Prosím o kontrolu logu
Napsal: 09 srp 2014 19:00
Dobrý den, prosím o kontrolu logu. AVAST hlásí pokaždé, když spustím prohlížeč chrom zachycení breberky. Pokaždé je ale detekována jiná www adresa. Pokoušel jsem se vyčistit ccleanerem, proskenoval jsem nb AVASTem s testem po restartu a ještě jsem použil superantispyware. Něco mi našel AVAST něco superantispyware. Ale výsledek je zdá se stejný. Nakonec jsem odinstaloval Chrome. Děkuji Postak4
Logfile of random's system information tool 1.10 (written by random/random)
Run by kindl_000 at 2014-08-09 19:51:32
Microsoft Windows 8.1
System drive C: has 175 GB (38%) free of 460 GB
Total RAM: 3911 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:51:38, on 9. 8. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\kindl_000.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [icq] C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\kindl_000\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [f.lux] "C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero Update (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9226 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe"
"C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe"
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
dashost.exe {9542cf60-50de-4d7f-9867993964fd8c61}
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\RfBtnSvc64.exe
C:\WINDOWS\System32\rpcnetp.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window --enable-setforeground-window --enable-kbhook-window
"C:\Program Files (x86)\Launch Manager\LManager.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
C:\WINDOWS\system32\igfxext.exe -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
igfxHK.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Elantech\ETDTouch.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
szndesktop.exe default start
"C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Windows\System32\skydrive.exe -Embedding
"C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files (x86)\RadioController\RfBtnHelper.exe" HigherRFButtonHelper
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:208 CREDAT:267521 /prefetch:2
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1039541098-394477440-1502229893-10036_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1039541098-394477440-1502229893-10036 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 552 568 580 65536 576
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Users\kindl_000\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 28a00c95-8041-4955-bab0-2fab984f03a7.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:28a00c95-8041-4955-bab0-2fab984f03a7
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 321ec786-f979-40f5-a753-dca58511cefb.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:321ec786-f979-40f5-a753-dca58511cefb
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-07-13 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-09 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-13 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-09 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-07-18 2894664]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-05-31 133248]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"icq"=C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe [2014-03-06 33664344]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"cz.seznam.software.autoupdate"=C:\Users\kindl_000\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"f.lux"=C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe [2013-10-24 1017224]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2013-11-14 457728]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2014-08-08 7762712]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2013-12-04 111216]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-03 4085896]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-05-31 133248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Program Files (x86)\SW-Booster\Assistant_x64.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"midi3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-08-09 19:51:32 ----D---- C:\rsit
2014-08-09 19:51:32 ----D---- C:\Program Files\trend micro
2014-08-09 19:35:14 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2014-08-09 19:03:24 ----D---- C:\Users\kindl_000\AppData\Roaming\SUPERAntiSpyware.com
2014-08-09 19:02:59 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2014-08-09 19:02:59 ----D---- C:\Program Files\SUPERAntiSpyware
2014-08-09 12:26:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2014-08-09 12:25:57 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2014-08-09 12:25:57 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2014-08-09 12:25:57 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2014-08-09 12:25:42 ----D---- C:\Program Files (x86)\Java
2014-08-07 23:45:01 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.dll
2014-08-07 23:44:16 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.exe
2014-08-07 14:48:36 ----A---- C:\WINDOWS\SYSWOW64\agremove.exe
2014-08-01 11:19:02 ----D---- C:\ProgramData\Riot Games
2014-08-01 11:16:39 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2014-08-01 11:16:38 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2014-08-01 11:16:37 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2014-08-01 11:16:27 ----SHD---- C:\WINDOWS\SYSWOW64\AI_RecycleBin
2014-08-01 11:16:23 ----D---- C:\Program Files (x86)\League of Legends
2014-08-01 11:12:20 ----D---- C:\Users\kindl_000\AppData\Roaming\Riot Games
2014-07-27 18:49:20 ----RHD---- C:\Users\kindl_000\AppData\Roaming\SecuROM
2014-07-25 17:39:20 ----A---- C:\WINDOWS\SYSWOW64\insugf64.exe
2014-07-24 20:28:02 ----D---- C:\Program Files (x86)\Origin Games
2014-07-24 20:18:56 ----D---- C:\Users\kindl_000\AppData\Roaming\Origin
2014-07-24 20:03:06 ----D---- C:\ProgramData\Origin
2014-07-24 20:03:04 ----D---- C:\ProgramData\Electronic Arts
2014-07-24 20:03:00 ----D---- C:\Program Files (x86)\Origin
2014-07-22 19:54:19 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-07-22 19:54:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-07-22 19:54:17 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\system32\mfcore.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-07-20 19:47:13 ----A---- C:\WINDOWS\system32\authui.dll
2014-07-20 19:47:12 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-07-20 19:47:11 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-07-20 19:47:11 ----A---- C:\WINDOWS\system32\localspl.dll
2014-07-20 19:47:10 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-07-20 19:47:09 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-07-20 19:47:09 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-07-20 19:47:08 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-07-20 19:47:06 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-07-20 19:47:06 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-07-20 19:47:05 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-07-20 19:47:05 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-07-20 19:47:05 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-07-20 19:47:04 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-07-20 19:47:04 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-07-20 19:47:04 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-07-20 19:47:03 ----A---- C:\WINDOWS\system32\winbici.dll
2014-07-20 19:47:03 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-07-20 19:47:02 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-07-20 19:47:01 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-07-20 19:47:00 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2014-07-20 19:47:00 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\WebClnt.dll
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-07-20 19:46:59 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-07-20 19:46:55 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-07-20 19:46:55 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-07-20 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-07-20 19:46:54 ----A---- C:\WINDOWS\system32\srms.dat
2014-07-20 19:46:54 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-07-20 19:46:26 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-07-20 19:46:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2014-07-20 19:46:20 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-07-20 19:46:18 ----AC---- C:\WINDOWS\system32\drivers\usbport.sys
2014-07-20 19:46:18 ----AC---- C:\WINDOWS\system32\drivers\usbhub.sys
2014-07-20 19:46:18 ----A---- C:\WINDOWS\system32\rsaenh.dll
2014-07-20 19:46:17 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2014-07-20 19:46:17 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-07-20 19:46:16 ----AC---- C:\WINDOWS\system32\drivers\usbehci.sys
2014-07-20 19:46:15 ----AC---- C:\WINDOWS\system32\drivers\usbuhci.sys
2014-07-20 19:46:15 ----AC---- C:\WINDOWS\system32\drivers\usbd.sys
2014-07-20 19:46:15 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-07-20 19:46:15 ----A---- C:\WINDOWS\system32\hal.dll
2014-07-20 19:46:15 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-07-19 08:09:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2014-07-13 14:15:03 ----A---- C:\WINDOWS\system32\termsrv.dll
2014-07-13 10:41:37 ----A---- C:\WINDOWS\system32\win32k.sys
2014-07-13 10:41:35 ----A---- C:\WINDOWS\SYSWOW64\osk.exe
2014-07-13 10:41:35 ----A---- C:\WINDOWS\system32\osk.exe
2014-07-13 10:41:34 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2014-07-13 10:41:31 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-07-13 10:41:31 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-07-13 10:41:31 ----A---- C:\WINDOWS\system32\certcli.dll
2014-07-13 10:41:30 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-07-13 10:41:30 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-07-13 10:41:30 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-07-13 10:41:17 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-07-13 10:41:17 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-07-13 10:41:16 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-07-13 10:41:14 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-07-13 10:40:56 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-07-13 10:40:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-07-13 10:40:50 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-07-13 10:40:47 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-07-13 10:40:43 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-07-13 10:40:40 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-07-13 10:40:40 ----A---- C:\WINDOWS\system32\wininet.dll
2014-07-13 10:40:39 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-07-13 10:40:39 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-07-13 10:40:37 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-07-13 10:40:37 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-07-13 10:40:35 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-07-13 10:39:56 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2014-07-13 10:39:56 ----A---- C:\WINDOWS\system32\qedit.dll
2014-07-13 10:39:49 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-07-13 10:39:49 ----A---- C:\WINDOWS\system32\twinui.dll
2014-07-13 10:39:48 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-07-13 10:39:47 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-07-13 10:39:47 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-13 10:34:38 ----A---- C:\WINDOWS\avastSS.scr
2014-07-13 10:32:17 ----A---- C:\WINDOWS\system32\WSReset.exe
======List of files/folders modified in the last 1 month======
2014-08-09 19:51:32 ----D---- C:\Program Files
2014-08-09 19:49:54 ----D---- C:\Program Files (x86)\Google
2014-08-09 19:42:37 ----D---- C:\Users\kindl_000\AppData\Roaming\Seznam.cz
2014-08-09 19:38:52 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-08-09 19:36:21 ----D---- C:\WINDOWS\debug
2014-08-09 19:35:14 ----RD---- C:\WINDOWS\System32
2014-08-09 19:35:09 ----D---- C:\Windows
2014-08-09 19:35:08 ----A---- C:\WINDOWS\system32\rpcnetp.exe
2014-08-09 19:35:05 ----A---- C:\WINDOWS\system32\wpbbin.exe
2014-08-09 19:34:38 ----D---- C:\WINDOWS\system32\catroot2
2014-08-09 19:21:28 ----D---- C:\Users\kindl_000\AppData\Roaming\Wise Disk Cleaner
2014-08-09 19:19:32 ----D---- C:\WINDOWS\SoftwareDistribution
2014-08-09 19:11:10 ----D---- C:\WINDOWS\Tasks
2014-08-09 19:11:10 ----D---- C:\WINDOWS\system32\Tasks
2014-08-09 19:04:57 ----D---- C:\Program Files (x86)\Steam
2014-08-09 19:04:18 ----D---- C:\WINDOWS\Inf
2014-08-09 19:04:17 ----D---- C:\WINDOWS\Minidump
2014-08-09 19:04:17 ----D---- C:\WINDOWS\Logs
2014-08-09 19:04:16 ----D---- C:\WINDOWS\Temp
2014-08-09 19:03:24 ----HD---- C:\ProgramData
2014-08-09 19:02:01 ----D---- C:\WINDOWS\system32\sru
2014-08-09 18:56:56 ----D---- C:\Program Files (x86)
2014-08-09 18:49:19 ----D---- C:\WINDOWS\AppReadiness
2014-08-09 18:49:18 ----HD---- C:\Program Files\WindowsApps
2014-08-09 17:00:15 ----D---- C:\WINDOWS\Microsoft.NET
2014-08-09 15:48:01 ----D---- C:\ProgramData\save ona
2014-08-09 14:03:10 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-08-09 13:59:16 ----D---- C:\Users\kindl_000\AppData\Roaming\vlc
2014-08-09 12:26:21 ----D---- C:\ProgramData\Oracle
2014-08-09 12:26:09 ----SHD---- C:\WINDOWS\Installer
2014-08-09 12:26:08 ----D---- C:\Program Files (x86)\Common Files
2014-08-09 12:26:02 ----D---- C:\WINDOWS\SysWOW64
2014-08-09 12:25:01 ----SHD---- C:\System Volume Information
2014-08-09 12:16:41 ----D---- C:\WINDOWS\system32\config
2014-08-07 17:41:15 ----D---- C:\WINDOWS\rescache
2014-08-07 14:28:20 ----D---- C:\WINDOWS\system32\DriverStore
2014-08-05 20:38:32 ----D---- C:\Users\kindl_000\AppData\Roaming\.minecraft
2014-08-03 20:21:46 ----D---- C:\WINDOWS\WinSxS
2014-08-03 11:46:46 ----D---- C:\Users\kindl_000\AppData\Roaming\Skype
2014-07-30 12:06:01 ----D---- C:\WINDOWS\Prefetch
2014-07-30 11:57:38 ----D---- C:\Program Files (x86)\Hry
2014-07-28 21:01:11 ----SD---- C:\Users\kindl_000\AppData\Roaming\Microsoft
2014-07-28 20:21:33 ----D---- C:\WINDOWS\CbsTemp
2014-07-20 19:57:15 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-07-20 19:53:45 ----D---- C:\WINDOWS\system32\catroot
2014-07-20 19:53:14 ----D---- C:\WINDOWS\system32\drivers
2014-07-20 19:53:13 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-07-20 19:53:13 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-07-20 19:53:13 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-07-20 19:53:13 ----D---- C:\WINDOWS\system32\wbem
2014-07-20 19:53:13 ----D---- C:\WINDOWS\system32\en-US
2014-07-20 19:53:13 ----D---- C:\WINDOWS\system32\cs-CZ
2014-07-20 19:53:13 ----D---- C:\WINDOWS\MediaViewer
2014-07-20 19:53:13 ----D---- C:\WINDOWS\Camera
2014-07-20 19:53:12 ----D---- C:\WINDOWS\FileManager
2014-07-19 07:24:44 ----D---- C:\ProgramData\Adblocker
2014-07-18 20:05:55 ----D---- C:\ProgramData\ssaave on
2014-07-18 19:59:44 ----D---- C:\Users\kindl_000\AppData\Roaming\BitTorrent
2014-07-18 17:42:32 ----RSD---- C:\WINDOWS\Fonts
2014-07-13 20:50:29 ----D---- C:\Users\kindl_000\AppData\Roaming\ESTsoft
2014-07-13 14:19:51 ----D---- C:\Program Files\Windows Journal
2014-07-13 14:19:51 ----D---- C:\Program Files\Internet Explorer
2014-07-13 14:19:51 ----D---- C:\Program Files (x86)\Internet Explorer
2014-07-13 14:19:50 ----RD---- C:\WINDOWS\ToastData
2014-07-13 14:19:49 ----D---- C:\WINDOWS\WinStore
2014-07-13 14:19:45 ----D---- C:\WINDOWS\system32\MRT
2014-07-13 14:16:18 ----A---- C:\WINDOWS\system32\MRT.exe
2014-07-13 10:34:39 ----A---- C:\WINDOWS\system32\aswBoot.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-07-13 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-07-13 224896]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-16 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-07-13 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-07-13 1041168]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-07-13 427360]
R1 dtsoftbus01;@oem42.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-06-07 283064]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-07-13 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-07-13 79184]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-07-13 92008]
R3 athr;@oem5.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-05-17 3847168]
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys [2012-08-14 70744]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 ETD;@oem3.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-07-18 381768]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-05-21 3791872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-12 4060560]
R3 IntcDAud;@oem35.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem25.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-05-07 27032]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\system32\DRIVERS\k57nd60a.sys [2013-06-18 425984]
R3 MEIx64;@oem21.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 Ps2Kb2Hid;@oem22.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [2013-12-04 26736]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-05-31 89800]
S3 BTATH_A2DP;@oem9.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-05-31 347336]
S3 btath_avdt;@oem9.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-05-31 115912]
S3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-05-31 179432]
S3 BTATH_LWFLT;@oem13.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-05-31 77464]
S3 BTATH_RCP;@oem14.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-05-31 136784]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2013-08-22 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-04-11 1200128]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\WINDOWS\system32\drivers\HipShieldK.sys [2012-04-21 196440]
S3 intaud_WaveExtensible;@oem24.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-05-07 38296]
S3 mferkdet;McAfee Inc. mferkdet; C:\WINDOWS\system32\drivers\mferkdet.sys [2012-06-22 106112]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
S3 SensorsSimulatorDriver;@oem33.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2014-07-23 172344]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2013-05-31 310912]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-13 50344]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2013-02-28 2615368]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-05-21 314696]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-21 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NAUpdate;Nero Update; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2013-12-04 96880]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-05-21 278344]
S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2013-05-01 470056]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-07-16 542912]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2013-10-04 87728]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by kindl_000 at 2014-08-09 19:51:32
Microsoft Windows 8.1
System drive C: has 175 GB (38%) free of 460 GB
Total RAM: 3911 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:51:38, on 9. 8. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\kindl_000.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [icq] C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\kindl_000\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [f.lux] "C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero Update (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9226 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe"
"C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe"
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
dashost.exe {9542cf60-50de-4d7f-9867993964fd8c61}
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\RfBtnSvc64.exe
C:\WINDOWS\System32\rpcnetp.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window --enable-setforeground-window --enable-kbhook-window
"C:\Program Files (x86)\Launch Manager\LManager.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
C:\WINDOWS\system32\igfxext.exe -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
igfxHK.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Elantech\ETDTouch.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
szndesktop.exe default start
"C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Windows\System32\skydrive.exe -Embedding
"C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files (x86)\RadioController\RfBtnHelper.exe" HigherRFButtonHelper
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:208 CREDAT:267521 /prefetch:2
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1039541098-394477440-1502229893-10036_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1039541098-394477440-1502229893-10036 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 552 568 580 65536 576
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Users\kindl_000\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 28a00c95-8041-4955-bab0-2fab984f03a7.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:28a00c95-8041-4955-bab0-2fab984f03a7
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task 321ec786-f979-40f5-a753-dca58511cefb.job - C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:321ec786-f979-40f5-a753-dca58511cefb
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-07-13 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-09 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-13 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-09 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-07-18 2894664]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-05-31 133248]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"icq"=C:\Users\kindl_000\AppData\Roaming\ICQM\icq.exe [2014-03-06 33664344]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"cz.seznam.software.autoupdate"=C:\Users\kindl_000\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\kindl_000\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"f.lux"=C:\Users\kindl_000\AppData\Local\FluxSoftware\Flux\flux.exe [2013-10-24 1017224]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2013-11-14 457728]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2014-08-08 7762712]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2013-12-04 111216]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-03 4085896]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-05-31 133248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Program Files (x86)\SW-Booster\Assistant_x64.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"midi3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-08-09 19:51:32 ----D---- C:\rsit
2014-08-09 19:51:32 ----D---- C:\Program Files\trend micro
2014-08-09 19:35:14 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2014-08-09 19:03:24 ----D---- C:\Users\kindl_000\AppData\Roaming\SUPERAntiSpyware.com
2014-08-09 19:02:59 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2014-08-09 19:02:59 ----D---- C:\Program Files\SUPERAntiSpyware
2014-08-09 12:26:02 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2014-08-09 12:25:57 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2014-08-09 12:25:57 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2014-08-09 12:25:57 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2014-08-09 12:25:42 ----D---- C:\Program Files (x86)\Java
2014-08-07 23:45:01 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.dll
2014-08-07 23:44:16 ----A---- C:\WINDOWS\SYSWOW64\rpcnetp.exe
2014-08-07 14:48:36 ----A---- C:\WINDOWS\SYSWOW64\agremove.exe
2014-08-01 11:19:02 ----D---- C:\ProgramData\Riot Games
2014-08-01 11:16:39 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2014-08-01 11:16:38 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2014-08-01 11:16:37 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2014-08-01 11:16:27 ----SHD---- C:\WINDOWS\SYSWOW64\AI_RecycleBin
2014-08-01 11:16:23 ----D---- C:\Program Files (x86)\League of Legends
2014-08-01 11:12:20 ----D---- C:\Users\kindl_000\AppData\Roaming\Riot Games
2014-07-27 18:49:20 ----RHD---- C:\Users\kindl_000\AppData\Roaming\SecuROM
2014-07-25 17:39:20 ----A---- C:\WINDOWS\SYSWOW64\insugf64.exe
2014-07-24 20:28:02 ----D---- C:\Program Files (x86)\Origin Games
2014-07-24 20:18:56 ----D---- C:\Users\kindl_000\AppData\Roaming\Origin
2014-07-24 20:03:06 ----D---- C:\ProgramData\Origin
2014-07-24 20:03:04 ----D---- C:\ProgramData\Electronic Arts
2014-07-24 20:03:00 ----D---- C:\Program Files (x86)\Origin
2014-07-22 19:54:19 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-07-22 19:54:18 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-07-22 19:54:17 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\system32\mfcore.dll
2014-07-20 19:47:14 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-07-20 19:47:13 ----A---- C:\WINDOWS\system32\authui.dll
2014-07-20 19:47:12 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-07-20 19:47:11 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-07-20 19:47:11 ----A---- C:\WINDOWS\system32\localspl.dll
2014-07-20 19:47:10 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-07-20 19:47:09 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-07-20 19:47:09 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-07-20 19:47:08 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-07-20 19:47:07 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-07-20 19:47:06 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-07-20 19:47:06 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-07-20 19:47:05 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-07-20 19:47:05 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-07-20 19:47:05 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-07-20 19:47:04 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-07-20 19:47:04 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-07-20 19:47:04 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-07-20 19:47:03 ----A---- C:\WINDOWS\system32\winbici.dll
2014-07-20 19:47:03 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-07-20 19:47:02 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-07-20 19:47:01 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-07-20 19:47:00 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2014-07-20 19:47:00 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\WebClnt.dll
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-07-20 19:47:00 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-07-20 19:46:59 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-07-20 19:46:56 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-07-20 19:46:55 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-07-20 19:46:55 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-07-20 19:46:54 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-07-20 19:46:54 ----A---- C:\WINDOWS\system32\srms.dat
2014-07-20 19:46:54 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-07-20 19:46:26 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-07-20 19:46:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2014-07-20 19:46:20 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-07-20 19:46:18 ----AC---- C:\WINDOWS\system32\drivers\usbport.sys
2014-07-20 19:46:18 ----AC---- C:\WINDOWS\system32\drivers\usbhub.sys
2014-07-20 19:46:18 ----A---- C:\WINDOWS\system32\rsaenh.dll
2014-07-20 19:46:17 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2014-07-20 19:46:17 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-07-20 19:46:17 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-07-20 19:46:16 ----AC---- C:\WINDOWS\system32\drivers\usbehci.sys
2014-07-20 19:46:15 ----AC---- C:\WINDOWS\system32\drivers\usbuhci.sys
2014-07-20 19:46:15 ----AC---- C:\WINDOWS\system32\drivers\usbd.sys
2014-07-20 19:46:15 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-07-20 19:46:15 ----A---- C:\WINDOWS\system32\hal.dll
2014-07-20 19:46:15 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-07-19 08:09:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2014-07-13 14:15:03 ----A---- C:\WINDOWS\system32\termsrv.dll
2014-07-13 10:41:37 ----A---- C:\WINDOWS\system32\win32k.sys
2014-07-13 10:41:35 ----A---- C:\WINDOWS\SYSWOW64\osk.exe
2014-07-13 10:41:35 ----A---- C:\WINDOWS\system32\osk.exe
2014-07-13 10:41:34 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2014-07-13 10:41:31 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-07-13 10:41:31 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-07-13 10:41:31 ----A---- C:\WINDOWS\system32\certcli.dll
2014-07-13 10:41:30 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-07-13 10:41:30 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-07-13 10:41:30 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-07-13 10:41:17 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-07-13 10:41:17 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-07-13 10:41:16 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-07-13 10:41:14 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-07-13 10:40:56 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-07-13 10:40:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-07-13 10:40:50 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-07-13 10:40:47 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-07-13 10:40:43 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-07-13 10:40:40 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-07-13 10:40:40 ----A---- C:\WINDOWS\system32\wininet.dll
2014-07-13 10:40:39 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-07-13 10:40:39 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-07-13 10:40:38 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-07-13 10:40:37 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-07-13 10:40:37 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-07-13 10:40:36 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-07-13 10:40:35 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-07-13 10:39:56 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2014-07-13 10:39:56 ----A---- C:\WINDOWS\system32\qedit.dll
2014-07-13 10:39:49 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-07-13 10:39:49 ----A---- C:\WINDOWS\system32\twinui.dll
2014-07-13 10:39:48 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-07-13 10:39:47 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-07-13 10:39:47 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2014-07-13 10:39:46 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-13 10:34:38 ----A---- C:\WINDOWS\avastSS.scr
2014-07-13 10:32:17 ----A---- C:\WINDOWS\system32\WSReset.exe
======List of files/folders modified in the last 1 month======
2014-08-09 19:51:32 ----D---- C:\Program Files
2014-08-09 19:49:54 ----D---- C:\Program Files (x86)\Google
2014-08-09 19:42:37 ----D---- C:\Users\kindl_000\AppData\Roaming\Seznam.cz
2014-08-09 19:38:52 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-08-09 19:36:21 ----D---- C:\WINDOWS\debug
2014-08-09 19:35:14 ----RD---- C:\WINDOWS\System32
2014-08-09 19:35:09 ----D---- C:\Windows
2014-08-09 19:35:08 ----A---- C:\WINDOWS\system32\rpcnetp.exe
2014-08-09 19:35:05 ----A---- C:\WINDOWS\system32\wpbbin.exe
2014-08-09 19:34:38 ----D---- C:\WINDOWS\system32\catroot2
2014-08-09 19:21:28 ----D---- C:\Users\kindl_000\AppData\Roaming\Wise Disk Cleaner
2014-08-09 19:19:32 ----D---- C:\WINDOWS\SoftwareDistribution
2014-08-09 19:11:10 ----D---- C:\WINDOWS\Tasks
2014-08-09 19:11:10 ----D---- C:\WINDOWS\system32\Tasks
2014-08-09 19:04:57 ----D---- C:\Program Files (x86)\Steam
2014-08-09 19:04:18 ----D---- C:\WINDOWS\Inf
2014-08-09 19:04:17 ----D---- C:\WINDOWS\Minidump
2014-08-09 19:04:17 ----D---- C:\WINDOWS\Logs
2014-08-09 19:04:16 ----D---- C:\WINDOWS\Temp
2014-08-09 19:03:24 ----HD---- C:\ProgramData
2014-08-09 19:02:01 ----D---- C:\WINDOWS\system32\sru
2014-08-09 18:56:56 ----D---- C:\Program Files (x86)
2014-08-09 18:49:19 ----D---- C:\WINDOWS\AppReadiness
2014-08-09 18:49:18 ----HD---- C:\Program Files\WindowsApps
2014-08-09 17:00:15 ----D---- C:\WINDOWS\Microsoft.NET
2014-08-09 15:48:01 ----D---- C:\ProgramData\save ona
2014-08-09 14:03:10 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-08-09 13:59:16 ----D---- C:\Users\kindl_000\AppData\Roaming\vlc
2014-08-09 12:26:21 ----D---- C:\ProgramData\Oracle
2014-08-09 12:26:09 ----SHD---- C:\WINDOWS\Installer
2014-08-09 12:26:08 ----D---- C:\Program Files (x86)\Common Files
2014-08-09 12:26:02 ----D---- C:\WINDOWS\SysWOW64
2014-08-09 12:25:01 ----SHD---- C:\System Volume Information
2014-08-09 12:16:41 ----D---- C:\WINDOWS\system32\config
2014-08-07 17:41:15 ----D---- C:\WINDOWS\rescache
2014-08-07 14:28:20 ----D---- C:\WINDOWS\system32\DriverStore
2014-08-05 20:38:32 ----D---- C:\Users\kindl_000\AppData\Roaming\.minecraft
2014-08-03 20:21:46 ----D---- C:\WINDOWS\WinSxS
2014-08-03 11:46:46 ----D---- C:\Users\kindl_000\AppData\Roaming\Skype
2014-07-30 12:06:01 ----D---- C:\WINDOWS\Prefetch
2014-07-30 11:57:38 ----D---- C:\Program Files (x86)\Hry
2014-07-28 21:01:11 ----SD---- C:\Users\kindl_000\AppData\Roaming\Microsoft
2014-07-28 20:21:33 ----D---- C:\WINDOWS\CbsTemp
2014-07-20 19:57:15 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-07-20 19:53:45 ----D---- C:\WINDOWS\system32\catroot
2014-07-20 19:53:14 ----D---- C:\WINDOWS\system32\drivers
2014-07-20 19:53:13 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-07-20 19:53:13 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-07-20 19:53:13 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-07-20 19:53:13 ----D---- C:\WINDOWS\system32\wbem
2014-07-20 19:53:13 ----D---- C:\WINDOWS\system32\en-US
2014-07-20 19:53:13 ----D---- C:\WINDOWS\system32\cs-CZ
2014-07-20 19:53:13 ----D---- C:\WINDOWS\MediaViewer
2014-07-20 19:53:13 ----D---- C:\WINDOWS\Camera
2014-07-20 19:53:12 ----D---- C:\WINDOWS\FileManager
2014-07-19 07:24:44 ----D---- C:\ProgramData\Adblocker
2014-07-18 20:05:55 ----D---- C:\ProgramData\ssaave on
2014-07-18 19:59:44 ----D---- C:\Users\kindl_000\AppData\Roaming\BitTorrent
2014-07-18 17:42:32 ----RSD---- C:\WINDOWS\Fonts
2014-07-13 20:50:29 ----D---- C:\Users\kindl_000\AppData\Roaming\ESTsoft
2014-07-13 14:19:51 ----D---- C:\Program Files\Windows Journal
2014-07-13 14:19:51 ----D---- C:\Program Files\Internet Explorer
2014-07-13 14:19:51 ----D---- C:\Program Files (x86)\Internet Explorer
2014-07-13 14:19:50 ----RD---- C:\WINDOWS\ToastData
2014-07-13 14:19:49 ----D---- C:\WINDOWS\WinStore
2014-07-13 14:19:45 ----D---- C:\WINDOWS\system32\MRT
2014-07-13 14:16:18 ----A---- C:\WINDOWS\system32\MRT.exe
2014-07-13 10:34:39 ----A---- C:\WINDOWS\system32\aswBoot.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-07-13 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-07-13 224896]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-16 645952]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-07-13 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-07-13 1041168]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-07-13 427360]
R1 dtsoftbus01;@oem42.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-06-07 283064]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-07-13 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-07-13 79184]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-07-13 92008]
R3 athr;@oem5.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-05-17 3847168]
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys [2012-08-14 70744]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 ETD;@oem3.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-07-18 381768]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-05-21 3791872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-12 4060560]
R3 IntcDAud;@oem35.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-03-07 450520]
R3 iwdbus;@oem25.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-05-07 27032]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\system32\DRIVERS\k57nd60a.sys [2013-06-18 425984]
R3 MEIx64;@oem21.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 Ps2Kb2Hid;@oem22.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [2013-12-04 26736]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-05-31 89800]
S3 BTATH_A2DP;@oem9.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-05-31 347336]
S3 btath_avdt;@oem9.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-05-31 115912]
S3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-05-31 179432]
S3 BTATH_LWFLT;@oem13.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-05-31 77464]
S3 BTATH_RCP;@oem14.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-05-31 136784]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2013-08-22 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-04-11 1200128]
S3 HipShieldK;McAfee Inc. HipShieldK; C:\WINDOWS\system32\drivers\HipShieldK.sys [2012-04-21 196440]
S3 intaud_WaveExtensible;@oem24.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-05-07 38296]
S3 mferkdet;McAfee Inc. mferkdet; C:\WINDOWS\system32\drivers\mferkdet.sys [2012-06-22 106112]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
S3 SensorsSimulatorDriver;@oem33.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2014-07-23 172344]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2013-05-31 310912]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-13 50344]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2013-02-28 2615368]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-05-21 314696]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-21 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NAUpdate;Nero Update; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2013-12-04 96880]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-05-21 278344]
S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2013-05-01 470056]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-07-16 542912]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2013-10-04 87728]
-----------------EOF-----------------