zpomalené pc - hd plus
Napsal: 12 zář 2014 12:09
Zdravím,
aktuálně mám problém s ntb - celý systém je zpomalený. Známému se povedlo s něčím
nainstalovat hdplus, od té doby je vše zasekané. HDplus mi nejde odstranit. Poprosil bych
o kontrolu logu, díky za pomoc
Logfile of random's system information tool 1.10 (written by random/random)
Run by OLPE at 2014-09-12 13:01:30
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 3957 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:02:05, on 12.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal
Running processes:
C:\Users\OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\Installer\setup.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\avastUi.exe
C:\Program Files\trend micro\OLPE.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.default-search.net?sid=476&a ... 88&src=hmp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0059562 - {11111111-1111-1111-1111-110511951162} - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-bho.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'Default user')
O4 - Startup: Dropbox.lnk = OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Přidat do aplikace TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SmdmF Service (SmdmFService) - Aztec Media Inc - C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10719 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 3797312
\??\C:\Windows\system32\conhost.exe "-495144728-1078923733-320437983-19854112212988878967435914-333583374-799538223
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {C7620A68-0D78-48C6-9D06-85F3E40623FD}
"C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe"
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe"
"C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe" -monitor 460
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2172
"taskhost.exe"
"C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe" /c
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE3
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
taskeng.exe {D00E8410-2914-4FA0-A171-089F131ADCD9}
"C:\Users\OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Windows\system32\RunDll32.exe" "C:\Program Files\HP\HP Officejet 6500 E710a-f\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN13C210PQ05JZ;CONNECTION=USB;MONITOR=1;
"C:\Windows\system32\RunDll32.exe" "C:\Program Files\HP\HP Officejet 7500 E910\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=MY3243110J05JB;CONNECTION=NW;MONITOR=1;
"C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe"
"C:\Program Files (x86)\Settings Manager\smdmf\smdmfu.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe"
C:\Windows\system32\svchost.exe -k HPService
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2abe6dea-c35a-4f8b-a4e4-3e5d5bf42972 -SystemEventPortName:HostProcess-cacac40d-5aad-4c97-a75a-89ea0546e67c -IoCancelEventPortName:HostProcess-9839e1d5-e5fc-40b5-9e46-4611cb63681e -NonStateChangingEventPortName:HostProcess-8e0f1d31-5625-40b9-b72e-3d05a1933932 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c5265a15-ebce-49b1-88c8-a1872a6c10ab -DeviceGroupId:WpdFsGroup
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://www.google.com/support/chrome/bi ... s=6.1.7601
"C:\Windows\SysWOW64\rundll32.exe" "C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll",switch_processor_mode 000000000000020C
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4372.0.1854500849\1786634729" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,44 --disable-accelerated-video-decode --gpu-vendor-id=0x10de --gpu-device-id=0x0a7a --gpu-driver-vendor=NVIDIA --gpu-driver-version=8.17.12.6669 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-nova.exe" /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /EkgeIU /VtDJGirtN='nova' /ZnpqwPR=http://js.clientdemocloud.com /lWWiCcsy='{"asw":[8, 1, 0]}' /gWZbpO='http://update.datagenserv.com/novarun/{ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4372.29.665759643\1927111166" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe10_ Global\UsGthrCtrlFltPipeMssGthrPipe10 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --disable-accelerated-video-decode --channel="4372.34.1841069179\1525324676" /prefetch:673131151
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\AVAST Software\Avast\avastUi.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicatorCom.exe" -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\OLPE\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-1.job - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-codedownloader.exe /WHlKt /FTjVrg=task /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /ZnpqwPR=http://js.clientdemocloud.com /zTlKDOn /lWWiCcsy='{"asw":[8, 1, 0]}' /gWZbpO='http://update.datagenserv.com/ie_code_a ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-11.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-11.exe /XwFCMrok=ogBkyU+M+XlRpNZfaaD9aNbptqfADTIY3EL8Fx4jK20TEVqXqM9MGz6OCdidL9WgkMFzKP+oaaeBO/YEi7NTTdTawbiPC+e1Vn5SfJPsbM7Gktyqq2HYK708dGyXooFZYhUV5t9LLEsV+5DowKsj20hkdAeZdQRCW5wsbS37KNK/nM2dB/73K80vrIGvW7fEljO5lR+u8VpqxMP2/j13sUh5pa1rFIuYP0xndxB7BCTgCK722WluUXdN8YmzoE19UZZJxt2fZ8ooGIhXRk+Q3VUJk89BNcfS0ZzoJLBEnVGuz7sMWvTs6qSCxZHGcaqCCT++8nDM0xBCaXleumEGYljVjJn9FUCizZwMvRFUm/qcBPujU3/4LPQ/kQlF10sUc/mtxuNreI0w9oNyO0/6WIQ8mpr2ZYOOaBKFathauDXQIqCA00SCUvs8/WGqEXRF8EKXjbOPIPPNW1gURB1PuENFr5xO2aUPqt95e9r/ndb7foyUyknnk7ItSNYroyNrkaEJwiKEhnkD76+jZ9/Pq7x/dGvSawlrfXm2eg/InnIVsSHM0K6Y2miWQsPShXwy/waWRVrLkfUAQvniYobEUR3HK3lZp8w/z85EPle/ARjtRyAMvPbeBr/bMqwoXddLmBKo0fbxeTXSnUq30BCpLCd6CuHl8GRU8lsuKNvJfuKoNKOMRoC5c0Smn2JfSZXx1EAg5sbxLJMkao3ZSlPp6WKBe59qFzxbq6RrwSCtUv+TFfUlTwsvG598+4B265kwm6v4gjYu3w68I/z0Tn0c3X8ATkOyfuPCBXhBz2EsjP18AOE4Pxh7/3q+QEw0USAQbecrm2f4PEnfyOs1TqjURB18p2IgaDtF6RZdlXQXPcv26tRM7DNX7IFhP/GIhkJ4NlzvJUh+xSYktuKv8v/LedaNQLYOFz8Ad1uXdxvL2fLRHMr1iTF9D8HjJfskwH3uJk9ja9e7428na6/tMqm3UC1B68BwWdL9kCxoGexIZwcJ34RCBDv6U2i/OxQQIqJ7sx/AOdzjUdDp1ZHQuc2TfkSXlIUsiqkeLGMn0iWpZvYKytcdh05Zpix737gwvWKYqXZTscSfe6oZ+j4y/dfL/dktoKyfwqW0KJ3ashx2eHMO+9xEILRbOokcKHu8dhLCB4GV2zIqd2Ua9useDidaaE5oADKNsEosDMRzq/u5apuJGqy4oK9f6YQdVi8STozr+DRjXNBxFnxj6D538XGnQ1T0t01X/3eIeVsXIBcvkTFMa5SiVeQS48UonVx6KltqbO4kWYWku8+6YEuDL9H8mkEtLebOjlMgkz65Kd2LvjTEaqMVTpHBAA5gWrZDdqDAvO3vfwcy9H0nZSwroOsEH1vqomdrWAyEJQU+mG9RUYXlau126kCjcJO0INt/nOXqYT7KA5WfaWiNrH+5EIsPOjNnnfxBMeMhRzeTFuJQfsNk6b1VdTPLro4r+DTwjdR5E2YILnePl/l7yREBd5fi+phDzCff7NLalE+8vuudJfT41zG0S9TPtXC+oTvrM1teHmj8uRbGQauqI5T9bXQq1CV67jcodcnuHr68TUPjE0EhgrAM+K7o8QL0yKKKwl1paGBVMDCRoX0WIPj7l9rpGD0B6R09dJTtUWww1FW+Fj8Wd139vamAGlYZIeTgJM0b5Wvjt2/jFrZytBzSYcmxDdM5PgvF5FuRHG/5iXWovFk=
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-2.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-2.exe /bRXuUn /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /wNQhIi=11111111-1111-1111-1111-110511951162 /MlWHEFwVW=ch /eeiRG /zTlKDOn /gWZbpO='http://update.datagenserv.com/ie_enable ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-3.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-3.exe /XwFCMrok=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
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-4.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-4.exe /nnpqzAL /Tslqtz='Plus-HD-V1.5' /psCFJxWE='C:\Program Files (x86)\Plus-HD-V1.5\59562.xpi' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /KHILDCqN=300 /XQgyEst=809710cc-b432-49dc-9140-7828943a0e27@84b67896-5412-4e3f-a6d3-fa7dc6e439e3.com /aiFjXgPBF=0.94 /XlPlpbW=a809710ccb43249dc91407828943a0e2784b6789654124e3fa6d3fa7dc6e439e3com59562 /hAEaKYUOo=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /59562.rdf /HASuxAmKm='Plus-HD-V1.5' /XfoJF='Turn YouTube videos to High Definition by default' /BEgWi='Plus-HD-V1.5' /MlWHEFwVW=ch /lWWiCcsy='{"asw":[8, 1, 0]}' /zTlKDOn /ABIwhz /nzuCxSnaK /gWZbpO='http://update.datagenserv.com/ff_agent_ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-5.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-5.exe /qEVKuN /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /MMAHfXhXJ=http://ipgeoapi.com/ /Lqpjr=http://update.datagenserv.com /qPTtcuuqI=2 /QCpKW=http://logs.datagenserv.com /gWZbpO='http://update.datagenserv.com/updater_a ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-6.job - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-novainstaller.exe /lsApTW /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /EkgeIU /VtDJGirtN='nova' /ZnpqwPR=http://js.clientdemocloud.com /lWWiCcsy='{"asw":[8, 1, 0]}' /FTjVrg=task /gWZbpO='http://update.datagenserv.com/novacode/ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-7.job - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-nova.exe /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /EkgeIU /VtDJGirtN='nova' /ZnpqwPR=http://js.clientdemocloud.com /lWWiCcsy='{"asw":[8, 1, 0]}' /gWZbpO='http://update.datagenserv.com/novarun/{ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951162}]
Plus-HD-V1.5 - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-bho64.dll [2014-06-24 828400]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-09-12 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951162}]
Plus-HD-V1.5 - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-bho.dll [2014-06-24 611312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-09-12 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-02-28 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-12-05 529784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-01-12 11775592]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-01-10 2186856]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 1331288]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CDAServer]
C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2012-03-09 462712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\OLPE\AppData\Roaming\Seznam.cz\szninstall.exe -c []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\OLPE\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\OLPE\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarminExpressTrayApp]
C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2014-08-07 688984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Officejet 7500 E910 (NET)]
C:\Program Files\HP\HP Officejet 7500 E910\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^OLPE^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Officejet 6500 E710a-f.lnk]
C:\Windows\system32\RunDll32.exe [2009-07-14 45568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^OLPE^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Officejet 7500 E910 (Síť).lnk]
C:\Windows\system32\RunDll32.exe [2009-07-14 45568]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-09-12 4086432]
C:\Users\OLPE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2014-09-12 12:49:22 ----D---- C:\Users\OLPE\AppData\Roaming\AVAST Software
2014-09-12 12:48:51 ----SD---- C:\Windows\SYSWOW64\Microsoft
2014-09-12 12:47:36 ----A---- C:\Windows\system32\drivers\aswStm.sys
2014-09-12 12:47:35 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-09-12 12:46:59 ----A---- C:\Windows\avastSS.scr
2014-09-12 12:43:47 ----D---- C:\Program Files\trend micro
2014-09-12 12:43:43 ----D---- C:\rsit
2014-09-11 09:18:16 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2014-09-11 06:12:54 ----A---- C:\Windows\system32\ieui.dll
2014-09-11 06:12:53 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-09-11 06:12:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\jscript9diag.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\iernonce.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\vbscript.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\msrating.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\ieUnatt.exe
2014-09-11 06:12:50 ----A---- C:\Windows\system32\dxtrans.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\dxtmsft.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-09-11 06:12:49 ----A---- C:\Windows\system32\mshtmled.dll
2014-09-11 06:12:49 ----A---- C:\Windows\system32\msfeeds.dll
2014-09-11 06:12:49 ----A---- C:\Windows\system32\jsproxy.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-09-11 06:12:48 ----A---- C:\Windows\system32\iesetup.dll
2014-09-11 06:12:48 ----A---- C:\Windows\system32\iedkcs32.dll
2014-09-11 06:12:48 ----A---- C:\Windows\system32\ie4uinit.exe
2014-09-11 06:12:47 ----A---- C:\Windows\system32\mshtml.dll
2014-09-11 06:12:46 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-09-11 06:12:46 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-09-11 06:12:46 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-09-11 06:12:46 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-09-11 06:12:46 ----A---- C:\Windows\system32\ieapfltr.dll
2014-09-11 06:12:45 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-09-11 06:12:45 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 06:12:45 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-09-11 06:12:43 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-09-11 06:12:43 ----A---- C:\Windows\system32\iertutil.dll
2014-09-11 06:12:42 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-09-11 06:12:42 ----A---- C:\Windows\system32\wininet.dll
2014-09-11 06:12:42 ----A---- C:\Windows\system32\jscript9.dll
2014-09-11 06:12:41 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-09-11 06:12:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-09-11 06:12:41 ----A---- C:\Windows\system32\urlmon.dll
2014-09-11 06:12:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-09-11 06:12:38 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-09-11 06:12:38 ----A---- C:\Windows\system32\ieframe.dll
2014-09-11 06:04:21 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-09-11 06:04:21 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-09-10 13:51:19 ----A---- C:\Windows\system32\d3d10warp.dll
2014-09-10 13:51:18 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-09-10 13:51:03 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-09-10 13:51:03 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-09-10 13:51:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-09-10 13:51:03 ----A---- C:\Windows\system32\lsasrv.dll
2014-09-10 13:51:03 ----A---- C:\Windows\system32\kerberos.dll
2014-09-10 13:50:52 ----A---- C:\Windows\system32\aepdu.dll
2014-09-10 13:50:51 ----A---- C:\Windows\system32\aeinv.dll
2014-09-10 13:50:50 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-09-10 13:50:50 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-09-04 14:22:20 ----D---- C:\ProgramData\smdmf
2014-09-04 14:22:18 ----D---- C:\ProgramData\systemk
2014-08-28 09:23:23 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 09:23:23 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 09:23:23 ----A---- C:\Windows\system32\gdi32.dll
2014-08-14 03:01:51 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-14 03:01:51 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-14 03:01:51 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-14 03:01:51 ----A---- C:\Windows\system32\icardagt.exe
2014-08-14 03:01:49 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-14 03:01:49 ----A---- C:\Windows\system32\icardres.dll
2014-08-14 03:01:25 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-14 03:01:25 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDYAK.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDTAT.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDRU1.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDRU.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-08-13 23:36:24 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-13 23:36:24 ----A---- C:\Windows\system32\tzres.dll
2014-08-13 23:36:18 ----A---- C:\Windows\system32\msi.dll
2014-08-13 23:36:17 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-13 23:36:16 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-13 23:36:16 ----A---- C:\Windows\system32\authui.dll
2014-08-13 23:36:15 ----A---- C:\Windows\system32\msihnd.dll
2014-08-13 23:36:15 ----A---- C:\Windows\system32\consent.exe
2014-08-13 23:36:14 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-13 23:36:09 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-13 23:36:07 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-13 23:36:07 ----A---- C:\Windows\system32\shell32.dll
2014-08-13 23:35:13 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-13 23:35:13 ----A---- C:\Windows\system32\rpcrt4.dll
======List of files/folders modified in the last 1 month======
2014-09-12 12:57:24 ----D---- C:\Windows\Temp
2014-09-12 12:48:51 ----D---- C:\Windows\SysWOW64
2014-09-12 12:48:25 ----D---- C:\Windows\system32\drivers
2014-09-12 12:48:06 ----D---- C:\Windows\system32\Tasks
2014-09-12 12:47:31 ----D---- C:\Windows\winsxs
2014-09-12 12:47:21 ----D---- C:\Windows
2014-09-12 12:47:06 ----A---- C:\Windows\system32\aswBoot.exe
2014-09-12 12:43:47 ----RD---- C:\Program Files
2014-09-12 12:41:33 ----D---- C:\ProgramData\AVAST Software
2014-09-12 12:40:48 ----SHD---- C:\System Volume Information
2014-09-12 12:09:01 ----D---- C:\Windows\pss
2014-09-12 12:07:06 ----D---- C:\Users\OLPE\AppData\Roaming\Seznam.cz
2014-09-12 12:07:02 ----D---- C:\Program Files (x86)\Seznam.cz
2014-09-12 12:03:03 ----D---- C:\Windows\inf
2014-09-12 12:03:02 ----D---- C:\Windows\Minidump
2014-09-12 12:03:02 ----D---- C:\Windows\debug
2014-09-12 11:21:56 ----D---- C:\Windows\tracing
2014-09-12 09:53:33 ----D---- C:\Windows\system32\config
2014-09-12 09:44:16 ----D---- C:\Windows\System32
2014-09-12 09:44:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-12 09:41:29 ----A---- C:\Windows\SYSWOW64\log.txt
2014-09-12 09:40:36 ----D---- C:\Users\OLPE\AppData\Roaming\Dropbox
2014-09-12 06:39:13 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-09-12 06:39:13 ----D---- C:\Windows\system32\cs-CZ
2014-09-11 09:18:32 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-09-11 07:30:30 ----D---- C:\Windows\Microsoft.NET
2014-09-11 07:25:55 ----RSD---- C:\Windows\assembly
2014-09-11 06:36:38 ----D---- C:\Windows\Prefetch
2014-09-11 06:33:52 ----D---- C:\Windows\system32\catroot
2014-09-11 06:33:15 ----D---- C:\Program Files\Internet Explorer
2014-09-11 06:33:13 ----D---- C:\Windows\SYSWOW64\en-US
2014-09-11 06:33:10 ----D---- C:\Windows\system32\en-US
2014-09-11 06:33:07 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-11 06:17:44 ----SHD---- C:\Windows\Installer
2014-09-11 06:17:41 ----HD---- C:\Config.Msi
2014-09-11 06:17:41 ----D---- C:\ProgramData\Microsoft Help
2014-09-11 06:13:26 ----D---- C:\Windows\system32\catroot2
2014-09-11 06:11:03 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-09-11 06:09:30 ----D---- C:\Program Files\Microsoft Security Client
2014-09-11 06:09:29 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-09-11 06:09:10 ----D---- C:\Windows\system32\MRT
2014-09-11 06:05:28 ----A---- C:\Windows\system32\MRT.exe
2014-09-11 06:04:11 ----SD---- C:\Windows\system32\CompatTel
2014-09-04 14:22:20 ----HD---- C:\ProgramData
2014-09-04 14:22:05 ----D---- C:\Program Files (x86)\Settings Manager
2014-08-31 11:23:07 ----D---- C:\Program Files (x86)\The KMPlayer
2014-08-19 10:08:57 ----D---- C:\Program Files\CCleaner
2014-08-14 07:15:30 ----D---- C:\Windows\rescache
2014-08-14 03:36:46 ----D---- C:\Program Files\Microsoft Silverlight
2014-08-14 03:36:43 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-08-14 03:34:25 ----D---- C:\Windows\ehome
2014-08-14 03:34:22 ----RSD---- C:\Windows\Fonts
2014-08-14 03:33:30 ----D---- C:\Windows\PolicyDefinitions
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-09-12 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-09-12 224896]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-27 540696]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 269008]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-09-12 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-09-12 1041168]
R1 F06DEFF2-5B9C-490D-910F-35D3A9119622;F06DEFF2-5B9C-490D-910F-35D3A9119622; \??\C:\Program Files (x86)\Settings Manager\smdmf\x64\smdmfmgrc2.cfg [2014-08-14 41872]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-09-12 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-09-12 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-09-12 92008]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 125584]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2009-03-02 11576]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2010-12-17 2675712]
R3 BtFilter;Bluetooth LowerFilter Class Filter Driver; C:\Windows\system32\DRIVERS\btfilter.sys [2010-10-18 42096]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-01-13 2712680]
R3 PGEffect;Pangu effect driver; C:\Windows\system32\DRIVERS\pgeffect.sys [2011-02-08 38096]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-02-03 1413680]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2011-01-20 291120]
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2010-06-18 18872]
R3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2011-01-27 67384]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-09-12 427360]
S2 DgiVecp;DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [2009-03-02 53816]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys [2012-12-07 36928]
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\Windows\system32\DRIVERS\ewdcsc.sys [2009-12-15 29696]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-15 117248]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-12-15 114304]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-10-29 250984]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 WinUsb;YunOS USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-09-12 50344]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2014-08-07 438616]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-24 136176]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-05-06 325656]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 23784]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 SmdmFService;SmdmF Service; C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe [2014-08-14 3572240]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-05-06 2533400]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 368624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-06-24 68608]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-11 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-06-24 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-24 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-12-08 137632]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-21 1255736]
S4 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200]
S4 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
S4 GFNEXSrv;GFNEX Service; C:\Windows\System32\GFNEXSrv.exe [2010-09-09 162824]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2011-01-16 993896]
S4 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2010-04-12 196976]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------
aktuálně mám problém s ntb - celý systém je zpomalený. Známému se povedlo s něčím
nainstalovat hdplus, od té doby je vše zasekané. HDplus mi nejde odstranit. Poprosil bych
o kontrolu logu, díky za pomoc
Logfile of random's system information tool 1.10 (written by random/random)
Run by OLPE at 2014-09-12 13:01:30
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 3957 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:02:05, on 12.9.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal
Running processes:
C:\Users\OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\Installer\setup.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\avastUi.exe
C:\Program Files\trend micro\OLPE.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.default-search.net?sid=476&a ... 88&src=hmp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: CrossriderApp0059562 - {11111111-1111-1111-1111-110511951162} - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-bho.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'Default user')
O4 - Startup: Dropbox.lnk = OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Přidat do aplikace TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SmdmF Service (SmdmFService) - Aztec Media Inc - C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10719 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
winlogon.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 3797312
\??\C:\Windows\system32\conhost.exe "-495144728-1078923733-320437983-19854112212988878967435914-333583374-799538223
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {C7620A68-0D78-48C6-9D06-85F3E40623FD}
"C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe"
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe"
"C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe" -monitor 460
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2172
"taskhost.exe"
"C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe" /c
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE3
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
taskeng.exe {D00E8410-2914-4FA0-A171-089F131ADCD9}
"C:\Users\OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Windows\system32\RunDll32.exe" "C:\Program Files\HP\HP Officejet 6500 E710a-f\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN13C210PQ05JZ;CONNECTION=USB;MONITOR=1;
"C:\Windows\system32\RunDll32.exe" "C:\Program Files\HP\HP Officejet 7500 E910\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=MY3243110J05JB;CONNECTION=NW;MONITOR=1;
"C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe"
"C:\Program Files (x86)\Settings Manager\smdmf\smdmfu.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe"
C:\Windows\system32\svchost.exe -k HPService
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2abe6dea-c35a-4f8b-a4e4-3e5d5bf42972 -SystemEventPortName:HostProcess-cacac40d-5aad-4c97-a75a-89ea0546e67c -IoCancelEventPortName:HostProcess-9839e1d5-e5fc-40b5-9e46-4611cb63681e -NonStateChangingEventPortName:HostProcess-8e0f1d31-5625-40b9-b72e-3d05a1933932 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c5265a15-ebce-49b1-88c8-a1872a6c10ab -DeviceGroupId:WpdFsGroup
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://www.google.com/support/chrome/bi ... s=6.1.7601
"C:\Windows\SysWOW64\rundll32.exe" "C:\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll",switch_processor_mode 000000000000020C
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4372.0.1854500849\1786634729" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,44 --disable-accelerated-video-decode --gpu-vendor-id=0x10de --gpu-device-id=0x0a7a --gpu-driver-vendor=NVIDIA --gpu-driver-version=8.17.12.6669 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Uninstall.exe"
"C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-nova.exe" /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /EkgeIU /VtDJGirtN='nova' /ZnpqwPR=http://js.clientdemocloud.com /lWWiCcsy='{"asw":[8, 1, 0]}' /gWZbpO='http://update.datagenserv.com/novarun/{ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4372.29.665759643\1927111166" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe10_ Global\UsGthrCtrlFltPipeMssGthrPipe10 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_11/UMA-Uniformity-Trial-1-Percent/group_07/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/ --renderer-print-preview --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --disable-accelerated-video-decode --channel="4372.34.1841069179\1525324676" /prefetch:673131151
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\AVAST Software\Avast\avastUi.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicatorCom.exe" -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\OLPE\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-1.job - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-codedownloader.exe /WHlKt /FTjVrg=task /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /ZnpqwPR=http://js.clientdemocloud.com /zTlKDOn /lWWiCcsy='{"asw":[8, 1, 0]}' /gWZbpO='http://update.datagenserv.com/ie_code_a ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-11.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-11.exe /XwFCMrok=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
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-2.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-2.exe /bRXuUn /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /wNQhIi=11111111-1111-1111-1111-110511951162 /MlWHEFwVW=ch /eeiRG /zTlKDOn /gWZbpO='http://update.datagenserv.com/ie_enable ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-3.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-3.exe /XwFCMrok=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
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-4.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-4.exe /nnpqzAL /Tslqtz='Plus-HD-V1.5' /psCFJxWE='C:\Program Files (x86)\Plus-HD-V1.5\59562.xpi' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /KHILDCqN=300 /XQgyEst=809710cc-b432-49dc-9140-7828943a0e27@84b67896-5412-4e3f-a6d3-fa7dc6e439e3.com /aiFjXgPBF=0.94 /XlPlpbW=a809710ccb43249dc91407828943a0e2784b6789654124e3fa6d3fa7dc6e439e3com59562 /hAEaKYUOo=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /59562.rdf /HASuxAmKm='Plus-HD-V1.5' /XfoJF='Turn YouTube videos to High Definition by default' /BEgWi='Plus-HD-V1.5' /MlWHEFwVW=ch /lWWiCcsy='{"asw":[8, 1, 0]}' /zTlKDOn /ABIwhz /nzuCxSnaK /gWZbpO='http://update.datagenserv.com/ff_agent_ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-5.job - C:\Program Files (x86)\Plus-HD-V1.5\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-5.exe /qEVKuN /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /MMAHfXhXJ=http://ipgeoapi.com/ /Lqpjr=http://update.datagenserv.com /qPTtcuuqI=2 /QCpKW=http://logs.datagenserv.com /gWZbpO='http://update.datagenserv.com/updater_a ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-6.job - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-novainstaller.exe /lsApTW /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /EkgeIU /VtDJGirtN='nova' /ZnpqwPR=http://js.clientdemocloud.com /lWWiCcsy='{"asw":[8, 1, 0]}' /FTjVrg=task /gWZbpO='http://update.datagenserv.com/novacode/ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\1a865e51-8d7f-47ac-a7cc-49d250e98ec8-7.job - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-nova.exe /Tslqtz='Plus-HD-V1.5' /sXvLS=59562 /sXpxq='001690' /jAErLa='0' /RsOnpaMiX='0' /gZLMO=AE112C908069494398FD9E12B40478E9IE /eHTOvF=00cb61805dc479ac02baae9469321219 /UvyZbFWfj=1_34_06_10 /jNWHyHawn=1.34.6.10 /yFIPXHM=1403630725 /QGQNPkKYM=http://stats.datagenserv.com /gxkGk=http://errors.datagenserv.com /SqYoDeZx=http://js.datagenserv.com /MlWHEFwVW=ch /EkgeIU /VtDJGirtN='nova' /ZnpqwPR=http://js.clientdemocloud.com /lWWiCcsy='{"asw":[8, 1, 0]}' /gWZbpO='http://update.datagenserv.com/novarun/{ ... pdate.json' /FTjVrg='task' /pVTnMrrL=''
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951162}]
Plus-HD-V1.5 - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-bho64.dll [2014-06-24 828400]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-09-12 612248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951162}]
Plus-HD-V1.5 - C:\Program Files (x86)\Plus-HD-V1.5\Plus-HD-V1.5-bho.dll [2014-06-24 611312]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-09-12 457712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-02-28 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-12-05 529784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-01-12 11775592]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-01-10 2186856]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-08-22 1331288]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CDAServer]
C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2012-03-09 462712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\OLPE\AppData\Roaming\Seznam.cz\szninstall.exe -c []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Users\OLPE\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\OLPE\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarminExpressTrayApp]
C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2014-08-07 688984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Officejet 7500 E910 (NET)]
C:\Program Files\HP\HP Officejet 7500 E910\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^OLPE^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Officejet 6500 E710a-f.lnk]
C:\Windows\system32\RunDll32.exe [2009-07-14 45568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^OLPE^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Officejet 7500 E910 (Síť).lnk]
C:\Windows\system32\RunDll32.exe [2009-07-14 45568]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-09-12 4086432]
C:\Users\OLPE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\OLPE\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 month======
2014-09-12 12:49:22 ----D---- C:\Users\OLPE\AppData\Roaming\AVAST Software
2014-09-12 12:48:51 ----SD---- C:\Windows\SYSWOW64\Microsoft
2014-09-12 12:47:36 ----A---- C:\Windows\system32\drivers\aswStm.sys
2014-09-12 12:47:35 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswsp.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2014-09-12 12:47:34 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2014-09-12 12:46:59 ----A---- C:\Windows\avastSS.scr
2014-09-12 12:43:47 ----D---- C:\Program Files\trend micro
2014-09-12 12:43:43 ----D---- C:\rsit
2014-09-11 09:18:16 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2014-09-11 06:12:54 ----A---- C:\Windows\system32\ieui.dll
2014-09-11 06:12:53 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-09-11 06:12:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\jscript9diag.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\iernonce.dll
2014-09-11 06:12:51 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-09-11 06:12:50 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\vbscript.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\msrating.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\ieUnatt.exe
2014-09-11 06:12:50 ----A---- C:\Windows\system32\dxtrans.dll
2014-09-11 06:12:50 ----A---- C:\Windows\system32\dxtmsft.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-09-11 06:12:49 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-09-11 06:12:49 ----A---- C:\Windows\system32\mshtmled.dll
2014-09-11 06:12:49 ----A---- C:\Windows\system32\msfeeds.dll
2014-09-11 06:12:49 ----A---- C:\Windows\system32\jsproxy.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-09-11 06:12:48 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-09-11 06:12:48 ----A---- C:\Windows\system32\iesetup.dll
2014-09-11 06:12:48 ----A---- C:\Windows\system32\iedkcs32.dll
2014-09-11 06:12:48 ----A---- C:\Windows\system32\ie4uinit.exe
2014-09-11 06:12:47 ----A---- C:\Windows\system32\mshtml.dll
2014-09-11 06:12:46 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-09-11 06:12:46 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-09-11 06:12:46 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-09-11 06:12:46 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-09-11 06:12:46 ----A---- C:\Windows\system32\ieapfltr.dll
2014-09-11 06:12:45 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-09-11 06:12:45 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 06:12:45 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-09-11 06:12:43 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-09-11 06:12:43 ----A---- C:\Windows\system32\iertutil.dll
2014-09-11 06:12:42 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-09-11 06:12:42 ----A---- C:\Windows\system32\wininet.dll
2014-09-11 06:12:42 ----A---- C:\Windows\system32\jscript9.dll
2014-09-11 06:12:41 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-09-11 06:12:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-09-11 06:12:41 ----A---- C:\Windows\system32\urlmon.dll
2014-09-11 06:12:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-09-11 06:12:38 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-09-11 06:12:38 ----A---- C:\Windows\system32\ieframe.dll
2014-09-11 06:04:21 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-09-11 06:04:21 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-09-10 13:51:19 ----A---- C:\Windows\system32\d3d10warp.dll
2014-09-10 13:51:18 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-09-10 13:51:03 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-09-10 13:51:03 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-09-10 13:51:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-09-10 13:51:03 ----A---- C:\Windows\system32\lsasrv.dll
2014-09-10 13:51:03 ----A---- C:\Windows\system32\kerberos.dll
2014-09-10 13:50:52 ----A---- C:\Windows\system32\aepdu.dll
2014-09-10 13:50:51 ----A---- C:\Windows\system32\aeinv.dll
2014-09-10 13:50:50 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-09-10 13:50:50 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-09-04 14:22:20 ----D---- C:\ProgramData\smdmf
2014-09-04 14:22:18 ----D---- C:\ProgramData\systemk
2014-08-28 09:23:23 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-28 09:23:23 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 09:23:23 ----A---- C:\Windows\system32\gdi32.dll
2014-08-14 03:01:51 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-08-14 03:01:51 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-08-14 03:01:51 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-14 03:01:51 ----A---- C:\Windows\system32\icardagt.exe
2014-08-14 03:01:49 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-08-14 03:01:49 ----A---- C:\Windows\system32\icardres.dll
2014-08-14 03:01:25 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-14 03:01:25 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDYAK.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDTAT.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDRU1.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDRU.DLL
2014-08-13 23:36:26 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-08-13 23:36:24 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-08-13 23:36:24 ----A---- C:\Windows\system32\tzres.dll
2014-08-13 23:36:18 ----A---- C:\Windows\system32\msi.dll
2014-08-13 23:36:17 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-13 23:36:16 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-13 23:36:16 ----A---- C:\Windows\system32\authui.dll
2014-08-13 23:36:15 ----A---- C:\Windows\system32\msihnd.dll
2014-08-13 23:36:15 ----A---- C:\Windows\system32\consent.exe
2014-08-13 23:36:14 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-13 23:36:09 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-13 23:36:07 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-13 23:36:07 ----A---- C:\Windows\system32\shell32.dll
2014-08-13 23:35:13 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-13 23:35:13 ----A---- C:\Windows\system32\rpcrt4.dll
======List of files/folders modified in the last 1 month======
2014-09-12 12:57:24 ----D---- C:\Windows\Temp
2014-09-12 12:48:51 ----D---- C:\Windows\SysWOW64
2014-09-12 12:48:25 ----D---- C:\Windows\system32\drivers
2014-09-12 12:48:06 ----D---- C:\Windows\system32\Tasks
2014-09-12 12:47:31 ----D---- C:\Windows\winsxs
2014-09-12 12:47:21 ----D---- C:\Windows
2014-09-12 12:47:06 ----A---- C:\Windows\system32\aswBoot.exe
2014-09-12 12:43:47 ----RD---- C:\Program Files
2014-09-12 12:41:33 ----D---- C:\ProgramData\AVAST Software
2014-09-12 12:40:48 ----SHD---- C:\System Volume Information
2014-09-12 12:09:01 ----D---- C:\Windows\pss
2014-09-12 12:07:06 ----D---- C:\Users\OLPE\AppData\Roaming\Seznam.cz
2014-09-12 12:07:02 ----D---- C:\Program Files (x86)\Seznam.cz
2014-09-12 12:03:03 ----D---- C:\Windows\inf
2014-09-12 12:03:02 ----D---- C:\Windows\Minidump
2014-09-12 12:03:02 ----D---- C:\Windows\debug
2014-09-12 11:21:56 ----D---- C:\Windows\tracing
2014-09-12 09:53:33 ----D---- C:\Windows\system32\config
2014-09-12 09:44:16 ----D---- C:\Windows\System32
2014-09-12 09:44:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-09-12 09:41:29 ----A---- C:\Windows\SYSWOW64\log.txt
2014-09-12 09:40:36 ----D---- C:\Users\OLPE\AppData\Roaming\Dropbox
2014-09-12 06:39:13 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-09-12 06:39:13 ----D---- C:\Windows\system32\cs-CZ
2014-09-11 09:18:32 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-09-11 07:30:30 ----D---- C:\Windows\Microsoft.NET
2014-09-11 07:25:55 ----RSD---- C:\Windows\assembly
2014-09-11 06:36:38 ----D---- C:\Windows\Prefetch
2014-09-11 06:33:52 ----D---- C:\Windows\system32\catroot
2014-09-11 06:33:15 ----D---- C:\Program Files\Internet Explorer
2014-09-11 06:33:13 ----D---- C:\Windows\SYSWOW64\en-US
2014-09-11 06:33:10 ----D---- C:\Windows\system32\en-US
2014-09-11 06:33:07 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-11 06:17:44 ----SHD---- C:\Windows\Installer
2014-09-11 06:17:41 ----HD---- C:\Config.Msi
2014-09-11 06:17:41 ----D---- C:\ProgramData\Microsoft Help
2014-09-11 06:13:26 ----D---- C:\Windows\system32\catroot2
2014-09-11 06:11:03 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-09-11 06:09:30 ----D---- C:\Program Files\Microsoft Security Client
2014-09-11 06:09:29 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-09-11 06:09:10 ----D---- C:\Windows\system32\MRT
2014-09-11 06:05:28 ----A---- C:\Windows\system32\MRT.exe
2014-09-11 06:04:11 ----SD---- C:\Windows\system32\CompatTel
2014-09-04 14:22:20 ----HD---- C:\ProgramData
2014-09-04 14:22:05 ----D---- C:\Program Files (x86)\Settings Manager
2014-08-31 11:23:07 ----D---- C:\Program Files (x86)\The KMPlayer
2014-08-19 10:08:57 ----D---- C:\Program Files\CCleaner
2014-08-14 07:15:30 ----D---- C:\Windows\rescache
2014-08-14 03:36:46 ----D---- C:\Program Files\Microsoft Silverlight
2014-08-14 03:36:43 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-08-14 03:34:25 ----D---- C:\Windows\ehome
2014-08-14 03:34:22 ----RSD---- C:\Windows\Fonts
2014-08-14 03:33:30 ----D---- C:\Windows\PolicyDefinitions
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-09-12 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-09-12 224896]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-27 540696]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-07-17 269008]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-09-12 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-09-12 1041168]
R1 F06DEFF2-5B9C-490D-910F-35D3A9119622;F06DEFF2-5B9C-490D-910F-35D3A9119622; \??\C:\Program Files (x86)\Settings Manager\smdmf\x64\smdmfmgrc2.cfg [2014-08-14 41872]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-09-12 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-09-12 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-09-12 92008]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-07-17 125584]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2009-03-02 11576]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2010-12-17 2675712]
R3 BtFilter;Bluetooth LowerFilter Class Filter Driver; C:\Windows\system32\DRIVERS\btfilter.sys [2010-10-18 42096]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-01-13 2712680]
R3 PGEffect;Pangu effect driver; C:\Windows\system32\DRIVERS\pgeffect.sys [2011-02-08 38096]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-02-03 1413680]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2011-01-20 291120]
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2010-06-18 18872]
R3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2011-01-27 67384]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-09-12 427360]
S2 DgiVecp;DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [2009-03-02 53816]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys [2012-12-07 36928]
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\Windows\system32\DRIVERS\ewdcsc.sys [2009-12-15 29696]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-15 117248]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-12-15 114304]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-10-29 250984]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 WinUsb;YunOS USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-09-12 50344]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2014-08-07 438616]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-24 136176]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-05-06 325656]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-08-22 23784]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 SmdmFService;SmdmF Service; C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe [2014-08-14 3572240]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-05-06 2533400]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-08-22 368624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-06-24 68608]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-11 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-06-24 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-24 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-12-08 137632]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-02-21 1255736]
S4 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200]
S4 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
S4 GFNEXSrv;GFNEX Service; C:\Windows\System32\GFNEXSrv.exe [2010-09-09 162824]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2011-01-16 993896]
S4 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2010-04-12 196976]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
-----------------EOF-----------------