Prosím o kontrolu, mám podezření.
Napsal: 08 zář 2014 14:48
Prosim o kontrolu logu, mam podezreni na vir. Dekuji.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Eliška at 2014-09-08 15:42:57
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 5 GB (9%) free of 50 GB
Total RAM: 3583 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:43:02, on 8.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17239)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\Users\Eliška\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\SupTab\HpUI.exe
C:\Program Files (x86)\Winamp\winampa.exe
D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\osaui.exe
C:\Program Files (x86)\SupTab\Loader32.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Program Files (x86)\Origin\OriginClientService.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Eliška.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0063311 - {11111111-1111-1111-1111-110611331111} - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-bho.dll
O2 - BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll
O2 - BHO: innoApp - {59e47ef9-5163-4e82-9c17-3d6f63dda496} - C:\Program Files (x86)\innoApp\innoAppbho.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [ACSW14EN] "D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe" /pid ACSW14EN
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [OfficeSubscriptionAgent] "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osaui.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Google Update] "C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.55.1183\Badoo.Desktop.exe
O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = ?
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IePlugin Services (IePluginServices) - Cherished Technololgy LIMITED - C:\ProgramData\IePluginServices\PluginService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: Torntv Downloader (trntv) - Unknown owner - C:\Users\Eliška\AppData\Roaming\TornTV.com\TornTVSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update innoApp - Unknown owner - C:\Program Files (x86)\innoApp\updateinnoApp.exe
O23 - Service: Util innoApp - Unknown owner - C:\Program Files (x86)\innoApp\bin\utilinnoApp.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - Fuyu LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12698 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\ProgramData\IePluginServices\PluginService.exe -service
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
MSOIDSvcm.exe 1880
"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe"
"C:\Program Files (x86)\innoApp\updateinnoApp.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
"C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"C:\Users\Eliška\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\SupTab\HpUI.exe" -run
"C:\Program Files (x86)\Winamp\winampa.exe"
"D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe" /pid ACSW14EN
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\SupTab\Loader64.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\osaui.exe"
"C:\Program Files (x86)\SupTab\Loader32.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3288.0.563761994\1792733267" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17 --gpu-vendor-id=0x1002 --gpu-device-id=0x7280 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.56.1.16 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.1.893248964\226381956" /prefetch:673131151
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.2.825632816\1446670664" /prefetch:673131151
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.3.787791042\1039402784" /prefetch:673131151
"C:\Program Files (x86)\Origin\Origin.exe" /Installed:9.4.22.2815
"C:\Program Files (x86)\Origin\OriginClientService.exe" C:\Program Files (x86)\Origin\OriginClientService.exe -args:iKQn3onPoXVtjeLciJbh918l2iQg7U5Z
taskeng.exe {C58F8E8B-A774-4735-9900-34DC0610CFE8}
"C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-6.exe" /rawdata=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
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.14.2031900930\903282582" /prefetch:673131151
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.22.1482999557\1220635608" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe9_ Global\UsGthrCtrlFltPipeMssGthrPipe9 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Users\Eliška\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-1.job - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-codedownloader.exe /rawdata=SlK8vkqj5lXtJPPOyiieggKb4hCA3mldZ/Hu7woBW8rSULPmOo5lgKzynVHE0JJTjWAUbQe9iMiZLFD3s6CZRcLl1F+OONeOhfYU0WYFSNxMljVUxhQDsO9b/WZl6G7kXWOU6692aCjFB0TM0+S1l4JtaktHV6fSAxcdKnwV2g6XsTiMAe11Y3WZZzN7Y4w9eaFDoGo1Tclsl50Mgb5VlUE9EspcV0f4wsVQKku+xRI/Bwc7wbgNgn2xF4eq3nru0ay027rc7jfAK1MxMPn97ErctIAWFZ8Dtx34iRvwRYZ8GeQcTzhyGDPLjUxf9f4M0PdxslBH9IltGCMwiOMQnsN+ySqC34Gf61Mf7EOAnz6T/n+7RXkFqcYewu+ZeuNh0gNRXWftx4kxeoh6qyUk0kuT4pQ6sTZSrb4pZXRvFkGcnOTHtBwU5am/JrGERINvAVcn7i4mCef+x8IpdAuAz3yrVpU2guu7qfZIwCUZFRRC/goCaGV7/qwloo1Y9+22CXpMBNWhsiZjWBryoUcgkA+YLHvaT1znFRN2naEIdGkfRADq2ecFVIxH171DwtWf1ySeHYP0bqlfe2RwRSWd2xMvtI36E0MN2fLqI6CkTbP7/qEVCL7uCBx0pcufAejs6kGMdK94A9+0CL6OZf+s8Jzh05yEiRH9wdfU2qpOXj2dmZdDqDea7E5Vn1kjaxlr5hcIF70iIscEAR2lFbnb4U3OJXCHOKm4sbJrukC+d2N1CgM6HKPXQn5U3WVX9+mnIcPIT/c+WpycHMK7wWLqnDd+QxFtzF3gFOCc/cO3BKBRCc1Cm2II8rgn4DCSKF1zf/NXqYdd1F400lLBF4EuaVqyNqVNEt5TxRz9OlTK1zDE7Wc5svW3lov0NQQzqeVVBwCzTHsVatW6515D0bRwc8NAbppghbl3eJU0Wa5ulGkA50EoYGzbJhMVeMjunU+15wfSm2uXfsqDZSLXXdlRN8+2Thki0eUGdMKNN67hhYh9Bq0xh4EHa5IQG8F+qc7+t5AEfY/tC68QMbQpNCR9vCjF2goxdLIGtXa1kIlSEz1isIrKdKLYJ2h4Hc3t39mbveJCFLBzMvE1rJS7jjc4hZdsd9vcXiwOzUVL5dA05445UWtCS7DPVYoOi2N5oPOlTj+Eqzfa2xJm0+njOcOnTcUXTtXE3lW7kvockfBk7xM=
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-11.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-11.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-2.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-2.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-3.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-3.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-4.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-4.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-5.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-5.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-5_user.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-5.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-6.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-6.exe /rawdata=NvY4o/Zlp8BJTANrfjGc8/xTxYJyQcUQQzvkSR10p2zu7I+LSg951/FNyfshR4qhwBNhPQ/+DT81bqVyG0WEZF4Ncs0IKB1REZvrp9YXUbk4Rjt0hCLgTo7DmvlIeDECU57ZBhhkiCR8bthOEMSZs8AoHjtfc4bJdwnbh6spwTPFtsvSL0P9uY2naTY+ul8C2e2Glm1f6R0rgcu0TOCUOnR1R7TN60ohJ3PbtwoEWGkpsZnsLl2L9cmYC1cTJL4NE3gSbHRh8Xf+FBXkRlgWwIDEnKYoLj/FNNBoOO6n/lrjei0635DuMXP5cLXPvGTsulOBOl2XO2dCLo4AH0iJsTx32PlbDafJf/PhbiYSjvZZLeb/W72D2s5eXtSTR/uQPZS4Rb/18sxQ0I/v9oJgJGSnn7UD7RqnKRuv19BCggaE8lkInKsXlgHiv5q4ap+zAUlLFSQsYH78KVelhM//RuSrujp2nIL5mIR/hVkDpTYTv4Z/VmtnlBzzZt5PBDLLo+uXcb6vzngOVAYkzBaiKVEexPBmBxa6AZFVoWnrWQqnQgogxmHKZIpzpxobN09L7gbcmoMFEY2mkSJIZsqgpkX/ZJXlVl8oN2k2n7hh8H6lWKB/s82KzHRvFXXX4rE8XT5fAVyIofoxU5ss3933qetCivisIMaEXcM1ASm5fTtrjvDPU+e3McfjSgQxnPWOsteruIp+oX6d+m8YRkXJgiwKmYQj7k8vy9UQm5VD7nQzuzOzJMP+gVhBnODulTjZdYOpRUo1fXTWj2aX9zp/idSGNOvCITpMVlkWcETltI0CblVyYS68WuqF9Zot1E8o0E7x01XVB52eudtFXvTwRLKZ5580sZgLhSNacMcncyBKbP5da/rwk5c6hui9Ga+EGcOabCbikdVoo+ofwUbtL0zlSzVc32rnJps51xni5aT0y2PXVMxHK7lzhIlo2A3GPuPMeZFUlyYxKHhV0qk6Rwf+LzQjcoyzdKf8gjVOwCIuRqwGil7ClFacBRBhBX5JuD/YnArx4itcYZIEsXB4lBI+O94I+FObSRqscNEX1EUjHCyrhDB1Xkq8NxjkwF8MMY5Ja+XysVQAdJJbMrDcXf3EzUzxLpfmSwuidA/X3n++JiWduTnB79gwdsKuwE7i2+TK0ucGM3kwbWgEL3WmOcAjkS/TezLWcYKm0wZd19I6hn2hrmIb4Bq1KorVGB+eSXUCCs/R6uJn+f65Dap4B8XIvhCskfsmJ2uXjyfvaW8OS1CaEfRTWxDWp7dkhIeRHELyBI9yQvEW8eXRUhV/9Mkld8RDqg3rF9i765a8JJRZEZZ8i56CEIphKvGmb0iKjHsJyDIJFq1a2ThqhKsYIQCc8g/t0yo+7kdBjcPAb21OtYG5P3HI+vF0FQD4fDlHl61/0S6fdAcLuUvgc+w2Jd9kE3cYmL3DZ5PDabhlj4zTDzIFg7IwwjPdQ26BzPKHv3xUF/WYB2/dAtavV39HDuzEAJYhe0H3dMEoMJcf1sVDR64wkqjre0hL1PGpDp1G
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-7.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-7.exe /rawdata=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
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2870595826-3786535739-3639980620-1000Core.job - C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2870595826-3786535739-3639980620-1000UA.job - C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ORXAQNY.job - C:\Users\Eli�ka\AppData\Roaming\ORXAQNY.exe /infocmdline=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
C:\Windows\tasks\YNYESL.job - C:\Users\Eli�ka\AppData\Roaming\YNYESL.exe /infocmdline=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
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111}]
TheTorntv V10 - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-bho64.dll [2014-09-07 750952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-07 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111}]
TheTorntv V10 - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-bho.dll [2014-09-07 556904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
IETabPage Class - C:\Program Files (x86)\SupTab\SupTab.dll [2014-09-07 515464]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59e47ef9-5163-4e82-9c17-3d6f63dda496}]
innoApp - C:\Program Files (x86)\innoApp\innoAppbho.dll [2014-09-07 250136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-25 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-07 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-25 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-10-13 19549320]
"Google Update"=C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-03 136176]
"DAEMON Tools Lite"=D:\Programy\DAEMON Tools Lite\DTLite.exe [2012-01-19 3477312]
"ApplePhotoStreams"=C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [2012-12-17 59872]
"Badoo Desktop"=C:\ProgramData\Badoo\Badoo Desktop\1.6.55.1183\Badoo.Desktop.exe []
"OfficeSyncProcess"=C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-06 43848]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2011-10-24 421888]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-11-09 343168]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2011-12-09 74752]
"ACSW14EN"=D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe [2011-11-17 1231472]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2013-11-02 152392]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-07 4085896]
"OfficeSubscriptionAgent"=C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osaui.exe [2011-11-16 932160]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
C:\Users\Eliška\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Eliška\AppData\Roaming\Dropbox\bin\Dropbox.exe
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.ACDV"=ACDV.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-09-08 15:42:58 ----D---- C:\Program Files\trend micro
2014-09-08 15:42:57 ----D---- C:\rsit
2014-09-08 14:15:20 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-09-08 14:15:12 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-09-08 14:15:12 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-09-08 14:15:12 ----A---- C:\Windows\SYSWOW64\java.exe
2014-09-08 14:08:55 ----D---- C:\ProgramData\Package Cache
2014-09-07 19:39:57 ----A---- C:\Windows\system32\drivers\{3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys
2014-09-07 19:37:04 ----D---- C:\Users\Eliška\AppData\Roaming\Opera Software
2014-09-07 19:36:43 ----D---- C:\Program Files (x86)\Opera
2014-09-07 19:36:16 ----D---- C:\ProgramData\IePluginServices
2014-09-07 19:36:07 ----D---- C:\ProgramData\WindowsMangerProtect
2014-09-07 19:36:05 ----D---- C:\Program Files (x86)\SupTab
2014-09-07 19:34:21 ----D---- C:\Program Files (x86)\innoApp
2014-09-07 19:32:48 ----A---- C:\Users\Eliška\AppData\Roaming\YNYESL.exe
2014-09-07 19:32:10 ----A---- C:\Users\Eliška\AppData\Roaming\ORXAQNY.exe
2014-09-07 19:32:02 ----D---- C:\Program Files (x86)\globalUpdate
2014-09-07 19:32:00 ----D---- C:\Program Files (x86)\TheTorntv V10
2014-09-07 19:30:53 ----D---- C:\Users\Eliška\AppData\Roaming\TornTV.com
2014-08-29 16:11:29 ----A---- C:\Windows\system32\win32k.sys
2014-08-29 16:11:28 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-29 16:11:28 ----A---- C:\Windows\system32\gdi32.dll
2014-08-27 10:58:30 ----A---- C:\Windows\system32\wups2.dll
2014-08-27 10:58:30 ----A---- C:\Windows\system32\wucltux.dll
2014-08-27 10:58:30 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-27 10:58:29 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-27 10:58:02 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-27 10:58:02 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-27 10:58:02 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-27 10:58:02 ----A---- C:\Windows\system32\wups.dll
2014-08-27 10:58:02 ----A---- C:\Windows\system32\wudriver.dll
2014-08-27 10:58:02 ----A---- C:\Windows\system32\wuapi.dll
2014-08-27 10:57:34 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-27 10:57:34 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-27 10:57:34 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-27 10:57:34 ----A---- C:\Windows\system32\wuapp.exe
2014-08-23 03:58:23 ----ASH---- C:\pagefile.sys
2014-08-23 03:34:16 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-08-23 03:30:57 ----D---- C:\Windows\Migration
2014-08-23 03:03:04 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-23 03:03:04 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-23 03:03:04 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-23 03:03:04 ----A---- C:\Windows\system32\icardagt.exe
2014-08-23 03:03:02 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-23 03:03:02 ----A---- C:\Windows\system32\icardres.dll
2014-08-23 03:02:38 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-23 03:02:37 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-22 13:53:59 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-22 13:53:59 ----A---- C:\Windows\system32\tzres.dll
2014-08-22 13:51:57 ----A---- C:\Windows\system32\msi.dll
2014-08-22 13:51:56 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-22 13:51:56 ----A---- C:\Windows\system32\authui.dll
2014-08-22 13:51:55 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-22 13:51:55 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-22 13:51:55 ----A---- C:\Windows\system32\msihnd.dll
2014-08-22 13:51:55 ----A---- C:\Windows\system32\consent.exe
2014-08-22 13:51:40 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-22 13:51:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-22 13:51:40 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-22 13:51:39 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-22 13:51:39 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-22 13:51:38 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-22 13:51:38 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-22 13:51:37 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-22 13:51:37 ----A---- C:\Windows\system32\iernonce.dll
2014-08-22 13:51:37 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-22 13:51:36 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-22 13:51:36 ----A---- C:\Windows\system32\urlmon.dll
2014-08-22 13:51:35 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-22 13:51:35 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-22 13:51:35 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-22 13:51:35 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-22 13:51:34 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-08-22 13:51:34 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-22 13:51:34 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-22 13:51:34 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-22 13:51:33 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-22 13:51:32 ----A---- C:\Windows\system32\iesetup.dll
2014-08-22 13:51:32 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-22 13:51:31 ----A---- C:\Windows\system32\iertutil.dll
2014-08-22 13:51:30 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-08-22 13:51:30 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-22 13:51:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-22 13:51:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-22 13:51:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-22 13:51:28 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-22 13:51:28 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-22 13:51:26 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-22 13:51:26 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-22 13:51:25 ----A---- C:\Windows\system32\ieui.dll
2014-08-22 13:51:25 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-22 13:51:24 ----A---- C:\Windows\system32\ieframe.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-22 13:51:22 ----A---- C:\Windows\system32\vbscript.dll
2014-08-22 13:51:22 ----A---- C:\Windows\system32\jscript9.dll
2014-08-22 13:51:22 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-22 13:51:21 ----A---- C:\Windows\system32\wininet.dll
2014-08-22 13:51:20 ----A---- C:\Windows\system32\msrating.dll
2014-08-22 13:51:20 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-22 13:51:18 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-22 13:51:18 ----A---- C:\Windows\system32\mshtml.dll
2014-08-19 10:45:08 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-19 10:45:08 ----A---- C:\Windows\system32\shell32.dll
2014-08-19 09:24:43 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-19 09:24:43 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-19 09:24:09 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-19 09:22:32 ----A---- C:\Windows\system32\aepdu.dll
2014-08-19 09:22:29 ----A---- C:\Windows\system32\aeinv.dll
======List of files/folders modified in the last 1 month======
2014-09-08 15:43:02 ----D---- C:\Windows\Prefetch
2014-09-08 15:42:59 ----D---- C:\Windows\Temp
2014-09-08 15:42:58 ----D---- C:\Program Files
2014-09-08 15:26:32 ----D---- C:\Users\Eliška\AppData\Roaming\Skype
2014-09-08 15:02:38 ----D---- C:\Windows\system32\config
2014-09-08 14:51:06 ----SHD---- C:\System Volume Information
2014-09-08 14:18:34 ----D---- C:\Users\Eliška\AppData\Roaming\Origin
2014-09-08 14:18:34 ----D---- C:\ProgramData\Origin
2014-09-08 14:17:41 ----D---- C:\Program Files (x86)\Origin
2014-09-08 14:15:46 ----D---- C:\ProgramData\Oracle
2014-09-08 14:15:36 ----D---- C:\Windows\system32\Tasks
2014-09-08 14:15:28 ----SHD---- C:\Windows\Installer
2014-09-08 14:15:27 ----D---- C:\Program Files (x86)\Common Files
2014-09-08 14:15:20 ----D---- C:\Windows\SysWOW64
2014-09-08 14:15:11 ----D---- C:\Program Files (x86)\Java
2014-09-08 14:09:13 ----D---- C:\Windows\System32
2014-09-08 14:08:55 ----HD---- C:\ProgramData
2014-09-08 14:02:43 ----D---- C:\Windows\inf
2014-09-08 14:02:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-08 13:56:25 ----D---- C:\Users\Eliška\AppData\Roaming\Dropbox
2014-09-07 20:28:27 ----A---- C:\Windows\win.ini
2014-09-07 20:17:58 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-09-07 19:40:56 ----D---- C:\Users\Eliška\AppData\Roaming\uTorrent
2014-09-07 19:39:57 ----D---- C:\Windows\system32\drivers
2014-09-07 19:36:43 ----RD---- C:\Program Files (x86)
2014-09-07 19:33:56 ----D---- C:\Windows\Tasks
2014-08-30 03:20:57 ----D---- C:\Windows\system32\catroot2
2014-08-30 03:19:49 ----D---- C:\Windows\winsxs
2014-08-29 19:06:44 ----D---- C:\Windows
2014-08-29 16:09:13 ----D---- C:\Windows\system32\catroot
2014-08-29 16:00:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-29 16:00:47 ----D---- C:\Windows\system32\cs-CZ
2014-08-27 03:21:41 ----D---- C:\Windows\Microsoft.NET
2014-08-23 04:14:07 ----RSD---- C:\Windows\assembly
2014-08-23 03:56:23 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-23 03:56:23 ----D---- C:\Windows\system32\en-US
2014-08-23 03:56:23 ----D---- C:\Windows\PolicyDefinitions
2014-08-23 03:56:23 ----D---- C:\Program Files\Internet Explorer
2014-08-23 03:56:22 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-23 03:38:30 ----D---- C:\ProgramData\Microsoft Help
2014-08-23 03:30:57 ----SD---- C:\ProgramData\Microsoft
2014-08-23 03:21:08 ----D---- C:\Windows\system32\MRT
2014-08-23 03:12:13 ----A---- C:\Windows\system32\MRT.exe
2014-08-19 10:46:08 ----SD---- C:\Windows\system32\CompatTel
2014-08-19 10:46:08 ----D---- C:\Windows\ehome
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-07 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-07 224896]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 {3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64;{3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64; C:\Windows\system32\drivers\{3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys [2014-09-07 61112]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-03-07 22600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-07 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-08-07 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-07 427360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-02-05 283200]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-07 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-07 79184]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
S2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-07 92008]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-11-10 325632]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-10-17 93712]
S3 cpuz135;cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys []
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl64.sys [2013-07-25 23040]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-05-18 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-05-18 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-05-18 9216]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-05-18 9216]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-11-10 204288]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-01-07 43336]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-07 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 IePluginServices;IePlugin Services; C:\ProgramData\IePluginServices\PluginService.exe [2014-09-07 715656]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 msoidsvc;Microsoft Online Services Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [2012-05-17 2079520]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2008-09-30 935208]
R2 osubsvc;Agent odběrů systému Microsoft Office 2010; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osa.exe [2011-11-16 493384]
R2 TeamViewer7;TeamViewer 7; C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2011-12-14 2984832]
R2 Update innoApp;Update innoApp; C:\Program Files (x86)\innoApp\updateinnoApp.exe [2014-09-07 323352]
R2 WindowsMangerProtect;WindowsMangerProtect Service; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [2014-09-07 528896]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-11-02 641352]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-07 68608]
S2 trntv;Torntv Downloader; C:\Users\Eliška\AppData\Roaming\TornTV.com\TornTVSvc.exe []
S2 Util innoApp;Util innoApp; C:\Program Files (x86)\innoApp\bin\utilinnoApp.exe [2014-09-08 323352]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-28 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2011-12-09 135584]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-07 68608]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-07-25 111616]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-01-14 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Eliška at 2014-09-08 15:42:57
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 5 GB (9%) free of 50 GB
Total RAM: 3583 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:43:02, on 8.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17239)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\Users\Eliška\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\SupTab\HpUI.exe
C:\Program Files (x86)\Winamp\winampa.exe
D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\osaui.exe
C:\Program Files (x86)\SupTab\Loader32.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Program Files (x86)\Origin\OriginClientService.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Eliška.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XX5QF2W682
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0063311 - {11111111-1111-1111-1111-110611331111} - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-bho.dll
O2 - BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll
O2 - BHO: innoApp - {59e47ef9-5163-4e82-9c17-3d6f63dda496} - C:\Program Files (x86)\innoApp\innoAppbho.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [ACSW14EN] "D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe" /pid ACSW14EN
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [OfficeSubscriptionAgent] "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osaui.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Google Update] "C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.55.1183\Badoo.Desktop.exe
O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = ?
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IePlugin Services (IePluginServices) - Cherished Technololgy LIMITED - C:\ProgramData\IePluginServices\PluginService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: Torntv Downloader (trntv) - Unknown owner - C:\Users\Eliška\AppData\Roaming\TornTV.com\TornTVSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update innoApp - Unknown owner - C:\Program Files (x86)\innoApp\updateinnoApp.exe
O23 - Service: Util innoApp - Unknown owner - C:\Program Files (x86)\innoApp\bin\utilinnoApp.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - Fuyu LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12698 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\ProgramData\IePluginServices\PluginService.exe -service
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE"
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
MSOIDSvcm.exe 1880
"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osa.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe"
"C:\Program Files (x86)\innoApp\updateinnoApp.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
"C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"C:\Users\Eliška\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\SupTab\HpUI.exe" -run
"C:\Program Files (x86)\Winamp\winampa.exe"
"D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe" /pid ACSW14EN
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\SupTab\Loader64.exe"
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\osaui.exe"
"C:\Program Files (x86)\SupTab\Loader32.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3288.0.563761994\1792733267" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17 --gpu-vendor-id=0x1002 --gpu-device-id=0x7280 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.56.1.16 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.1.893248964\226381956" /prefetch:673131151
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.2.825632816\1446670664" /prefetch:673131151
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.3.787791042\1039402784" /prefetch:673131151
"C:\Program Files (x86)\Origin\Origin.exe" /Installed:9.4.22.2815
"C:\Program Files (x86)\Origin\OriginClientService.exe" C:\Program Files (x86)\Origin\OriginClientService.exe -args:iKQn3onPoXVtjeLciJbh918l2iQg7U5Z
taskeng.exe {C58F8E8B-A774-4735-9900-34DC0610CFE8}
"C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-6.exe" /rawdata=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
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.14.2031900930\903282582" /prefetch:673131151
"C:\Users\Eliška\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/FlashHardwareVideoDecode/HwVideo/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLs/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_36/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="3288.22.1482999557\1220635608" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe9_ Global\UsGthrCtrlFltPipeMssGthrPipe9 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Users\Eliška\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-1.job - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-codedownloader.exe /rawdata=SlK8vkqj5lXtJPPOyiieggKb4hCA3mldZ/Hu7woBW8rSULPmOo5lgKzynVHE0JJTjWAUbQe9iMiZLFD3s6CZRcLl1F+OONeOhfYU0WYFSNxMljVUxhQDsO9b/WZl6G7kXWOU6692aCjFB0TM0+S1l4JtaktHV6fSAxcdKnwV2g6XsTiMAe11Y3WZZzN7Y4w9eaFDoGo1Tclsl50Mgb5VlUE9EspcV0f4wsVQKku+xRI/Bwc7wbgNgn2xF4eq3nru0ay027rc7jfAK1MxMPn97ErctIAWFZ8Dtx34iRvwRYZ8GeQcTzhyGDPLjUxf9f4M0PdxslBH9IltGCMwiOMQnsN+ySqC34Gf61Mf7EOAnz6T/n+7RXkFqcYewu+ZeuNh0gNRXWftx4kxeoh6qyUk0kuT4pQ6sTZSrb4pZXRvFkGcnOTHtBwU5am/JrGERINvAVcn7i4mCef+x8IpdAuAz3yrVpU2guu7qfZIwCUZFRRC/goCaGV7/qwloo1Y9+22CXpMBNWhsiZjWBryoUcgkA+YLHvaT1znFRN2naEIdGkfRADq2ecFVIxH171DwtWf1ySeHYP0bqlfe2RwRSWd2xMvtI36E0MN2fLqI6CkTbP7/qEVCL7uCBx0pcufAejs6kGMdK94A9+0CL6OZf+s8Jzh05yEiRH9wdfU2qpOXj2dmZdDqDea7E5Vn1kjaxlr5hcIF70iIscEAR2lFbnb4U3OJXCHOKm4sbJrukC+d2N1CgM6HKPXQn5U3WVX9+mnIcPIT/c+WpycHMK7wWLqnDd+QxFtzF3gFOCc/cO3BKBRCc1Cm2II8rgn4DCSKF1zf/NXqYdd1F400lLBF4EuaVqyNqVNEt5TxRz9OlTK1zDE7Wc5svW3lov0NQQzqeVVBwCzTHsVatW6515D0bRwc8NAbppghbl3eJU0Wa5ulGkA50EoYGzbJhMVeMjunU+15wfSm2uXfsqDZSLXXdlRN8+2Thki0eUGdMKNN67hhYh9Bq0xh4EHa5IQG8F+qc7+t5AEfY/tC68QMbQpNCR9vCjF2goxdLIGtXa1kIlSEz1isIrKdKLYJ2h4Hc3t39mbveJCFLBzMvE1rJS7jjc4hZdsd9vcXiwOzUVL5dA05445UWtCS7DPVYoOi2N5oPOlTj+Eqzfa2xJm0+njOcOnTcUXTtXE3lW7kvockfBk7xM=
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-11.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-11.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-2.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-2.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-3.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-3.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-4.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-4.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-5.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-5.exe /rawdata=tpS6hX2v33JMCu0G1nA8DCNFWgqWefuBiEhYoH3lGXALNbbGEuXH1rM50Lu8hoQWIsnBp8YKqgAvfvauQky7SAQhxCncsqWaiKA0h+B6fAEd7jjsJDgKEW/+h81G5K0Bql/IrMipP4fbcWdingr98Zhgf+6NClJu7MbIy2KXiQOTtfWpY7QmSQOb55LrRi8NJIZt56v++ifi/uDOnh0i6narIXWECwZc8WY/fpnszpy258Tsr/QnPLK5i5qjO+NcA+OXTWOQB8NzFJpSZhUBZZKdTF3xIl4z1bcVIF1lS6WKqhCpnl6w1P3b+WprbmOd1/CpMQ1J1R6yRvM0v51JGlbf2nQuC9x5zKIs/CEUpcqSb7iRafFJSmeSPgwyqCyqy/uF3oI2F/30MblNC+Jmb+aU0VUAJVwcW2glUIZjKFcRFJ5B5QYJOWCiBN9xEAgMGes/Gj7asJaVBO8J3gSEbE880v2YlNg4Xxnffh4/7qZEpZx3X1TOqmeRyFYDVAvxsCTYe//nRN7CgA1YcCW424Yzl9X0DwyintHwZGDIld1ZILiIyXdjtJpkx4FneCVCmtS2xTl/QV6l78B6SyQFoKTysag6LcKx31btLoEwQPYBqm9nMRptAwzny4a+7RbVt9wW8toe23SFtEeh7d3qOYZ5LReGWeY/UCS1RvIHlZHCHsoTc1+yAw0BjN21mgvwAuuXhwMB3+Rrx+5x05zihFXr0v/166DVtm50SHf4M0hYUtOIICitY2SL+iofypL2sK218kJcfB8t/7Htl5C2FrtFM3Ewv1D6TXMl6bjqpBpo6tSLMEd7C8UB+5QgUISMSvyAQrb/KiCqeIldKUHOCnE49dMvU5bvU+p/ECQvgps0u7QUKtmVTNfI1slpzev6uv+2yc1jukr+Nk7lS6v2UU74jndYVdE50dMUgiFWS3FDIQkwKMYi1gRtwZK9UyfuMzJPcZBtvtSuTyp0JNlEBPknEzvTKlz4EA4Y9A7ea59+6a6tELh116SWUkfjO631
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-5_user.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-5.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-6.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-6.exe /rawdata=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
C:\Windows\tasks\b09351af-629b-405f-86d7-2f3223828534-7.job - C:\Program Files (x86)\TheTorntv V10\b09351af-629b-405f-86d7-2f3223828534-7.exe /rawdata=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
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2870595826-3786535739-3639980620-1000Core.job - C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2870595826-3786535739-3639980620-1000UA.job - C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\ORXAQNY.job - C:\Users\Eli�ka\AppData\Roaming\ORXAQNY.exe /infocmdline=cH6FS22VI7zlBFiii0LkzwUGFOCAQxfCo/oX5rX8rdkJ4TpfUIVrFbgY+khOHIeu39HZ52jnL89W9LbKQ3pemK/lxEp0TWrQnFkY5p0fUfLkztVhIfwBGiB4tMHPaHTCs1Vnlyw3MxGCTPyz6vj9Quiog/f0qG/zprj0sopYoXq9Z0XEbf+igkfvIrE/fCOlONKRMdPolAcRxRW+lHu7LJbzMB+R3CPGpHSyyr5YH244ZJwJM+j/OEQSoC11xyDlZLzc6W7EnHNkEwnywEga/XTSDVLDcG092YpjznBAVp4wTi4OniTNijzKbbsiN2nAr2tEgVgDrr9DKhpnhbUutYsTrbLK851evs1LDs2uFISyPdKRp4SJzCSsHilkV0x3AkRnUORNHL2TQP9GkZl4933PGcCb3q0WlbHH/Z8x4iR7j9W+38+JcHKb8xVbzaSR8avks15RboyKSN822wYLZu2kdQ2HqJdDCrhzF1MFC8KgLRSZEg1O1lS99eFTtC6AqA5POcZgiGcz88A0D/owDv2EW28VYmjIYUpcNAfwwBd8A7nOqSIXtDw3Vqe0JeZHQr6Yp/Ves+OqMM8587Ryv2iCkwpevi6rrr9x9A4crcJfU6S+2xTNAyYBSdpWy9qW1vh9vSUNyhCrdLSjq0PfHww9PoW/hIZdMw4hjfXxM70=
C:\Windows\tasks\YNYESL.job - C:\Users\Eli�ka\AppData\Roaming\YNYESL.exe /infocmdline=rIeOrYSjUEqeXS9PCNYSeeIo2vK+rZvFhq9o5UNplernW5afHKHPGln0XNxpchJEu7aAX4ZMWFqWgQRP97fudbvkMeQSTum8tECeKQ150jIYBjrlgFG6r1w6jCsazDP9OfkWbzLOjD7y3UTFgp+HSzSlZAseZObCxE9sig0BhtJzZxjT6osSTaXMBFGSgkkRJtmEcE+3eEA0oh5Axi/IvAII9tIhl61C7F1XqRMD2XUI4GjTf5j52mF24BKscNEa/nSkmqTbUyFQIz7e272SOppJD0kQDQrHwQ11QzwPThkGUlSPs0lge/JaAd3kwfwX53a36+ZynmvYUMCiSSZQK1Fb5BL2DjwWXq0wuqIyoQpcKYAl/Iti8WfRzM/0cA7gDBVxrQZNslaesdWnri0lYBSukvzr5aETZm6k5289TATnGO99cAAOBOL1WyHGhnpy6JEOt325SNmPM3rywl/WYxin53BuR99kSAphYXSh0NGSd59QJlCSbcQ2Hrd1WTkG
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111}]
TheTorntv V10 - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-bho64.dll [2014-09-07 750952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-07 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611331111}]
TheTorntv V10 - C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-bho.dll [2014-09-07 556904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
IETabPage Class - C:\Program Files (x86)\SupTab\SupTab.dll [2014-09-07 515464]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59e47ef9-5163-4e82-9c17-3d6f63dda496}]
innoApp - C:\Program Files (x86)\innoApp\innoAppbho.dll [2014-09-07 250136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-25 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-07 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-25 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-10-13 19549320]
"Google Update"=C:\Users\Eliška\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-03 136176]
"DAEMON Tools Lite"=D:\Programy\DAEMON Tools Lite\DTLite.exe [2012-01-19 3477312]
"ApplePhotoStreams"=C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [2012-12-17 59872]
"Badoo Desktop"=C:\ProgramData\Badoo\Badoo Desktop\1.6.55.1183\Badoo.Desktop.exe []
"OfficeSyncProcess"=C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-02-06 43848]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2011-10-24 421888]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-11-09 343168]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2011-12-09 74752]
"ACSW14EN"=D:\Programy\ACDSee\ACDSee\14.0\ACDSeeInTouch2.exe [2011-11-17 1231472]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2013-11-02 152392]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-07 4085896]
"OfficeSubscriptionAgent"=C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osaui.exe [2011-11-16 932160]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
C:\Users\Eliška\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Eliška\AppData\Roaming\Dropbox\bin\Dropbox.exe
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.ACDV"=ACDV.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-09-08 15:42:58 ----D---- C:\Program Files\trend micro
2014-09-08 15:42:57 ----D---- C:\rsit
2014-09-08 14:15:20 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-09-08 14:15:12 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-09-08 14:15:12 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-09-08 14:15:12 ----A---- C:\Windows\SYSWOW64\java.exe
2014-09-08 14:08:55 ----D---- C:\ProgramData\Package Cache
2014-09-07 19:39:57 ----A---- C:\Windows\system32\drivers\{3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys
2014-09-07 19:37:04 ----D---- C:\Users\Eliška\AppData\Roaming\Opera Software
2014-09-07 19:36:43 ----D---- C:\Program Files (x86)\Opera
2014-09-07 19:36:16 ----D---- C:\ProgramData\IePluginServices
2014-09-07 19:36:07 ----D---- C:\ProgramData\WindowsMangerProtect
2014-09-07 19:36:05 ----D---- C:\Program Files (x86)\SupTab
2014-09-07 19:34:21 ----D---- C:\Program Files (x86)\innoApp
2014-09-07 19:32:48 ----A---- C:\Users\Eliška\AppData\Roaming\YNYESL.exe
2014-09-07 19:32:10 ----A---- C:\Users\Eliška\AppData\Roaming\ORXAQNY.exe
2014-09-07 19:32:02 ----D---- C:\Program Files (x86)\globalUpdate
2014-09-07 19:32:00 ----D---- C:\Program Files (x86)\TheTorntv V10
2014-09-07 19:30:53 ----D---- C:\Users\Eliška\AppData\Roaming\TornTV.com
2014-08-29 16:11:29 ----A---- C:\Windows\system32\win32k.sys
2014-08-29 16:11:28 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-29 16:11:28 ----A---- C:\Windows\system32\gdi32.dll
2014-08-27 10:58:30 ----A---- C:\Windows\system32\wups2.dll
2014-08-27 10:58:30 ----A---- C:\Windows\system32\wucltux.dll
2014-08-27 10:58:30 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-27 10:58:29 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-27 10:58:02 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-27 10:58:02 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-27 10:58:02 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-27 10:58:02 ----A---- C:\Windows\system32\wups.dll
2014-08-27 10:58:02 ----A---- C:\Windows\system32\wudriver.dll
2014-08-27 10:58:02 ----A---- C:\Windows\system32\wuapi.dll
2014-08-27 10:57:34 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-08-27 10:57:34 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-08-27 10:57:34 ----A---- C:\Windows\system32\wuwebv.dll
2014-08-27 10:57:34 ----A---- C:\Windows\system32\wuapp.exe
2014-08-23 03:58:23 ----ASH---- C:\pagefile.sys
2014-08-23 03:34:16 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-08-23 03:30:57 ----D---- C:\Windows\Migration
2014-08-23 03:03:04 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-23 03:03:04 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-23 03:03:04 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-23 03:03:04 ----A---- C:\Windows\system32\icardagt.exe
2014-08-23 03:03:02 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-23 03:03:02 ----A---- C:\Windows\system32\icardres.dll
2014-08-23 03:02:38 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-23 03:02:37 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-22 13:53:59 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-22 13:53:59 ----A---- C:\Windows\system32\tzres.dll
2014-08-22 13:51:57 ----A---- C:\Windows\system32\msi.dll
2014-08-22 13:51:56 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-22 13:51:56 ----A---- C:\Windows\system32\authui.dll
2014-08-22 13:51:55 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-22 13:51:55 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-22 13:51:55 ----A---- C:\Windows\system32\msihnd.dll
2014-08-22 13:51:55 ----A---- C:\Windows\system32\consent.exe
2014-08-22 13:51:40 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-22 13:51:40 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-22 13:51:40 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-22 13:51:39 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-22 13:51:39 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-22 13:51:39 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-22 13:51:38 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-22 13:51:38 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-22 13:51:37 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-22 13:51:37 ----A---- C:\Windows\system32\iernonce.dll
2014-08-22 13:51:37 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-22 13:51:36 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-22 13:51:36 ----A---- C:\Windows\system32\urlmon.dll
2014-08-22 13:51:35 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-22 13:51:35 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-22 13:51:35 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-22 13:51:35 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-22 13:51:34 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-08-22 13:51:34 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-22 13:51:34 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-22 13:51:34 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-22 13:51:33 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-22 13:51:32 ----A---- C:\Windows\system32\iesetup.dll
2014-08-22 13:51:32 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-22 13:51:31 ----A---- C:\Windows\system32\iertutil.dll
2014-08-22 13:51:30 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-08-22 13:51:30 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-22 13:51:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-22 13:51:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-22 13:51:29 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-22 13:51:28 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-22 13:51:28 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-22 13:51:26 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-22 13:51:26 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-22 13:51:25 ----A---- C:\Windows\system32\ieui.dll
2014-08-22 13:51:25 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-22 13:51:24 ----A---- C:\Windows\system32\ieframe.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-22 13:51:23 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-22 13:51:22 ----A---- C:\Windows\system32\vbscript.dll
2014-08-22 13:51:22 ----A---- C:\Windows\system32\jscript9.dll
2014-08-22 13:51:22 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-22 13:51:21 ----A---- C:\Windows\system32\wininet.dll
2014-08-22 13:51:20 ----A---- C:\Windows\system32\msrating.dll
2014-08-22 13:51:20 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-22 13:51:18 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-22 13:51:18 ----A---- C:\Windows\system32\mshtml.dll
2014-08-19 10:45:08 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-19 10:45:08 ----A---- C:\Windows\system32\shell32.dll
2014-08-19 09:24:43 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-19 09:24:43 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-19 09:24:09 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-19 09:22:32 ----A---- C:\Windows\system32\aepdu.dll
2014-08-19 09:22:29 ----A---- C:\Windows\system32\aeinv.dll
======List of files/folders modified in the last 1 month======
2014-09-08 15:43:02 ----D---- C:\Windows\Prefetch
2014-09-08 15:42:59 ----D---- C:\Windows\Temp
2014-09-08 15:42:58 ----D---- C:\Program Files
2014-09-08 15:26:32 ----D---- C:\Users\Eliška\AppData\Roaming\Skype
2014-09-08 15:02:38 ----D---- C:\Windows\system32\config
2014-09-08 14:51:06 ----SHD---- C:\System Volume Information
2014-09-08 14:18:34 ----D---- C:\Users\Eliška\AppData\Roaming\Origin
2014-09-08 14:18:34 ----D---- C:\ProgramData\Origin
2014-09-08 14:17:41 ----D---- C:\Program Files (x86)\Origin
2014-09-08 14:15:46 ----D---- C:\ProgramData\Oracle
2014-09-08 14:15:36 ----D---- C:\Windows\system32\Tasks
2014-09-08 14:15:28 ----SHD---- C:\Windows\Installer
2014-09-08 14:15:27 ----D---- C:\Program Files (x86)\Common Files
2014-09-08 14:15:20 ----D---- C:\Windows\SysWOW64
2014-09-08 14:15:11 ----D---- C:\Program Files (x86)\Java
2014-09-08 14:09:13 ----D---- C:\Windows\System32
2014-09-08 14:08:55 ----HD---- C:\ProgramData
2014-09-08 14:02:43 ----D---- C:\Windows\inf
2014-09-08 14:02:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-08 13:56:25 ----D---- C:\Users\Eliška\AppData\Roaming\Dropbox
2014-09-07 20:28:27 ----A---- C:\Windows\win.ini
2014-09-07 20:17:58 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-09-07 19:40:56 ----D---- C:\Users\Eliška\AppData\Roaming\uTorrent
2014-09-07 19:39:57 ----D---- C:\Windows\system32\drivers
2014-09-07 19:36:43 ----RD---- C:\Program Files (x86)
2014-09-07 19:33:56 ----D---- C:\Windows\Tasks
2014-08-30 03:20:57 ----D---- C:\Windows\system32\catroot2
2014-08-30 03:19:49 ----D---- C:\Windows\winsxs
2014-08-29 19:06:44 ----D---- C:\Windows
2014-08-29 16:09:13 ----D---- C:\Windows\system32\catroot
2014-08-29 16:00:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-29 16:00:47 ----D---- C:\Windows\system32\cs-CZ
2014-08-27 03:21:41 ----D---- C:\Windows\Microsoft.NET
2014-08-23 04:14:07 ----RSD---- C:\Windows\assembly
2014-08-23 03:56:23 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-23 03:56:23 ----D---- C:\Windows\system32\en-US
2014-08-23 03:56:23 ----D---- C:\Windows\PolicyDefinitions
2014-08-23 03:56:23 ----D---- C:\Program Files\Internet Explorer
2014-08-23 03:56:22 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-23 03:38:30 ----D---- C:\ProgramData\Microsoft Help
2014-08-23 03:30:57 ----SD---- C:\ProgramData\Microsoft
2014-08-23 03:21:08 ----D---- C:\Windows\system32\MRT
2014-08-23 03:12:13 ----A---- C:\Windows\system32\MRT.exe
2014-08-19 10:46:08 ----SD---- C:\Windows\system32\CompatTel
2014-08-19 10:46:08 ----D---- C:\Windows\ehome
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-07 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-07 224896]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 {3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64;{3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64; C:\Windows\system32\drivers\{3c3ae2b4-4a36-40c4-a356-ffc1820b7ece}Gw64.sys [2014-09-07 61112]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-03-07 22600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-07 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-08-07 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-07 427360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-02-05 283200]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-07 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-07 79184]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
S2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-07 92008]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-11-10 325632]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-10-17 93712]
S3 cpuz135;cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys []
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl64.sys [2013-07-25 23040]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-05-18 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-05-18 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-05-18 9216]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-05-18 9216]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-11-10 204288]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-01-07 43336]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-07 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 IePluginServices;IePlugin Services; C:\ProgramData\IePluginServices\PluginService.exe [2014-09-07 715656]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 msoidsvc;Microsoft Online Services Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [2012-05-17 2079520]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [2008-09-30 935208]
R2 osubsvc;Agent odběrů systému Microsoft Office 2010; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\osa.exe [2011-11-16 493384]
R2 TeamViewer7;TeamViewer 7; C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2011-12-14 2984832]
R2 Update innoApp;Update innoApp; C:\Program Files (x86)\innoApp\updateinnoApp.exe [2014-09-07 323352]
R2 WindowsMangerProtect;WindowsMangerProtect Service; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [2014-09-07 528896]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-11-02 641352]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-07 68608]
S2 trntv;Torntv Downloader; C:\Users\Eliška\AppData\Roaming\TornTV.com\TornTVSvc.exe []
S2 Util innoApp;Util innoApp; C:\Program Files (x86)\innoApp\bin\utilinnoApp.exe [2014-09-08 323352]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-28 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2011-12-09 135584]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-07 68608]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-07-25 111616]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-01-14 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------