:12 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-05 14:22:58 ----D---- C:\Users\Frank\AppData\Roaming\Tunngle
2014-07-05 14:22:58 ----D---- C:\ProgramData\Tunngle
2014-07-05 13:00:48 ----D---- C:\Users\Frank\AppData\Roaming\Slick Savings
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-22 224896]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 pe3agqwb;Loki Environment Driver (pe3agqwb); C:\Windows\system32\drivers\pe3agqwb.sys [2007-11-14 72296]
R0 ps7agqwb;Loki Synchronization Driver (ps7agqwb); C:\Windows\system32\drivers\ps7agqwb.sys [2007-11-14 102000]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2014-06-04 21184]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-22 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-07-22 1041168]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2014-06-03 50464]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-01-21 283064]
R1 nethfdrv;nethfdrv; \??\C:\Windows\system32\drivers\nethfdrv.sys [2014-07-09 46160]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2007-08-07 57776]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-22 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-22 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-22 92008]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-04-07 6659072]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-04-07 195584]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-04-08 124944]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-09-10 3640024]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2013-04-10 849992]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [2013-09-18 14112]
R4 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys []
R4 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys []
R4 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys []
R4 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys []
R4 RegFilter;RegFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [2013-11-19 34848]
S0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-22 65776]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-22 427360]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-04-07 6659072]
S3 GGSAFERDriver;GGSAFER Driver; \??\D:\Programy\Garena Plus\Room\safedrv.sys []
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S4 Avgdiska;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiska.sys []
S4 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6a.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [2013-12-09 881440]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-04-07 202752]
R2 Application Updater;Application Updater; C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe [2014-05-26 807800]
R2 avast! Antivirus;avast! Antivirus; D:\Programy\Avast\AvastSvc.exe [2014-07-22 50344]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-09 123856]
R2 IMFservice;IMF Service; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2014-05-15 342336]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe [2013-07-08 1922600]
R2 PCSUService;PC Speed Up Service; C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe [2014-06-24 430888]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-01-19 76888]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2007-02-07 173616]
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2013-10-30 2099000]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 vToolbarUpdater18.1.7;vToolbarUpdater18.1.7; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe [2014-06-03 1808408]
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [2014-05-13 3644432]
S2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [2014-05-13 292424]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2013-12-03 2151200]
S2 pr2agqwb;Loki Drivers Auto Removal (pr2agqwb); C:\Windows\system32\pr2agqwb.exe [2007-11-14 777576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-09 262320]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-01-10 111616]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-05-03 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 OverwolfUpdater;Overwolf Updater Windows SCM; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2014-06-10 976672]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-04-24 572096]
S3 TunngleService;TunngleService; D:\Programy\Tunngle\TnglCtrl.exe [2013-11-06 758224]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-18 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-09 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------
Mám už celkem starou Ati Radeon 5770
http://www.czc.cz/msi-r5770-pmd1g-pci-e/72029/produkt
Před měsícem cca mi vypadl větrák. Kápl jsem do něj trochu oleje a zase se rozjel. Bednu jsem nechal otevřenou. Před pár dny se mi poprvé počítač vypnul a i několikrát poté. Grafiku jsem vyčistil od prachu kterým byla zahlcená. Nyní má grafika teplotu při běžícím systému kolem 52%. Bude to dle mě asi moc
Budu rád za každou pomoc:)
Logfile of random's system information tool 1.10 (written by random/random)
Run by Frank at 2014-07-22 18:04:55
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 210 GB (60%) free of 350 GB
Total RAM: 8183 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:04:58, on 22.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
D:\Programy\Garena Plus\ggdllhost.exe
D:\Programy\Game Booster 3\gbtray.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
C:\Program Files (x86)\Overwolf\Overwolf.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Windows\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Common Files\Overwolf\0.76.1.0\OverwolfHelper.exe
D:\Programy\Torrent\utorrent.exe
D:\Programy\SpeedFan\speedfan.exe
D:\Programy\Avast\avastUi.exe
C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\AdbUpdate.exe
C:\Program Files\trend micro\Frank.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll
O2 - BHO: TrustMediaViewerV1alpha3354 - {0666f299-cba0-46f0-82a3-4b4f43d9fa64} - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha3354\ie\TrustMediaViewerV1alpha3354.dll
O2 - BHO: VideoPlayerV3beta278 - {2592c4c9-97dc-41bc-841e-861c515d0558} - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta278\ie\VideoPlayerV3beta278.dll
O2 - BHO: Slick Savings - {34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5} - C:\Users\Frank\AppData\Roaming\Slick Savings\Coupons.dll
O2 - BHO: MediaViewV1alpha6717 - {5d670909-08bf-4bae-9b8d-b1a651e96b83} - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha6717\ie\MediaViewV1alpha6717.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\Avast\aswWebRepIE.dll
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll
O2 - BHO: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll
O2 - BHO: MediaPlayerV1alpha876 - {b03109c3-d2bf-457d-9d39-92d074b46a8f} - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha876\ie\MediaPlayerV1alpha876.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: MediaViewV1alpha5 - {e3e2a9db-5317-421b-acc6-0b298c44ce8b} - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha5\ie\MediaViewV1alpha5.dll
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll
O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "D:\Programy\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Frank\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MzRAMBooster] D:\Programy\Mz RAM Booster\MzRAMBooster.exe
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe
O4 - HKCU\..\Run: [Slick Savings] "C:\Users\Frank\AppData\Roaming\Slick Savings\CouponsHelper.exe"
O4 - HKCU\..\Run: [Steam] "D:\Programy\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GarenaPlus] "D:\Programy\Garena Plus\GarenaMessenger.exe" -autolaunch
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Facebook Messenger.lnk = Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Startup: wupdate.exe
O4 - Global Startup: GamePark klient 2.lnk = D:\Programy\GamePark2\gpcl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.7\ViProtocol.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - D:\Programy\Avast\AvastSvc.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe
O23 - Service: PC Speed Up Service (PCSUService) - Unknown owner - C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Loki Drivers Auto Removal (pr2agqwb) (pr2agqwb) - Unknown owner - C:\Windows\system32\pr2agqwb.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: TunngleService - Tunngle.net GmbH - D:\Programy\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater18.1.7 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 14192 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
"C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\SysWOW64\nethtsrv.exe
"C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe" KMPProcess
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
taskeng.exe {5FE4084C-20C5-4DAB-BE9D-C98F51C90D4F}
C:\Windows\SysWOW64\netupdsrv.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskeng.exe {4E8BCC9F-C763-4C62-9671-34DA410A009C}
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe"
"D:\Programy\Garena Plus\ggdllhost.exe" "D:\Programy\Garena Plus\ggspawn.dll",rundll_entry
"D:\Programy\Game Booster 3\gbtray.exe"
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe"
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
"D:\Programy\Mz RAM Booster\MzRAMBooster.exe"
"C:\Program Files (x86)\Overwolf\Overwolf.exe" -silent
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Users\Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\loggingserver.exe" 72648 "C:\ProgramData\AVG Secure Search\Logger\logger.properties"
\??\C:\Windows\system32\conhost.exe "-11934913251830843408-242653796-1607248790-1084906786-1280885116-12475300112078438554
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:3052
szndesktop.exe default start
"C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "-1169613408-5320915821787937269166984018917899363893588623251410366938-368560106
"C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings64.exe" HOOK -Dwthx183.dll -IE"DefaultScope" -GC"C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Web Data" -FF"C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default\Prefs.js"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
ctfmon.exe
"C:\Program Files (x86)\Common Files\Overwolf\0.76.1.0\OverwolfHelper.exe" "path=C:\Program Files (x86)\Overwolf\0.76.1.0" "overwolfprocid=3160"
"C:\Program Files (x86)\Common Files\Overwolf\0.76.1.0\OverwolfHelper64.exe" "path=C:\Program Files (x86)\Overwolf\0.76.1.0\x64\OWExplorerLauncher.dll
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"D:\Programy\Torrent\utorrent.exe"
"D:\Programy\SpeedFan\speedfan.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"D:\Programy\Avast\AvastSvc.exe"
C:\Windows\system32\wbem\wmiprvse.exe
D:\Programy\Avast\avastUi.exe
"C:\Program Files\Windows Sidebar\sidebar.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe"
"C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe" /SkipUac
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe"
"C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\AdbUpdate.exe" /cplugin
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\Download\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3846953067-3704150249-2008587710-1000Core.job - C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3846953067-3704150249-2008587710-1000UA.job - C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\PC SpeedUp Service Deactivator.job - C:\Program Files (x86)\Zrychleni Pocitace\PCSUSD.exe /dev0 /idle
C:\Windows\tasks\Registry Optimizer_DEFAULT.job - C:\Program Files (x86)\WinZip Registry Optimizer\Winzipro.exe -default
C:\Windows\tasks\Registry Optimizer_UPDATES.job - C:\Program Files (x86)\WinZip Registry Optimizer\Winzipro.exe -updatecheck
=========Mozilla firefox=========
ProfilePath - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default
prefs.js - "keyword.URL" - "https://search.yahoo.com/search?fr=gree ... =800236&p="
prefs.js - "keyword.url" - "http://search.yahoo.com/search?fr=green ... =800236&p="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.7\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@raidcall.en/RCplugin]
"Description"=Raidcall plugin
"Path"=C:\Users\Frank\AppData\Roaming\raidcall\plugins\nprcplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@t.garena.com/garenatalk]
"Description"=Garena Talk Plugin
"Path"=D:\Programy\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=D:\Programy\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default\extensions\
adremoveext@adremoveext.net
ascsurfingprotection@iobit.com
edauyoeae@mpdmxjws.co.uk
krvd.7dwc@zvcaieey-.co.uk
ntk2-dfj@azggj-oa.net
uoio.04k@mywzmsy-.net
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\fjxhpoy1.default\searchplugins\
yahoo_ff.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0666f299-cba0-46f0-82a3-4b4f43d9fa64}]
TrustMediaViewerV1alpha3354 - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha3354\ie\TrustMediaViewerV1alpha3354x64.dll [2014-06-26 102912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-01-18 2486592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}]
Slick Savings - C:\Users\Frank\AppData\Roaming\Slick Savings\Coupons64.dll [2014-07-05 728424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE64.dll [2014-07-22 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
IObit Apps Toolbar - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll [2014-05-26 1398592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0666f299-cba0-46f0-82a3-4b4f43d9fa64}]
Trust Media Viewer - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha3354\ie\TrustMediaViewerV1alpha3354.dll [2014-06-26 87552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2592c4c9-97dc-41bc-841e-861c515d0558}]
Video Player - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta278\ie\VideoPlayerV3beta278.dll [2014-01-07 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}]
Slick Savings - C:\Users\Frank\AppData\Roaming\Slick Savings\Coupons.dll [2014-07-05 609128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5d670909-08bf-4bae-9b8d-b1a651e96b83}]
Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha6717\ie\MediaViewV1alpha6717.dll [2014-02-27 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - D:\Programy\Avast\aswWebRepIE.dll [2014-07-22 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll [2014-06-03 3594264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}]
Ads Removal - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll [2014-06-11 464720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b03109c3-d2bf-457d-9d39-92d074b46a8f}]
Media Player - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha876\ie\MediaPlayerV1alpha876.dll [2014-01-28 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2013-11-25 665408]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e3e2a9db-5317-421b-acc6-0b298c44ce8b}]
Media View - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha5\ie\MediaViewV1alpha5.dll [2014-02-26 87040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{03EB0E9C-7A91-4381-A220-9B52B641CDB1} - IObit Apps Toolbar - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE64.dll [2014-05-26 1997120]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.7.598\AVG SafeGuard toolbar_toolbar.dll [2014-06-03 3594264]
{03EB0E9C-7A91-4381-A220-9B52B641CDB1} - IObit Apps Toolbar - C:\Program Files (x86)\IObit Apps Toolbar\IE\9.3\iobitappsToolbarIE.dll [2014-05-26 1398592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-09-03 13651672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Frank\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Frank\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Advanced SystemCare 7"=C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2013-12-18 2285344]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"MzRAMBooster"=D:\Programy\Mz RAM Booster\MzRAMBooster.exe [2011-02-10 295936]
"Facebook Update"=C:\Users\Frank\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-18 138096]
"DAEMON Tools Lite"=D:\Programy\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Overwolf"=C:\Program Files (x86)\Overwolf\Overwolf.exe [2014-06-10 39712]
"PCSpeedUp"=C:\Program Files (x86)\Zrychleni Pocitace\PCSUNotifier.exe [2014-06-24 300840]
"Slick Savings"=C:\Users\Frank\AppData\Roaming\Slick Savings\CouponsHelper.exe [2014-02-13 832320]
"Steam"=D:\Programy\Steam\Steam.exe [2014-04-24 1825984]
"GarenaPlus"=D:\Programy\Garena Plus\GarenaMessenger.exe [2014-06-11 9936176]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe [2007-02-07 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe [2007-02-07 71216]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2014\avgui.exe [2014-05-13 5181456]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-04-06 102400]
"vProt"=C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2014-06-03 2567192]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
""= []
"SearchSettings"=C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [2014-05-26 1404736]
"AvastUI.exe"=D:\Programy\Avast\AvastUI.exe [2014-07-22 4086432]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
GamePark klient 2.lnk - D:\Programy\GamePark2\gpcl.exe
C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Facebook Messenger.lnk - C:\Users\Frank\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
wupdate.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\PROGRA~2\GS-ENA~1\ASSIST~2.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\hry\Loki\Loki.exe"="D:\hry\Loki\Loki.exe:*:Enabled:Loki"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-07-22 17:37:18 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc_isv.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\secproc.dll
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\RMActivate.exe
2014-07-22 17:37:18 ----A---- C:\Windows\system32\msdrm.dll
2014-07-22 17:27:58 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2014-07-22 17:27:38 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll20140722175416.dll
2014-07-22 17:27:38 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll20140722172757.dll
2014-07-22 17:27:38 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2014-07-22 17:27:35 ----A---- C:\Windows\system32\drivers\SmartDefragDriver.sys
2014-07-22 16:40:22 ----D---- C:\Users\Frank\AppData\Roaming\AVAST Software
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswStm.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2014-07-22 16:39:59 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2014-07-22 16:39:58 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-07-22 16:39:58 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-07-22 16:39:58 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-07-22 16:39:55 ----A---- C:\Windows\system32\aswBoot.exe
2014-07-22 16:39:54 ----A---- C:\Windows\avastSS.scr
2014-07-22 16:38:45 ----D---- C:\ProgramData\AVAST Software
2014-07-22 16:30:04 ----SHD---- C:\Config.Msi
2014-07-22 16:21:39 ----D---- C:\Program Files\trend micro
2014-07-22 16:21:38 ----D---- C:\rsit
2014-07-22 15:30:45 ----A---- C:\awh6E2.tmp
2014-07-22 11:02:15 ----A---- C:\awh15FF.tmp
2014-07-21 19:03:11 ----A---- C:\awh2164.tmp
2014-07-21 18:02:40 ----AS---- C:\Windows\SYSWOW64\lcpmncydkypr.exe
2014-07-21 18:02:40 ----AS---- C:\Windows\SYSWOW64\dcgmncydkypr.exe
2014-07-21 18:02:39 ----AS---- C:\Windows\SYSWOW64\acumncydkypr.exe
2014-07-21 16:53:56 ----A---- C:\awh1FA0.tmp
2014-07-21 16:30:34 ----A---- C:\awh109.tmp
2014-07-21 15:36:24 ----A---- C:\awh5724.tmp
2014-07-21 10:40:58 ----A---- C:\awhA717.tmp
2014-07-20 21:18:00 ----A---- C:\awhBC7B.tmp
2014-07-20 19:20:12 ----A---- C:\awhD91F.tmp
2014-07-17 15:42:33 ----A---- C:\awh28F.tmp
2014-07-17 14:11:55 ----A---- C:\awhF862.tmp
2014-07-17 10:49:51 ----A---- C:\awh57FE.tmp
2014-07-17 10:37:45 ----A---- C:\awh5E55.tmp
2014-07-17 09:58:47 ----A---- C:\awh81DB.tmp
2014-07-16 13:07:18 ----A---- C:\awh732C.tmp
2014-07-16 05:08:21 ----SH---- C:\Trainer.dll
2014-07-16 01:39:15 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-07-15 21:05:36 ----A---- C:\awhEA0.tmp
2014-07-15 20:43:28 ----A---- C:\awhC3F.tmp
2014-07-15 18:47:00 ----A---- C:\awhE281.tmp
2014-07-15 18:37:28 ----A---- C:\awh943.tmp
2014-07-15 12:06:30 ----A---- C:\awhF8B0.tmp
2014-07-14 18:42:52 ----A---- C:\awhE629.tmp
2014-07-14 12:48:46 ----A---- C:\awh11EA.tmp
2014-07-14 00:42:10 ----A---- C:\awh646.tmp
2014-07-13 13:27:59 ----A---- C:\awh1831.tmp
2014-07-12 13:24:00 ----A---- C:\awh2DF2.tmp
2014-07-11 18:31:05 ----A---- C:\awh7169.tmp
2014-07-11 13:07:30 ----A---- C:\awh1BE8.tmp
2014-07-10 12:06:59 ----A---- C:\awh27EA.tmp
2014-07-09 13:06:40 ----A---- C:\awh2635.tmp
2014-07-09 09:28:56 ----A---- C:\Windows\system32\drivers\nethfdrv.sys
2014-07-09 09:28:30 ----A---- C:\Windows\SYSWOW64\installd.exe
2014-07-09 09:28:08 ----A---- C:\Windows\SYSWOW64\hfnapi.dll
2014-07-09 09:28:00 ----A---- C:\Windows\SYSWOW64\hfpapi.dll
2014-07-08 09:06:43 ----A---- C:\awh1C65.tmp
2014-07-07 10:06:38 ----A---- C:\awh1515.tmp
2014-07-06 12:08:44 ----A---- C:\awh6C3.tmp
2014-07-05 11:44:55 ----A---- C:\awh675.tmp
2014-07-04 15:49:19 ----A---- C:\awhE60A.tmp
2014-07-04 13:06:47 ----A---- C:\awh114E.tmp
2014-07-03 13:07:15 ----A---- C:\awh7493.tmp
2014-07-02 12:41:25 ----A---- C:\awh35CF.tmp
2014-07-02 12:39:22 ----D---- C:\Users\Frank\AppData\Roaming\QuickScan
2014-07-01 10:08:45 ----A---- C:\awh740.tmp
2014-07-01 02:37:55 ----A---- C:\awh560B.tmp
2014-07-01 01:34:23 ----A---- C:\awh56E5.tmp
2014-06-30 12:07:04 ----A---- C:\awh619F.tmp
2014-06-29 13:13:07 ----A---- C:\awh35CE.tmp
2014-06-28 18:26:04 ----D---- C:\Program Files (x86)\TrustMediaViewerV1
2014-06-28 18:09:10 ----A---- C:\awhDC8.tmp
2014-06-26 16:01:00 ----A---- C:\awh38DA.tmp
2014-06-25 17:33:11 ----A---- C:\awh1B2D.tmp
2014-06-24 15:50:30 ----A---- C:\awhDA6.tmp
2014-06-23 16:22:22 ----A---- C:\awh5E45.tmp
======List of files/folders modified in the last 1 month======
2014-07-22 18:04:57 ----D---- C:\Windows\Temp
2014-07-22 18:04:29 ----D---- C:\Users\Frank\AppData\Roaming\Skype
2014-07-22 17:54:28 ----D---- C:\Windows\system32\Tasks
2014-07-22 17:54:16 ----D---- C:\Windows\System32
2014-07-22 17:53:09 ----D---- C:\Windows\winsxs
2014-07-22 17:53:07 ----D---- C:\Windows\system32\catroot2
2014-07-22 17:53:07 ----D---- C:\Windows\system32\catroot
2014-07-22 17:48:28 ----D---- C:\Users\Frank\AppData\Roaming\TS3Client
2014-07-22 17:46:07 ----D---- C:\Users\Frank\AppData\Roaming\AIMP3
2014-07-22 17:46:05 ----SHD---- C:\Windows\Installer
2014-07-22 17:46:05 ----D---- C:\Windows\Microsoft.NET
2014-07-22 17:45:54 ----HD---- C:\ProgramData
2014-07-22 17:44:15 ----D---- C:\Programy
2014-07-22 17:40:46 ----SHD---- C:\System Volume Information
2014-07-22 17:38:23 ----D---- C:\Windows\SysWOW64
2014-07-22 17:38:23 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-07-22 17:38:15 ----D---- C:\Windows\inf
2014-07-22 17:38:14 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-07-22 17:37:20 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-07-22 17:37:20 ----D---- C:\Windows\system32\cs-CZ
2014-07-22 17:36:59 ----D---- C:\Windows\system32\config
2014-07-22 17:36:37 ----D---- C:\Windows\Logs
2014-07-22 17:36:37 ----D---- C:\Windows
2014-07-22 17:27:35 ----D---- C:\Windows\system32\drivers
2014-07-22 17:27:31 ----D---- C:\Program Files (x86)\IObit
2014-07-22 17:27:29 ----D---- C:\Users\Frank\AppData\Roaming\IObit
2014-07-22 17:11:45 ----D---- C:\Windows\Tasks
2014-07-22 16:40:09 ----D---- C:\Windows\Prefetch
2014-07-22 16:39:11 ----RD---- C:\Program Files
2014-07-22 16:32:41 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-07-22 16:31:42 ----D---- C:\ProgramData\MFAData
2014-07-22 16:28:11 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2014-07-22 16:04:02 ----SD---- C:\ProgramData\Microsoft
2014-07-22 15:30:51 ----D---- C:\Users\Frank\AppData\Roaming\Seznam.cz
2014-07-22 15:27:11 ----D---- C:\Program Files (x86)\Zrychleni Pocitace
2014-07-21 18:04:31 ----SD---- C:\Users\Frank\AppData\Roaming\Microsoft
2014-07-21 18:02:39 ----D---- C:\Windows\SYSWOW64\bitstreams
2014-07-21 17:43:01 ----RSD---- C:\Windows\assembly
2014-07-17 19:09:41 ----D---- C:\ProgramData\YTD Video Downloader
2014-07-16 01:39:15 ----RD---- C:\Program Files (x86)
2014-07-16 01:04:11 ----D---- C:\Users\Frank\AppData\Roaming\vlc
2014-07-09 20:01:12 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-05 14:22:58 ----D---- C:\Users\Frank\AppData\Roaming\Tunngle
2014-07-05 14:22:58 ----D---- C:\ProgramData\Tunngle
2014-07-05 13:00:48 ----D---- C:\Users\Frank\AppData\Roaming\Slick Savings
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-22 224896]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 pe3agqwb;Loki Environment Driver (pe3agqwb); C:\Windows\system32\drivers\pe3agqwb.sys [2007-11-14 72296]
R0 ps7agqwb;Loki Synchronization Driver (ps7agqwb); C:\Windows\system32\drivers\ps7agqwb.sys [2007-11-14 102000]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2014-06-04 21184]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-22 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-07-22 1041168]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2014-06-03 50464]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-01-21 283064]
R1 nethfdrv;nethfdrv; \??\C:\Windows\system32\drivers\nethfdrv.sys [2014-07-09 46160]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2007-08-07 57776]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-22 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-22 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-22 92008]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-04-07 6659072]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-04-07 195584]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-04-08 124944]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-09-10 3640024]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2013-04-10 849992]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [2013-09-18 14112]
R4 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys []
R4 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys []
R4 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys []
R4 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys []
R4 RegFilter;RegFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [2013-11-19 34848]
S0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-22 65776]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-22 427360]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-04-07 6659072]
S3 GGSAFERDriver;GGSAFER Driver; \??\D:\Programy\Garena Plus\Room\safedrv.sys []
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S4 Avgdiska;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiska.sys []
S4 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6a.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [2013-12-09 881440]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-04-07 202752]
R2 Application Updater;Application Updater; C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe [2014-05-26 807800]
R2 avast! Antivirus;avast! Antivirus; D:\Programy\Avast\AvastSvc.exe [2014-07-22 50344]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-09 123856]
R2 IMFservice;IMF Service; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2014-05-15 342336]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe [2013-07-08 1922600]
R2 PCSUService;PC Speed Up Service; C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe [2014-06-24 430888]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-01-19 76888]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2007-02-07 173616]
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2013-10-30 2099000]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 vToolbarUpdater18.1.7;vToolbarUpdater18.1.7; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe [2014-06-03 1808408]
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [2014-05-13 3644432]
S2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [2014-05-13 292424]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2013-12-03 2151200]
S2 pr2agqwb;Loki Drivers Auto Removal (pr2agqwb); C:\Windows\system32\pr2agqwb.exe [2007-11-14 777576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-09 262320]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-20 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-01-10 111616]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-05-03 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 OverwolfUpdater;Overwolf Updater Windows SCM; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2014-06-10 976672]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-04-24 572096]
S3 TunngleService;TunngleService; D:\Programy\Tunngle\TnglCtrl.exe [2013-11-06 758224]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-18 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-09 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
-----------------EOF-----------------