Stránka 1 z 1

Prosím kontrola logu, nálezy Avast

Napsal: 06 říj 2014 10:56
od lukashenzl
Dobrý den
Poprosil bych Vás o kontrolu logu, nalezena spousta adware (Adware-BST/BLP/PUP-gen/Evo-gen/Dropper-gen/Somoto), hlášky o neukončených scriptech a nutnost zavřít G.Chrome, trochu zpomalený počítač, někdy se vypíná firewall.
Děkuji:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukas at 2014-10-06 11:27:39
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 5 GB (8%) free of 61 GB
Total RAM: 4030 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:27:44, on 6.10.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\cvh.exe
C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Lukas.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: cb53b500f3e90131a6091fb939dcadf40061915 - {11111111-1111-1111-1111-110611191115} - (no file)
O2 - BHO: 68671f62832e4803b34065d441f9a2210065123 - {11111111-1111-1111-1111-110611511123} - (no file)
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: YTAHelperBHO - {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} - C:\ProgramData\YTAHelper\YTAHelper.dll (file missing)
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Lukas\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [GoobzoYouTubeAccelerator] "C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup
O4 - Startup: Dropbox.lnk = Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Převést výběr do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést výběr do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-

Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files

(x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Endpoint Encryption Agent - Unknown owner - C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WTService - Unknown owner - C:\windows\System32\atwtusb.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe

--
End of file - 15324 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3

ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3

ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
atieclxx
/QuitInfo:0000000000000774;0000000000000778; /AddRef;
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\windows\System32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe"
"C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe"
"C:\Program Files\Microsoft LifeCam\MSCamS64.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\windows\System32\atwtusb.exe -s
WLIDSvcM.exe 2560
C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
/QuitInfo:0000000000000B4C;0000000000000B48; /AddRef;
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
szndesktop.exe default start
"C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "994173225814356954931035130156790701212706621991664279871589143244-1856049906
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
C:\windows\system32\atwtusb.exe
C:\windows\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -Embedding
"C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\cvh.exe" "Microsoft Word Starter 2010 9014006604050000" /n "H:\ŠKOLA\FU OU-ILUSTRACE\Fakulta-Ilustrace1.doc"
"C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe" /start IDLE_APP_EVENT_{90140011-0066-0405-0000-0000000FF1CE}
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT;

MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Users\Lukas\Desktop\RSITx64.exe"
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-1.job - C:\Program Files (x86)\Senses\Senses-codedownloader.exe

/rawdata=cC/1FM2SL3eO0MQpuHljhymBzdpoV92KDuyVfrNjtqslGPdW2ykvFVbOs/CMHjAL0kNONPcWSTRtO82NGTnLKWjFHB3/XnybEG7BGKJF9bMug4iucMixqd2Hm0PxF2699UEbIbl06NFEGEl8h7KKfBSPEwcCH

+kqGBAf6PArIxzA6PspoR4t1xgLkJUY5aNjbKRDdn8CzH7pW9GeP82OzWXZJHKYgi5W10099NM+Xich76PeKmFeL0KIK0/pD10CSrAKBY2EG13sYRS5XcwBgyfcAMsDowoS1CpmfrK2Pb

+jSapVW5KNXImIw/VLV/ru67TCOKdQQGSL1Q6dF3vnGV1ueO3K48XQIZ3TNBLnZTLMoVKirKyCBkBd6sC8l7DuP1ZOq1kdlSn7ILr/1YCSkpjr/+nedCHaeLz4wd0hih8v2/MnitSTyydg6dyFRCZ

+l4zw0/HF1LqIZjOY2AaCipR3+imMIpAu4UyGfg1XtGJ

+9XJlnt6DopsqBcny2tuydbjA5RQ44zf90dDlUnw6dCtbBXkNstLjqWVz34rDpfdG80fhP4cMWfAD5CHgITfp86L6KXi2/0RPes4VQPnx95hjnR3JniX0jp7VlFb5DEAqUewnaouLdv/idnlEg2YPMIUZdiWcOaRfwhC1mj42jlRt1HsW7TKoSEKsJyd2

M4ckaOrQzoDVwqHvWZ37X2sKK1FZJtq58YXH7cGnWKJ41rZEnH1vAh3WBRs6xb+P2cIIrSOaJK91RJedW

+OWTYebpszXTmrSckcgbADRsSnWsiAasFPRuAEwCS54WQL/quQ6fDp0XnvytKp0apdIQ32cNVyWBKS37hPUNObqLbgiLhcyybCkx78RZaymsa8tf3ZEQRbV4DhDylBK5cbXcFhXGoBJyUtOSRBHXktlIDLrffPqWLUqDQGGl2jJJvlsBJ9A

mV8mN3mVZtKgDyex0NlmetIRDrwvusf/BteUe4veaLscm5+NsdCAGGHUrW2MFrHZ+fYhQPEiSGuE5xr1WmK1mVdSsPQ5No+40zsu/4P1YPJhAIFXQDKbnaaRSNkpnfjbucb0QESz2LJk1GSCcWEoN2rupk9jya/JBEg

+uFGbrB6Q3KcZbEnar2WF3B5t2tDId6s8Ld21yK84xphp2avPTqF41WOLcOVfo23zW/4u04SexopvFzlmd2ECNfGcu01GH/DA0MXGZjqgBwf022FJCAfQkLJfEyJ

+t6Fta2OrAQebONKB3YaYah8vivaBLHH5QBVBOKnA9wR0Z/hzDF9KOOnD6EcvKL10lyYu/qkYGMFbCY1M+YY5znS4RQ0RXpOeOySE0Rva6sv+HYpd0rC3WqifaMqyBMmYjKgcdU3XTg==
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-11.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-11.exe /rawdata=hkCrNB7jRxBKpZ3O2Cxxj30rePjXFCi7u89yfg

+GepGnvtcA1fHYvwrb0gIQJ++kuixJZCvsDfl3L66jIxnSjetEMr90SDXl5iFTTfgWHg062ZlbQZPYHro70U6OwxKeS52ArzK4VLSIaPKUb5RxKl+FJK4pgdaD3sPAJ7dxyWmBvNW/I5CaWaJiLaePfudL

+3z0+wuCzFkIMTsRsyMfNi7P4ORtJtDDxvTbOfmePsC6l7V8k9N6ukKFwGYRQCjez0gacje+pAuGXtQihQXf2eiadFx5Rd6ljjJUrXxPc8oY+/1obQwMIwaZDniocGA

+It1TP591abYPRcOeT84t8Atso0jZAo1MABgzmiAApWQ6cvN6qqtwOkMddadDHWfGHOC/S5IfFqyCw+auTrUXdKd+3vkiDW/Plf/24qkPombPCVSwLx3CayoGc2mxFvrKc+vlKMg1e0Nhkq1Q

+2LF95yyev9lshv/oeTP2CRMpNTMmvsq7afVGcX/o0afk59ZDSY1JVtQn7zdQYvOx

+ng6FUCIY7y696Wb1It2NfrdqENLnECEq1LnGt/PbCHoa1D3Of2GEXYDofxCelGv598lCSUxEhMAIImMe5Z16O4PDm04NWkGb6jPQ202owPvczNS4JcpVlWX3FZQuenkHpJddbqMBj5GDRjP/Mf3bG0gvdV8E2AbzjGxOqgiNJAFxl/6N1+O

hAvtoXMHaf6WOc+EgngGpnWIuV5d76KXnzEKnHKvTQaXH9uB4HvQS28PjdKX+58ouEuU+Bv+fiCwwMzTe3hs6Cs63rrCuRYKj30xcV8kHTvDux2Q

+isHeVREX/JZaYP4tvI9gqKIY20g1TrbgigFHwsFPjCnlVb5FKSHFFuvzm7PEbM2aZXF6a7WgytyVxjL9uPRoY+2zI7Snt8UTjiPEcW/RYzb7w3yiOuSrjOHXnBrquI3LdLdaa6ZNLzBHo4TsS5o1hIkxgS9qMbyty9XS6SSnayjKaDJ

+GJfyrNgb7Dn9zIGPMmfhEzlqsaQzl3/tmZ7SmRYWEA3J8URkrf9/kFGWVt3YrkW2KSXIVGLjnWaLYCVb1wGWF6utNbY1ig5DAw9FRbkuf7A3zkMv86/8vgcJoUbiB44NW8I0cKTu7MChlRz//7oUTw24x8GWSZlHaksrgcldUc3S39T0ch/kH

j4r4pFucp0343CCVv9nWpQOwPM5Nz9+LJ2Au7TImOq7q123nKXWhjC0KCFAFwP4+9iLxTsYX0eVMyHfVIIbYp786EjuaQcnbyS2UYKymlM9Z0C5F/uofXxb/BrI1v/TvWKZrf39gIEYiYESnNGn+/mHxPu2APWv3N

+V6v7zxGBAKfQkjKfVUh8jORfLyScZ3c6qmrMNrnIFyEPrDjbi5kWQFN4OVIPklIOHpRsyQDHjr069j95tzR64HvFaL+qNVVisv/OOmh2F2dZF7UDwSjgoU

+FKKEHkZdJSwh3ChZzhHSW8hYzYt82lOsCXzDm7m8HsWyHSuJxZno5EMBlmTerVibVbSxoZ2N2+Y2DNxA8tAsnhp1Xl/NGvAz5ertfxq3gt9NO

+kuAs6NW3gAKhDg3tqHUYf4KcaJdgtN809SxGheCG4e1klqCUKJ41IHtyqNhQI1DsZc6zg5W4vyeXpt1u8HdjVVWOe7Z5lKqt1VlqCkvr4IX0QrwDmHHpWDZ0OLjFXl8lQPE7/iiwh1dNdF0I5UIMv50/GJ1khSnNUdAZaIj7r3d25Mq5qDDB/rJOr

pRrcRMABwzcka7PptPiYbzttI1UijT3yOJDYqzYfGIWHd/PaH6oAHCRnWgvsvRIijrMsveG0xFjuH7gV9lh7K/r7HVSZE7PnxkcHaA+4WWCWoSUY+vl2na4ZStH/D2ya2EBOmil6SNedFXuE5+BoCG

+q8MSe1wToIJS2Q5wtPzTr4duYrpVtKZhdm+kJYVPDoxESDDGZctI27BDDG8Ly2GgS/

+cDDezEH8j9bWHg7sc5MMUeRBTd8WI9Yn4mMVcEY/Bjnrendi5z/c5hyrjC/8kDLVyF2QXUzIx1HquXRk/8ebSdw7E6afwb4IIcTb3LwgXKZ0xIKYxDSdYilb/Gm8iELDszWhYC4zrQE80ETsJV7G3AdTQwUFAFbMbFpIdAXge/kPGk82gsA

WS0biW9ddOxS92DJK5ew4uSF9PEDjCeIJIz5L8K8NUSAGWOjrb/rI15tyeC4nyxx+UI=
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-2.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-2.exe /rawdata=Mn4+9ryZAwN5cZvCC4TQvNtAohrjtFVfxj53+E99QBqvAdtI7f8r5k30TfFCzs

+yIffuehiJSD7pUcMSOOCZZXk7nIaDMMfKY/Q54Vpf/7uzd12yJjcO6Cd84jpTc+Lzqm7MXJMX8e3UbYxhMGuMfWzNUx3esNCKWCreAFUBQNYfXUabZiJ9dY

+eFVHI3RKNlv/owuuucBy6E1CqwmKPIzHc8UIE4IJitqUP5YUl9bfHZVTScJaw66YScsqC+oDPvClvZZHuCnc+W02sGJHpLNQ4jQ1npYrrfTGUUjwr5yZUQO/xPJtwk9lpCpl3fE7gKYbm4PsRsoCUVXLQJkIodzjZIgUy5l3T

+2X3w3HBnv6cjUCOkyT6wQKKL+fo+8KHMEVCKLuJHXOI/jX5x8rGKjWrLKnnKymMnlIiYWQNBwRh7LfCZIb1THChhLnAxACNh4qOYVch7YjSxIO38HhCev4s0gbDt89fYFU93qVIMt7FZhMVrLQNxusJG

+7YX/kRLxxLnDGvvOG7pDgWGYczmkcs9RuKW8h+aSFXAAXr1O7jLsS5LgMIPdVM+cjHBn/5aU1LDWgY5WPm3yRwNYqKowEYDSBQLbEfNWTSf+xpLOfe7xoCpRngeLUkYxCALtQzx6tEwEOzSuPcqq

+cVmSeodbNuUKocUz8CsF/lQNCuLyVXvcxDk/dr7vwnfZo8ikyT0M38NVlvD/SiL5u93s3CIRcwFbHFNhj1z8u8O1uyrH+sJXsUnRnIdn/0NGa9PWcHfVv4QjVcUKr6sP29yyRr2SCJU

+WvFuQrQgrvsb4YhpekRPXLDaIIpBsEuMGwxwxi0tcWltBX9Gj4IbkC6+356mBb9jJO2/mTyLZA2VjKd+fT649uIeN1YP+dafljtQTPYrrQd1x7UqAkw4cARBQE

+TOq0FXn7sSg4Vn5IW8zDaq85rwL0bAJnxI4AQiTWCW3KJoeDpKJX4d3cv7FgawH8u3WSY1KwBZe1gIONVo7i5T1O82dvSB58CJYXyCeAzu
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-3.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-3.exe /rawdata=xuxpZI5iiXw8MDA

+MhnZSamn3HRaw4dZwwr3AO2Xo6hp8PYFaQwyvfwMyIISGdtnqVVV2W+aK2P7qI5bDdVhom6w/jJuj7q//9wkzav7rDB7GSy6YK3PdJWTkEyUUui

+T4lQK8JMeWWJhEFwXOWXp1jONTx28UKfh/VvyOJSAixQgpjNQ/ebv5weXDVSB8dOu3WuS+wY8DfeDy8G

+3yezT6ajbdNSSV4pnBQ4DUGOn/FaYbr/I65X0eGe75yYz2QheW92KLMuBiHG3l0tQIQmLHxpfUOn5XmbqlNgz8jx/K6U6ivyo2W/Dhhzvie2H2VkqZam7M9nVImzKQfdUav3HMAAbjoJWTVj44CMstXr33AT

+JYjLF9E1GZwBBGGPnEu6dBugpvoZ3fbumFQEZf2hx84Yg17DngSfq5wxYOD58M5RoF64RjhUZMZ6nseeJId2IWu4YawZtSOGFLlmdYNOAPkkvk9X6dnHPXh7HNwY6KCbBzR8HbFh9N

+WIWzm52Wq7l72p1KezQ6yG4N7joTUD3pENMq9hYTqcv7vOscoqvij1vaJooRJsHk4sa9I0uoO1CiOZ+I5/qURkL5dx8SWOIV7Vs0XxF98qT

+T4tYqvpAs9JksUXrTsvDP2BG6fPFhLeKSPx/z/QtPo2sofOEKcE7ieUCipCcnGcDC63lpE3RKpGAjyXq/Ocq7XyAidQZ3ZJ1bcYwZb7MyybNgn14/vtaPm45Tc3PP3njtGAjql9yLNCqcYFMQtBJ8xycYqhA9nIBDgGFv8FKiRSuhSFde17hHXB

M9zj/pWkW7V4gr1gBaTGknGoLhqKv0E9YSa4ZyqtyrT92ymHPGfZC/6BD4o6y+6N0VhwjDc9+3zxx7ReKBUTiNM31x4/HbZd2mwspBk/zJmfKjA6zF+q

+4NMWrfIHRac3NRdFRsfnBF00VqmWK0shnr3pzgHkTRT/wWPr/EPnvICb4W96QUcO9VhS/dL1YqnQY1Le4BkQjPEKwiFBp1gKLxMHLVTF5nC8SdDlicztQmQgtcQtxoYY1h9Ybnfj+5iRiEkh9WlFYtIt6rqlI

+Kw/PBCOp9HZwlhrjs9pk//fgS1fut6FytdBjmMMkZM45G6krTLVYSRdtDnGmKEt/7RyIGB9WIUoOyJORNgZiBJa8/PjTrItI+iVnaNqbgWrKX/SmytBvNcGjYSdeXq3xP0wT+w21WTihvRWyvmVIxuB5GknIj5jhFlpDDD067YVSIC+MjwgNVt

+uFKU5RKyhpqx1AsDboZZ5JnfFgFUfPO999mZyh8UMsDga4o3B03t4dj+NHwm+jS6ThUCkxN59VojPbwomrXZUK54F/sMmKSitF4immrCnxm2WPDhKZcEJUu2LAkmQjrggnBkiCaG9b37xy

+XWzxXdAX37sIkqH18gf4wi3CRET5kJNfd2O0Kq8WGivyzL4jlWrGuryYGzgrfXjp7Z2QGB6EdysRfFw3A4RGuQMVB6lKuM1in1PkSv+Xocuf+y1Z4zfaxB11V/fGrbKc09TU7uOVowQ
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-4.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-4.exe

/rawdata=a7ILBdoxFHZBuC5V3J99nQ6vvoBs4FFwgra7xvqQsPcnWNEnbP6G1PI/4DyxL+1aOfWQfP548ZzGtGfWvOzQ3f/skRANy44JPeHYajFXaNmqkAlQrqN+

+Jjr3D7a3KRdSZAdtokSyGWw8Szk3H/t7xMtn2pYN15P4gcl4BIj2fR9AXYj5yd8Km8N1CNgqdM7aTWECKmDAwUqV9vNtHeX7y52Mo4w9g6qV8KL+AZtfzGl/zYE+AOsZMuNDgEOeBv4zdC+ldlzfNo18Y0aUlzo6igWf3UDs/jEthhYmz

+OhALoupTB1VKZxp3VOaQtM/etkwxaAEsplh3MU8SI9qL8V13C8hf9ldhjD/Tv45RvoQIaa6vHUWWa1i9uXJk/2ULi2dTwje6Z63ZCSmkOwSYKJzMXgnaW/czhiQh4BXZqaNVH/HweoP+/C5VuQp4HZns3kTfj5yLwkInzq6sOzvhzbiUohrR1/A

+rztoGLV34QW0AHfkus5UPZgnYvfGbXIUoi2xL3thHTUgLVZ6DoE7ydkATkyZtMamKZAMQk7GMe4N2ioJhs02pBUf27eYQCVAH76KNqG5Huzry03NMXkXGgCkvzkFsKbuZkJx4YnQ6YGuubpT4vEeI8Pn8QGemOWh1feoyZ/5QGtMczmcb

T8dJhLKosHDAdHLRT6YW7r3zh7gTfDP0IgFcki2oZjkB0/bqTgCMqk2GPYEkO5LvbkzFmI48TfqHubab

+EGGxxlWSbMVElIopFRiQHddfx24k3dwu87JSukGKZujQZcenKcqfH8Dg3obhUE1XpKtnGGH5/fQwOs9NLyd9zNFKzcdURagSlqhilB7AcfjPF2iAiVjs6tvyX6EJ/XhjvqMHnOkC/gJbxPsWBjamkAtPVR4XMINDo5xMxhfP8LknRU2RBUd3XtZ

iDayutWPrmox575D9G7wT+3tKKgNzRLlz19IoKKikZ8M+oLAb0uWg0LF3ZRcGDMo3DuPJgA7AYa/OepCPA5fcHXhtmgEbpmVdnc3Q7QfoS4OiAkEpyc7FN1vH4P6nbvX6mz+eNfP8GFD2LAkUvs9r4kJ/F+jsXt2pIfCC09xB3k6+

+wa/PFkRjWOgOyBOpqonEAMNHx4xPgr0q3UPzSTKXMBkQrWC8fiGdohXm

+hU3Y1WtLc6oqG0s3fmzkHQ99OSu4xdFlHpznNyHhoH6pIMxE25o/7Nxzsf3QJopSrkv0bVTTbDS2ZCCc5jQhlEqaki2wPl5IIsVr1IyOmWaOBM7Xa1Mikf6Oy/u5TS2iW217Rj31A9dB77joD7wQtqgwv7ZIAeyWFlgEqt6x9g7ukDnM1piZshZ3

2G34aAGrPpD2yD+0EuJ9dxAQ2koYcgmgqKVKRE3rNdqaqYQT9KD6pPktCiDZfER+R2rw2G+UKG14aCLUYtbRtDcTxKmNODmei32iknsnGRJj1UsI6SWvzIW

+2dLqYzA/i7FHSxC5f8u0g0sEryLy7Ie5PL6M6HTFPTQy34ef/SDm2B7smZfxLgNfMPrepFc38WadWwzTdiIAQEk8qugSR3WZXkP1I16HaJ

+9XKDi859bGJy810LkMSqAjp2K8yEhRonZLFxYER/aHS1G8N7UG69amQ/aQkcCzu1kD2tWZiSOtu7dSTBiC/AQkcn9FFUDgjO+g4qTbFkWPU/zQBZiVSESuVs4k8MJo0F4Wm1BZZCO+Dn6zYZA=
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-5.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-5.exe /rawdata=chQvDrCxw1ouhp0ftRIxenAYLAUMyOZvht8am2NtnFLBq

+dkduztZzL3xnd8YWkuk2cqhQHYR5NfZfk+EZAjE7pX3f1CI9GPdmeReTE1kQX7gfAJkm7fjgRCca7lBR+qrXONaJmCHQLc9FtoL2X61mBZNtB2CskhLU+0wmTc6dWUU1BkOHF9egRv5SOTuLcFqfkNaId2Sl3ZBbKCf2Lhe1mpYCLf/GNK

+GxPr2ppg/8XbdbS4EODajeGcT8gHw3GOMNg1W4xl9R+ZSuSPVCUZ2KoHTu4VX1uP85FW7MzGzxIaYrcLHfyeOYRJFUDviZ32HAlYlzArdPxISKMfdxnkGCKAUEDr0rbkCwNypupad3JbOFh/q2+hOP

+bnUnfX17JTuAUW2gu6QffmkuMc84M7gVr2cHb9e3mmdRwbIZQOfdhZLxnz28Iw7XEc+JJdFRPldj+v+XuAfu0XmvM+5PzNE9gZXZ42Gq2IGw61AjHQ1Hm3FkC4lg2h9Pgxne8IdAHg3FYIAkuaFHF80ysx3k4BCk

+Y2kYq97bzJtVPQxIycyuk22inh+nBEIKr1EoRp1z4KU3oqZ5vhnDAHLGihzOpDbPnsPhIBz6rpxH3zL2AmwvrBFV/MHyy02sn9CWOqbSS09HP8lYTWQ1Xs39f6ohFZu4KoZCfCTUw

+8RUHQ3pKQHbsiRTxcstL7xIPPW0gqUxwTPgj0AKk9xzG6A3WVGuG6FvihK5hX4CkaFox8CIiaHNGvwNRM8yrho03Nl1i5qUEmpe8adAHez1ix/RVMpTZv0lj9rH3k+tSztt8rLqZ1KCHvkyGpnopJl3hrT8s7uhcala3j

+VTBZ/p/UFeLzqedPNueStttwLVt7aqncuw7q4GRIaBmzwY2gRrWsAmyG8LmcWy2EYJso25S5+0fgHjFoPGNyQ3Ngd4bZNM3/TwxCeZT1oY/RqGVRw6mWVQCoNQRJeHhV7VbpVyfybQSRkBv0xvPC6gLhs7qqpi/IcZyRnaJjqNfR4glCfi5

Qun9cUK17TGD0yyto4QFiHLhG1skRqoJBdtiXwXRe5sAb4Za8YR7wfnvdb+ZuBk51ZMsWQbDzqTcMx1kOZUnnnMRQDdTtxGiAtVXZDO/i8zvVQULuHMJH+1k/vvaK/thbbd9YnBN6xCK9Pa79+s72CHWwr63mdT4mvBBcNDnevC89fI=
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-5_user.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-5.exe /rawdata=chQvDrCxw1ouhp0ftRIxenAYLAUMyOZvht8am2NtnFLBq

+dkduztZzL3xnd8YWkuk2cqhQHYR5NfZfk+EZAjE7pX3f1CI9GPdmeReTE1kQX7gfAJkm7fjgRCca7lBR+qrXONaJmCHQLc9FtoL2X61mBZNtB2CskhLU+0wmTc6dWUU1BkOHF9egRv5SOTuLcFqfkNaId2Sl3ZBbKCf2Lhe1mpYCLf/GNK

+GxPr2ppg/8XbdbS4EODajeGcT8gHw3GOMNg1W4xl9R+ZSuSPVCUZ2KoHTu4VX1uP85FW7MzGzxIaYrcLHfyeOYRJFUDviZ32HAlYlzArdPxISKMfdxnkGCKAUEDr0rbkCwNypupad3JbOFh/q2+hOP

+bnUnfX17JTuAUW2gu6QffmkuMc84M7gVr2cHb9e3mmdRwbIZQOfdhZLxnz28Iw7XEc+JJdFRPldj+v+XuAfu0XmvM+5PzNE9gZXZ42Gq2IGw61AjHQ1Hm3FkC4lg2h9Pgxne8IdAHg3FYIAkuaFHF80ysx3k4BCk

+Y2kYq97bzJtVPQxIycyuk22inh+nBEIKr1EoRp1z4KU3oqZ5vhnDAHLGihzOpDbPnsPhIBz6rpxH3zL2AmwvrBFV/MHyy02sn9CWOqbSS09HP8lYTWQ1Xs39f6ohFZu4KoZCfCTUw

+8RUHQ3pKQHbsiRTxcstL7xIPPW0gqUxwTPgj0AKk9xzG6A3WVGuG6FvihK5hX4CkaFox8CIiaHNGvwNRM8yrho03Nl1i5qUEmpe8adAHez1ix/RVMpTZv0lj9rH3k+tSztt8rLqZ1KCHvkyGpnopJl3hrT8s7uhcala3j

+VTBZ/p/UFeLzqedPNueStttwLVt7aqncuw7q4GRIaBmzwY2gRrWsAmyG8LmcWy2EYJso25S5+0fgHjFoPGNyQ3Ngd4bZNM3/TwxCeZT1oY/RqGVRw6mWVQCoNQRJeHhV7VbpVyfybQSRkBv0xvPC6gLhs7qqpi/IcZyRnaJjqNfR4glCfi5

Qun9XAqc3SsyE37XB5bMfEsMn++WVYNyswsPzS3LrYg0aeJ7GCf8t8H8f2Y1+hNckOYN1MLa5tiZki6v1HHrM1FYCm33F2SSlx98rismhqu2775w0FA7SN2JUiAS8VVaY6dRsKI0nCObAylH4jLmWwlgyHAJydusFIhGgeRKhKKC8RI=
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-6.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-6.exe

/rawdata=SugM1v3V3c1vRLSAuq05A5AnGjQloTHa3IlsDw1BhfcW9Lzv8/o3CY2Vuf3hBZbffujM1YAsw+sZ/niJJAQHrmHGSFxOFCQhDhC5EgSPmtaTg9EzDVuX3b5O5V

+NfEFRK4sECgYE8jukqXVS0YaFi/g8sOQqkcyd/8PzBhNuMyZlbTaotXkpF6Ixsp/88bBxcQ5fQoq6U/18BBCCwGZrkhF/vdzUnDzpWhnzHatEj9PbjTrvPNrFaqRFsHwglFFlJUS1c1lF3b8bg9UrqQQFxcCnqzr9r2KTalw8ypjY34SK3VxB1AaVi

QlrbvQQS5hQ2qoja5BeBQDRKSxAd3jkoyZAzEyitBUft9jzpwUhOtzkiqeYzoV7O4JLV1LDofqasr3rgttRvFiDHtavmARWuO6fQdK1oko9jrh6qnMh7C6w4AUzJVYldFicIpUrLDpZXCAAwmlAGjQjj3p8VNL3k3xgsd

+ulMSgs711qtSfck7NtRf2GRipK+vKsQyIhKdIAVk29X6rlL0jLaBPjS725vnY7EQxdymn/7aodrwjSAPEPi3cGBkf7iNUHkQrOXI+NxZ+KIe46WCysAXZX50CL+7X/BHGFY6oM07VKY+0y+MAJjCQ9BUZ39N+zn

+xtf3aQgPj1tZXrZs0Sr4BeWtDsfFGsTfL3UUUJrLt+pULMr3FKUbkjPUzcyc+IxydLgVnMSkPIBaFDUElGbPI0uv7gwut67e6BqBSZVf12RjM/UgLRIMcAWSPECpmCiueDKCvDRNd2aYe8cuvCT9Q

+5YQUd7jyghbpiYWLwsYevaZCn2o1mbFHrJarLQR0/4AKY15cH6iSaCNc3IWfAPJ7hwEX27B3JxHFyO27keNurt8r7kOcXXK2sxhXNqaUHlFe9RZuZe8Z9u2v6DP5KsYEOr4CJeNH7NoN4A1u6xPBA/wPcn76+RBsiU8Qw2NF/8As/A6O1c2

pIB3afPOOioqvyP/UNPJfNaVQT6bErc/3NPCx0qn1PL3L7wbyZHqnguJu85zq+SZ9iFotb6K8nXkOZi18A9w/HBNhvJAo7uSyEYXfZLM+i2XIPZcPMr9/AEKZ45Ys68KfZx8eGdBhjcIBNR3IhyKQ

+Kfb7/SVmr8jdgtI6Ro5rMZPxfms/4JamRBowsyirPPNN4Yf9q/qDu83qRXxXV8iGkKqGyLHWPPWIS716YyC3FwWfvDJCFucdcRhUeTq6V5KtgHsoE43xv0KHsmYxwikT8i2nO94Cxj0ZVSxxDENJs4nkMdz4OX76uXqlPSy1fKVb3oK0HblA

u6HcSRypx/DsnZl/gyNBsIXOoO0dzJuwzSr0mc/mveR1TT7ifdV6c84cgDcktSsH9KC0g45mEYnwOtYAjH6MfYNoSAyULn4svgdVgBQhNSyqeaYGDBalxZ83jxscBKcTuYNuWymokSDakPP1IySWxOboLz7xiACj07SfpozAXZoCGbGtyA6

Mii7B0jYI5zY5P7GfJsHbZKgZtPw6rqS9omuvcCRZMP9uZSkTEuX6wSOnzJi5xWciOM8M3LFbNj/R2UM0vtX1MXpAPmKXjowB1ykUPrYB+iep5chszRc8VeWBPQhzbofiuWoFb4VH/GfQ104GeGdYfa48d4UPX2DU

+m3Al4zM5mJppsBbUp1FYk+UrR09vanDPqCtduxVmPXkQ3m1zz3cp6n/r6zI45UF9GWgF+SNQ=
C:\windows\tasks\4696d05c-2f34-43ae-be32-b1dc97f8c184-7.job - C:\Program Files (x86)\Senses\4696d05c-2f34-43ae-be32-b1dc97f8c184-7.exe /rawdata=BUg8OqS9vpV/ZeGzc/gcJh/uz6J7uXs7iSH+AyMVZZBtDq9NAfH+CFcx

+mUesSWiTgC/9aCbRLnJR1++rZjRRmICdArEmwDQeTuipgyA4A/3HktAAfdPlA463E1la/oM4f1CXekVJYarst8kute6HWEX

+Z5hWQksjhMkcu/MzEBSQLDodw3XnhIuKphSAUFWlSkwfKNvQfFRDKgF4Pxou4c2/HqTwsOPfYekZ8tOUOK7Mu1cKS8cmDHTL1xo29FUPanPhYRbpIAJ60BjGL6n0lq0OBwcdrgZx6SzqWFF5ufWeRHDKn+s5wX5Sy2QJpZqaLhUjp

+81iXDaVoAeIixVqY8V015gyJlfr9U2okV51SRZf/wj/cnQEzgI96oekE2SDc3fsa/Dwmyi8PaKymUdutAaPG6ef2ZmQ3SV95hlotVfrxP+o8WGF+APSSa

+65zWlMx0a4PP7oy2AAMpRrnVOoGTbGDOPT2eZ65B3MGED1w5VSSJJI/s1auJZJ32x8QqoHjfHknTCoPzlrvcXVRHKZm0iLLALAJ8atMabh4aNU94znZyWqxWo8BCjG+

+WmSc8sdTRT8ntEfwPf9tRcxzNGJywCaHkGGx4iYPUN6jiNNma91iFcBKdHHhXl9l4QOUXijzPFQdwv9bnZ3ShJg73sXQfZ5ipfJdQT3eH1lb0ZJsVtAJXYJZBlkbAIJ/ME

+CcG86VhA9U5RZsFEmIgsdxoSSPeafuPynBMoFKz4V8E2hQcmrrN5R7LibQPkw/o28gWglJZZdEWBmrvK0jE0sz1TUYPZaIi9Ph54CKKDJpD5wmiyu3M4dKzY7HRFFAF5FBaPAsBdl+vlW7hHdQR0UD05LZnx

+OVQo40+qAmsd9APGGWGtKlBrE1LmQlNmOox/gPYBSA0cIx5KTHt6KPlZVv5BzpeS3Vg

+rQKlIO1ynIqdNChDm1YuU68J/iQaWUXlVa3Jhpa3BFI4+Cg9cOWQSNyApY7bR4/5D0lBBGOnWzF8L1LotJTHK3yTmMzL2vBUX25ekmjTU5dmU49aEczCq52Q8x1fy/RCn5JJFNtyA/g1a8bxawPP9ypninL4/R3Z9JqvLpMAc4ohv53eJrkh1

Q5/583ikUKnaEZHv7cAVbBMi5oIJUpXLiIKrhB0iRrw2MdZ6veNhZdYRYIq+woMBKE85xy49kK8qDN

+rP6sCMwjfQ1UaSetZhv88SA/Owt5Rbwiyw2P0E/EA9/Teb0ZaXMmGEPFIfo8A/L8pHcBJLXVNRrZjkun0bzs8GLwC/ORECZ6CDaZZgJa4ZLlHs8l/j5/wNwtxj82kZ68PgYJ

+gw3xNCp0pwwjHHSNzyMnBQxx/UgMhGzrx/IVrXBDXDAFpCuqz946/lVifMCEY75T/0cR+MPtpvFP1LYC4DZeQ6M4jG0T+8oBegq6Pkj2RtXSYPkgHjMAk0n1CitvVZZ2d6Bbxr5NtVSXgTrfhzYo0WJvAgR+Ea7Vxh+WcK8Ej

+Kcf//RFjRu3/F/eC8OsYQynMkwpz0pTwUAAybwUSYw38
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-1.job - C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe /rawdata=w4ArLgQmOgpnD/D2uHFgzINH+v+6oak1cOnvyUDJZd6s7GvD

+r1wj79VP7hU08QWhkSsSi0ksLlezD9P8NXToB1pCTDtZgTWKuoGcXphwWBwtuubuC0/i/V/JmkDBiwrOCgqS0Znbg8oO8YwgcQlL28Qmg3Fi2TNEUlpMLjzI1HA6PspoR4t1xgLkJUY5aNjbKRDdn8CzH7pW9GeP82OzWXZJHKYgi5W10

099NM+Xich76PeKmFeL0KIK0/pD10CSrAKBY2EG13sYRS5XcwBgyfcAMsDowoS1CpmfrK2Pb+jSapVW5KNXImIw/VLV/ru67TCOKdQQGSL1Q6dF3vnGXik5qLa1hN1mVZ0PaQKu34kMD

+kqzS2gA7ChnklUGnQyStV4VWGE8kgWWYXOhhX6BvyLvEGCVdZ7KDzj/KQsfgchiDR1krPyvw6LfJSzwqstoXGlnqu0k4H8sMMlU8tPkwPU

+bdzx8j5+PbrOK522TiAmegZA3/6GEgKFwA2iN3dbjA5RQ44zf90dDlUnw6dCtbBXkNstLjqWVz34rDpfdG80fhP4cMWfAD5CHgITfp86L6KXi2/0RPes4VQPnx95hjnR3JniX0jp7VlFb5DEAqUewnaouLdv/idnlEg2YPMIUZdiWcOaRfwhC1mj42

jlRt1HsW7TKoSEKsJyd2M4ckaOrQzoDVwqHvWZ37X2sKK1FZJtq58YXH7cGnWKJ41rZEnH1vAh3WBRs6xb+P2cIIrSOaJK91RJedW

+OWTYebpszXTmrSckcgbADRsSnWsiAasFPRuAEwCS54WQL/quQ6fDp0XnvytKp0apdIQ32cNVyWBKS37hPUNObqLbgiLrcEB5rmbiXgQ5946sY+woIwi

+0KydY2jvZOOXHbOAWbK0Wd5E65UsrpJglCz9S9nVONGT3ulJ27/gSkVkbCezIIxIwhoMtOLYg8ykRd59RsA35bFZ6YGka49vJBvm6Ngx/cUVJJh2oPbjjSQ5gIL99bIOQHSmxaW+aMMDxeBCEZmVdSsPQ5No

+40zsu/4P1YPJhAIFXQDKbnaaRSNkpnfjbucb0QESz2LJk1GSCcWEoN2rupk9jya/JBEg

+uFGbrB6Q3KcZbEnar2WF3B5t2tDId6s8Ld21yK84xphp2avPTqF41WOLcOVfo23zW/4u04SexopvFzlmd2ECNfGcu01GH/DA0MXGZjqgBwf022FJCAfQkLJfEyJ

+t6Fta2OrAQebONKB3YaYah8vivaBLHH5QBVBOKnA9wR0Z/hzDF9KOOnD6EcvKL10lyYu/qkYGMFbCY1M+YY5znS4RQ0RXpOeOySE0Rva6sv+HYpd0rC3WqifaMqyBMmYjKgcdU3XTg==
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-11.job - C:\Program Files (x86)\iWebar\53385511-d284-4bcb-bcee-b6b52521c8e3-11.exe

/rawdata=D3bXg2xLlTQwdxqWAKS7OC4YLNSfBS0TXGoWHMGnrNotBSzF9fpxN3DpdyT6eWdeOgV2J8AVn9PmKRsAKBa6x4R5AS0rd+goXWeNSfrJ6b9iXNyooH+vB1VBek4aYlFESs

+ni0e/fnDZJYuOokk4r7JD8pa3GipWMC/wTcEG3JQ5aFwkewTk9nBDc5MvirRa7EmxHCoH4E+T6iDD9zch42VrFAkPxf87+LaC3hi6UJamvhwHSHq+Gy

+Doq6U12lrexCqXa1YYvBBwRO2cH6kCr4xLaWtUb0zeCydruUjQ5BJHMLyOGZ5fO1FUeaNmRBCd80zq1JlTfNCgNzl8yxX/lYR4Dsk8tGeZUU2izL1l

+HYWtOCfUpSv5eVZIO171PhWkvCQHzEd2WT0gsqrK/sycuNOHj8XInOFjZNCU6DUKfnauEViiEzZFwWWkohsRoBcutRUL9rmlvxuA2siC+x9u4ZJjJvmP6wt2YS

+fsl9DGqNEi0xKfMfzf7YkHcIbdFLA0GWFi8BxwOnvrZpxcSghO0L6p6iMOCyYeX2QxOAUFgJ9R+H8mB9KwaxgWDq6IPigMyIr0tcctRNXMNh67i3b0j2vPQmooA93rMUyIpzp1spq2RKcid4/ekEZfQRLoqnUud6QzHncYqiWo

+Roc3+9h47olfvt1Mda/LI/bLSftV8E2AbzjGxOqgiNJAFxl/6N1+OhAvtoXMHaf6WOc+EgngGpnWIuV5d76KXnzEKnHKvTQaXH9uB4HvQS28PjdKX+58ouEuU+Bv+fiCwwMzTe3hs6Cs63rrCuRYKj30xcV8kHTvDux2Q

+isHeVREX/JZaYP4tvI9gqKIY20g1TrbgigFHwsFPjCnlVb5FKSHFFuvzm7PEbM2aZXF6a7WgytyVxjL9uPRoY+2zI7Snt8UTjiPEcW/RYzb7w3yiOuSrjOHXnBrquI3LdLdaa6ZNLzBHo4TsS5o1hIkxgS9qMbyty9XS6SSnayjKaDJ

+GJfyrNgb7Dn9zIGPMmfhEzlqsaR5xSvGhoI6UJzA5I7dy8gkPRMCG/oq6JuSxbdRN3IoW+4v7BBfI7BPXII

+3YT1k3YyHCViQ4g1qb1E0irtjwGV4h/trDhbdUv1rQJbSYJJA12H6tCY0oZ7Lv6OS/xfZtJBQzt1uQrrTDikn3XyPr5dozAoPSf73YhoI1UqiGDGyvbdaWGzV16BaChWjra5n3hEXB6hfgE6rRBSE0ooz7QDQuWHh0I7TPE5LwhuHHwQoIYxbvue

Rmv1VfUzvjtq/4FGj9to2SRTsNIZ8CQpNpuvvpqrIC18s/AHcpT8wbdSBUL

+euf8wPUZ4nocwf2qSdzh/OxHtUPK4e8yt84v11lcLnjYTYyKOk9d6mWa/8kZVvD5LJl2FxzxTJpqxc5GvJ16iF1MKzVgG7eNWrN7ypOzJT23z5BWGXYFg7kIeSNsat1ODK9OQTtppueKhNOq265zHLYs/5CuKf1256pdQ2Fz9qvwo81dBi42gg

riQFG4HBQPliCz3oVXjYGxbKc5rFDNxA8tAsnhp1Xl/NGvAz5ertfxq3gt9NO

+kuAs6NW3gAKhDg3tqHUYf4KcaJdgtN809SxGheCG4e1klqCUKJ41IHtyqNhQI1DsZc6zg5W4vyeXpt1u8HdjVVWOe7Z5lKqt1VlqCkvr4IX0QrwDmHHpWDZ0OLjFXl8lQPE7/iiwi9CxjngCxW7m4tcPyreD5to62O6BM3Hi3eatP6EnYfLgFtN

QM+CRVrr9y+SsoHPzEmfOcBswky8roqozzAkd45YIeAGZ1PbmEoZMRqLK1hoz/utmi1qIllKjEOzOH2rRVaPQgvdLwVZZMOArkhJkxvxmnDoxMvPOTW7YZ7aNFo1lA08DsEjFHS3kDHZkC5SquIxreL3aQ291Q2ngl/Hv

+nIHzbEanBrpBpMnlEvEMW9ygrvvg9cjpRQ0WNdFPJCzQQCNU6DY1eTKE65HvR10d8/FIX3CgasUukZt2NA1fSz

+ijgxXYaABjECJYeW81tz7ylL0mdPdZJ0TYaKnkn57eD3BaxJsxSIGw82mOs4IjVLo/0X7HsuGH07C4mBVe7DrvHPpAJ2VPkBP8Dl3gYq2zHxcOsYQXPoVi4GyDc74nzOOmmF/

+VBHz3U0JsCd0+i4TNanMeMP5FCHtH63zyheMU0IXz8+H5a/8iVCew+LPI4S0L+2uOBxGRO18BC2ZJfA=
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-2.job - C:\Program Files (x86)\iWebar\53385511-d284-4bcb-bcee-b6b52521c8e3-2.exe /rawdata=so3x4OKeXcT

+MiFSTs03VxR1NRRK5JmiSANTqZMsJrMlie3vo2NkQSYsu2aPiMdkBolUToc2HQqQC00eAS1QxzmL/hVtht1lYkkvYg8lIn0df73K3lVjngrSoRG/2U1NLqSxWzdcQYn0pgojz4nENOHBKlhjdJ1zLBd2u7O2j5UfXUabZiJ9dY

+eFVHI3RKNlv/owuuucBy6E1CqwmKPIzHc8UIE4IJitqUP5YUl9bfHZVTScJaw66YScsqC+oDPvClvZZHuCnc

+W02sGJHpLNQ4jQ1npYrrfTGUUjwr5yZUQO/xPJtwk9lpCpl3fE7gKYbm4PsRsoCUVXLQJkIodx3Dp53j3nrgVFs/h22bbyWhXYLGCEkpov0ROUvHD2MnPEXrfdxqbZxEWhCRH/mYpbzLs66RkKCXlK9DFd3dS0imKe/hoIBHaT8oyzz

+ufez/1rhRVIZJYBGosbx0wm3/Ofj9Tc48sn5tA2F0BmvJ99kqmORR/JMhxcYGKZjzUkPLxxLnDGvvOG7pDgWGYczmkcs9RuKW8h+aSFXAAXr1O7jLsS5LgMIPdVM+cjHBn/5aU1LDWgY5WPm3yRwNYqKowEYDSBQLbEfNWTSf

+xpLOfe7xoCpRngeLUkYxCALtQzx6tEwEOzSuPcqq+cVmSeodbNuUKocUz8CsF/lQNCuLxTpSXphxNqjv5+uOii/lru0wedW8aEw47OvLtmZxpj

+rnF5S1rK3vdKRIZw1ojytx1oPA5dJV47TYeMVxd3gFiuVSHhvqmeVGi7wpdNMg6EJ8jK6kehYOlX1SBoGDmAVucN6CGdDOFsnwke13e4KeXBtfGclJ3zM+CZzB0aY1BkKmBb9jJO2/mTyLZA2VjKd+fT649uIeN1YP

+dafljtQTPYrrQd1x7UqAkw4cARBQE+TOq0FXn7sSg4Vn5IW8zDaq85rwL0bAJnxI4AQiTWCW3KJoeDpKJX4d3cv7FgawH8u3WSY1KwBZe1gIONVo7i5T1O82dvSB58CJYXyCeAzu
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-4.job - C:\Program Files (x86)\iWebar\53385511-d284-4bcb-bcee-b6b52521c8e3-4.exe /rawdata=sMbPWuvzRxPgxTM6dVW/vhKP1Rk58v1ZW/JNYr1quV

+bS1Eaf8D3jdjUUis0qqGecFTA2pzkUveBnycd5CT7Og97TSzDzaKUqU1GZTjCVxPoH4UHTPz1qMtvn1H4SADavcfxJa9LVSWC6jCK2LYAQxfB/AXdyS0skEC/PIDPXKOLlzMRYjPwPM1Ni/HCyOL2M/YhAcQcknElE7Ta5VaeZoGpdHDoA

PkBREoPoLqAw3aFWIpoQN123tCTuzIrLzrPHQcQG5CYemAwkjr4FuSpNcHy7y+/IcTImVjvUsHtxjISI4Nfm2LLSzisM3v66ZfmLbwFH8bYnbM0KRzuOtHvt330Xvx7/WyP0eyN3Z

+5//C7pdmCpFL65KCWbEbpkPl9VAjGfzkU7K4Z8kwKzbMMizW7DW5u0rt9UMmHRfMDmByran2CvlKqInr3bnuBxIlkIwgDWRsPssxDAAFKfvImxA1RN6Sykak5Po4mNuHX0UsIMwTQ3HVXSlRwNzSQzmbETiSnQdmFxtIQZ4LdT8Bn52+

W/ZgnmFje1Ywq/BaoM912mStNLKN0IQlmI74zhwwiy9DsXLFwlTwpZ2iBSQrpoHVns0UaaBYWbnSDT0Ioy/sRDvf51djoIoRINcp9bbGW9TjU33d+6R80YDlJrC

+pY7ebHR0DsQF7C3nIsgFpCRATfDP0IgFcki2oZjkB0/bqTgCMqk2GPYEkO5LvbkzFmI48TfqHubab

+EGGxxlWSbMVElIopFRiQHddfx24k3dwu87JSukGKZujQZcenKcqfH8Dg3obhUE1XpKtnGGH5/fQwOs9NLyd9zNFKzcdURagSlqhilB7AcfjPF2iAiVjs7Teerl4EJCM/rLlk76ZeiIXk

+qW7kysalstNNqzoV5qPGpgSsHk90cWev8UpAMNgPFkJDVoct0gVbAQDQvB44kGR/7MZ80PHyc2K1Gihf2JSJI2T/6J7RySGUDz7aHsWGI490zCjmWoyT8rlII6KQyR70tke7UFvqC4c+M5e7lIGTISksCYg+eGys1XQHRMOBoIIBJSe

+78NBLBGqEWlG//1u6KD7MognF+ymUmo2oGdq+BdCt1dJ0ijzYACkWtjJ/QYuvxtXtVoUWjeMN12yL990SzTgsm

+7zoORyzHzNfWEzeRsq8i6sUTbPTyF5ZXJJKsvwDcA9pX7KQwoBL7RE8WwwdL7JQqYJ5g2GTkxAaBHJtsTayr0d9J1F7I8tKqiYCAPcNqTKBT2bWLnBvE29ic+

+WIxnv1fwhuEJriFxOJ4Ty6vQDN3O4H6XPo9wOgmYQXAYY0Gfej26SnRad08rmdoBiNKOJk5rdbNoAEWKYj/QKAjTcnwgZYXOGVxl3eCE5Qbd0VNLF/4w4OPj7TyHcHP2lFuIAG5PXXgnFlqf2OKJubnAkON/hnB3hbxaPnnci5JEjTILX9GZ6f

1CO9IvURkcmZtrsVyO61xe8Udyyz2XyfIQrXUg3wQSSHPs7tl18cUAFbkfJ0HPfx/2iBSdEEglbUIunrboNGIAlJ/ijxDDZuui4WtMCjSoImintZgTFcYe82C8mI

+LngCrh6fOEZzkOIrUhM0xbfDR1+G04mW9S5eun4fHME574PrUgu7M/1jS7dBuHGfMgyHnD7xB90ofULn2ZbwTGTQ0xdSpOTMd8cyqQuJ0DC57AdG/10cXjtnBJx/goh684K54wZiA=
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-5.job - C:\Program Files (x86)\iWebar\53385511-d284-4bcb-bcee-b6b52521c8e3-5.exe

/rawdata=jvKTuJGWrta391Hty3uXwKchcGck3ziqEwZz7fVYLAUBUDNwZ8sZXryGucEcJ1c5ceTB8lq3orF1JnwKWEefdEfydVJKNH

+6Mhq1MoV4bePYHUzDxnSK0E7LuEO/TPlRknNkU1vSUGUaADrKhZLKngtlAHjQsT9jM8oCKHT6yrKUU1BkOHF9egRv5SOTuLcFqfkNaId2Sl3ZBbKCf2Lhe1mpYCLf/GNK+GxPr2ppg/8XbdbS4EODajeGcT8gHw3GOMNg1W4xl9R

+ZSuSPVCUZ2KoHTu4VX1uP85FW7MzGzxIaYrcLHfyeOYRJFUDviZ32HAlYlzArdPxISKMfdxnkMFqB+TJJu

+42VE5OO0S80BlPDLSvX3XQO3iR6PsEwu2UD5dIH4zGxvjMSwgdlWTt9MzPOxKkpHTuLr7DzlHccKZzWOGfQf7r9CnqYcuRnVOITBOVpNwDB8ozQOi2ryGSmB1r

+u9qf2KO/cWRJC06Qc0GXcSpLF97cEreSrk0W5qHg3FYIAkuaFHF80ysx3k4BCk+Y2kYq97bzJtVPQxIycyuk22inh

+nBEIKr1EoRp1z4KU3oqZ5vhnDAHLGihzOpDbPnsPhIBz6rpxH3zL2AmwvrBFV/MHyy02sn9CWOqbSS09HP8lYTWQ1Xs39f6ohFZu4KoZCfCTUw

+8RUHQ3pKQHbsiRTxcstL7xIPPW0gqUxwTPgj0AKk9xzG6A3WVGuG6FvihK5hX4CkaFox8CIiaHNGvwNRM8yrho03Nl1i5qUEmpe8adAHez1ix/RVMpTZv0lj9rH3k+tSztt8rLqZ1KCHvkyGpnopJl3hrT8s7uhcala3j

+VTBZ/p/UFeLzqedPNueStttwLVt7aqncuw7q4GRIaBmzwY2gRrWsAmyG8LmcWy2EYJso25S5+0fgHjFoPGNyQ3Ngd4bZNM3/TwxCeZT1oY/RqGVRw6mWVQCoNQRJeHhV7VbpVyfybQSRkBv0xvPC6gLhs7qqpi/IcZyRnaJjqNfR4glCfi5

Qun9cUK17TGD0yyto4QFiHLhG1skRqoJBdtiXwXRe5sAb4Za8YR7wfnvdb+ZuBk51ZMsWQbDzqTcMx1kOZUnnnMRQDdTtxGiAtVXZDO/i8zvVQULuHMJH+1k/vvaK/thbbd9YnBN6xCK9Pa79+s72CHWwr63mdT4mvBBcNDnevC89fI=
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-5_user.job - C:\Program Files (x86)\iWebar\53385511-d284-4bcb-bcee-b6b52521c8e3-5.exe

/rawdata=jvKTuJGWrta391Hty3uXwKchcGck3ziqEwZz7fVYLAUBUDNwZ8sZXryGucEcJ1c5ceTB8lq3orF1JnwKWEefdEfydVJKNH

+6Mhq1MoV4bePYHUzDxnSK0E7LuEO/TPlRknNkU1vSUGUaADrKhZLKngtlAHjQsT9jM8oCKHT6yrKUU1BkOHF9egRv5SOTuLcFqfkNaId2Sl3ZBbKCf2Lhe1mpYCLf/GNK+GxPr2ppg/8XbdbS4EODajeGcT8gHw3GOMNg1W4xl9R

+ZSuSPVCUZ2KoHTu4VX1uP85FW7MzGzxIaYrcLHfyeOYRJFUDviZ32HAlYlzArdPxISKMfdxnkMFqB+TJJu

+42VE5OO0S80BlPDLSvX3XQO3iR6PsEwu2UD5dIH4zGxvjMSwgdlWTt9MzPOxKkpHTuLr7DzlHccKZzWOGfQf7r9CnqYcuRnVOITBOVpNwDB8ozQOi2ryGSmB1r

+u9qf2KO/cWRJC06Qc0GXcSpLF97cEreSrk0W5qHg3FYIAkuaFHF80ysx3k4BCk+Y2kYq97bzJtVPQxIycyuk22inh

+nBEIKr1EoRp1z4KU3oqZ5vhnDAHLGihzOpDbPnsPhIBz6rpxH3zL2AmwvrBFV/MHyy02sn9CWOqbSS09HP8lYTWQ1Xs39f6ohFZu4KoZCfCTUw

+8RUHQ3pKQHbsiRTxcstL7xIPPW0gqUxwTPgj0AKk9xzG6A3WVGuG6FvihK5hX4CkaFox8CIiaHNGvwNRM8yrho03Nl1i5qUEmpe8adAHez1ix/RVMpTZv0lj9rH3k+tSztt8rLqZ1KCHvkyGpnopJl3hrT8s7uhcala3j

+VTBZ/p/UFeLzqedPNueStttwLVt7aqncuw7q4GRIaBmzwY2gRrWsAmyG8LmcWy2EYJso25S5+0fgHjFoPGNyQ3Ngd4bZNM3/TwxCeZT1oY/RqGVRw6mWVQCoNQRJeHhV7VbpVyfybQSRkBv0xvPC6gLhs7qqpi/IcZyRnaJjqNfR4glCfi5

Qun9XAqc3SsyE37XB5bMfEsMn++WVYNyswsPzS3LrYg0aeJ7GCf8t8H8f2Y1+hNckOYN1MLa5tiZki6v1HHrM1FYCm33F2SSlx98rismhqu2775w0FA7SN2JUiAS8VVaY6dRsKI0nCObAylH4jLmWwlgyHAJydusFIhGgeRKhKKC8RI=
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-6.job - C:\Program Files (x86)\iWebar\53385511-d284-4bcb-bcee-b6b52521c8e3-6.exe

/rawdata=SJFniLyVSQdPE2xBgdrdgFUzuonA7kLDqVGLIMFDvRdJ0g/OxkFozQFzItNYyMMaIvilB4NpVk+vlLZpAm9DbrvI52JunTn4kmpmaAZIZdtqzmmssasC4VBjsOynxI9iD01xHMPXOSmPe

+snVDZFirIRPt7/b6XljiU82bZlL68d634GHmG+cKrv/6aBVQX+rb9G7Jor2w0nXkBudr3PbgNggwYxBskFwJSG7huLjnDo22Cotx5OH1RdXx+yIE2RpcZ8WrGnjkzjgIgvjvyTuJ3VfxIvQQoJgXV1a3f7k3cdZDZbKxyo8wwPogCq+nttbF1NAlVy

+BQcwWjpuJ6VvpXLXc/Frgzros9UtSLMsDqppnWl

+UfBvspYxfvco77Pcju65j93QlV//q0bVlZXCmaCjk9xLO6X4vaalBrch/Wo0XDe5/KXolVpJ4x06g3UurWusRSpNwZ8HxTRvEFVicjq8Q4JxM5RC5aL8IL6rCsMHhGize32h62WCeVcnMZ1AVk29X6rlL0jLaBPjS725vnY7EQxdymn/7aodrwjSAP

EPi3cGBkf7iNUHkQrOXI+NxZ+KIe46WCysAXZX50CL+7X/BHGFY6oM07VKY+0y+MAJjCQ9BUZ39N+zn+xtf3aQgPj1tZXrZs0Sr4BeWtDsfFGsTfL3UUUJrLt+pULMr3FKUbkjPUzcyc

+IxydLgVnMSkPIBaFDUElGbPI0uv7gwut67e6BqBSZVf12RjM/UgLRIMcAWSPECpmCiueDKCvDRNd2aYe8cuvCT9Q+5YQUd7jyghbpiYWLwsYevaZCn2o1mbFHrJarLQR0/4AKY15cH6iSaCNc3IWfAPJ7hwEX2J8xqMZUjdMPq7ezLG

+It/uAkcgBf38hhbprse25XInzcJaFqzF7fHbw9kdaFpr6+Ub6N+1eIbNFbE4iYrc+GyBI6qIN9X6PEPCNZw3Om7KgoIS3RVR4gEXxkxSt17ZnotnjlWjs9bXhjF5uV26prq1uQaY0aBvZVBWGxJCeriQtz

+BhtyUf5avuWNgjQlauaQgcKxo14kDwzbg+rsidqy43yz63faysfoHXKjXg15ee1P6H2jRco

+LRcgvl/bvJpo8A3DYb/cZs0jArzmCliBBSli4WZlOt6hvbGGRtYMQj1LbJZO3eDMY9XmHEsYtWZ7XCvFoio5nWVdki7WWmuEyC3FwWfvDJCFucdcRhUeTq6V5KtgHsoE43xv0KHsmYxwikT8i2nO94Cxj0ZVSxxDENJs4nkMdz4OX76uXql

PSy1fKVb3oK0HblAu6HcSRypx/DsnZl/gyNBsIXOoO0dzJuwzSr0mc/mveR1TT7ifdV6c84cgDcktSsH9KC0g45mEYnwOtYAjH6MfYNoSAyULn4svgdVgBQhNSyqeaYGDBalxZ83jxscBKcTuYNuWymokSDakPP1IySWxOboLz7xiACj07Sf

pozAXZoCGbGtyA6Mii7B0jYI5zY5P7GfJsHbZKgZtPw6rqS9omuvcCRZMP9uZSkTEuX6wSOnzJi5xWciOM8M3LFbNj/R2UM0vtX1MXpAPmKXjowB1ykUPrYB+iep5chszRc8VeWBPQhzbofiuWoFb4VH/GfQ104GeGdYfa48d4UPX2DU

+m3Al4zM5mJppsBbUp1FYk+UrR09vanDPqCtduxVmPXkQ3m1zz3cp6n/r6zI45UF9GWgF+SNQ=
C:\windows\tasks\53385511-d284-4bcb-bcee-b6b52521c8e3-7.job - C:\Program Files (x86)\iWebar\53385511-d284-4bcb-bcee-b6b52521c8e3-7.exe /rawdata=q5leyHLufL2Wdom714znKktJJpfeFw8lPe9QNDN5m

+DcUEjyzGlxbu5PihZLoy/OzRDTaREBAAHEfDV5smUaAFAdXw3nkeARojzB1bp

+neVZLaOOeaoFQVS2Ho2r2gCBUgt3AxzXA9oXlmkmvdR4Bl/GOC1NgrjRd/dbsPdpjcVSQLDodw3XnhIuKphSAUFWlSkwfKNvQfFRDKgF4Pxou4c2/HqTwsOPfYekZ8tOUOK7Mu1cKS8cmDHTL1xo29FUPanPhYRbpIAJ60BjGL6n0lq0O

BwcdrgZx6SzqWFF5ufWeRHDKn+s5wX5Sy2QJpZqaLhUjp

+81iXDaVoAeIixVlC5PM/FYZB7P3WIRnX8HQbD7FSUDHQtqcWTaC6/1i0rZ6g36e5Kw/P8ROk0dSu55+XEbP4v4ReJ43G/05EmYP8P1jf75PiEokI7G3meK0nu0vAg3CB8w19rNISVmpQ833d0762OnRRPsQz8v49Js8B6HbidVi5SipvFvHET

VRaQqoHjfHknTCoPzlrvcXVRHKZm0iLLALAJ8atMabh4aNU94znZyWqxWo8BCjG+

+WmSc8sdTRT8ntEfwPf9tRcxzNGJywCaHkGGx4iYPUN6jiNNma91iFcBKdHHhXl9l4QOUXijzPFQdwv9bnZ3ShJg73sXQfZ5ipfJdQT3eH1lb0ZJsVtAJXYJZBlkbAIJ/ME

+CcG86VhA9U5RZsFEmIgsdxoSSPeafuPynBMoFKz4V8E2hQcmrrN5R7LibQPkw/o28gWglJZZdEWBmrvK0jE0sz1TUYPZaIi9Ph54CKKDJpD5wmiyu3M4dKzY7HRFFAF5FBaPAsBdl

+vlW7hHdQR0ULNlE4oANFQfvL4zsUAnPfdc1LcAwsXiubnA30XCuG2fooDt0rFCtbwA4uJ1+pnieB+YNNPR6vJZi7T9oTyd0EK025tnB7CD9rRugMklkywFGsTz+883iTEuxghT9c2L2rpuMDMr5mjDoHSAEWphXsIYjEG

+2u6NZ5VJcxer0thXYcuf864PNcTLIJFBmGPSn0gDtuBP3t5NLGZQe0PB

+xWykCNF1BreXPMuxitc/vPb1C1Jbt9hywl6q6NcX24BihhfZMFDcY2ozjFoLd8Wu86uPMIJzPB8ZbRPPL04T7mt1WbpRKzVai009ACqOdo/vQmaxYaXnW0fDcaJBcU8mSwwjfQ1UaSetZhv88SA/Owt5Rbwiyw2P0E/EA9/Teb0ZaXMmGEP

FIfo8A/L8pHcBJLXVNRrZjkun0bzs8GLwC/ORECZ6CDaZZgJa4ZLlHs8l/j5/wNwtxj82kZ68PgYJ+gw3xNCp0pwwjHHSNzyMnBQxx/UgMhGzrx/IVrXBDXDAFpCuqz946/lVifMCEY75T/0cR+MPtpvFP1LYC4DZeQ6M4jG0T

+8oBegq6Pkj2RtXSYPkgHjMAk0n1CitvVZZ2d6Bbxr5NtVSXgTrfhzYo0WJvAgR+Ea7Vxh+WcK8Ej+Kcf//RFjRu3/F/eC8OsYQynMkwpz0pTwUAAybwUSYw38
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForLUKAS-HP$.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLUKAS-HP$ (null)
C:\windows\tasks\HPCeeScheduleForLukas.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLukas (null)

=========Mozilla firefox=========

ProfilePath - C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.email.cz"
prefs.js - "keyword.URL" - "https://www.google.com/search"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\searchplugins\
bingp.xml
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-09-14 64640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-07-13 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}]
YTAHelper - C:\ProgramData\YTAHelper\YTAHelper64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2012-09-23 72336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
File Sanitizer for HP ProtectTools - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2011-02-07 117248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-13 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
AcroIEToolbarHelper Class - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}]
YTAHelper - C:\ProgramData\YTAHelper\YTAHelper.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-27 418328]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-27 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-27 391704]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-05-24 1664000]
""= []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-09-26 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"cz.seznam.software.autoupdate"=C:\Users\Lukas\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"GoobzoYouTubeAccelerator"=C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe /startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 7.0]
C:\Nová složka\Adobe Acrobat 7.0\Distillr\Acrotray.exe [2004-12-14 483328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray]
C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray]
C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [2012-09-14 764544]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtvStack]
C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-09-14 127616]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun]
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2010-11-24 517456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\File Sanitizer]
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2011-02-07 12274688]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP HD Webcam [Fixed]_Monitor]
C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [2010-11-26 267128]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPConnectionManager]
C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2012-09-05 184736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant]
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPQuickWebProxy]
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2014-02-01 169528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-26 283160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MacroKeyManager]
C:\windows\system32\WTMKM.exe [2009-08-11 5634792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MfeEpePcMonitor]
C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe [2013-02-01 200704]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF Complete]
C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-08-11 658424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QLBController]
C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2011-01-29 299576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-10-24 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-28 336384]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-02-01 2774256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lukas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe [2014-09-13 36414624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lukas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Deskjet 2510 series.lnk]
C:\Program Files\HP\HP Deskjet 2510 series\bin\HPStatusBL.dll [2012-10-02 5699176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LifeCam"=C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
""= []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-13 4086432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-27 385024]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=EpePcNp64
DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"aux6"=wdmaud.drv
"aux7"=wdmaud.drv
"aux8"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-10-06 11:27:39 ----D---- C:\rsit
2014-10-06 00:00:44 ----A---- C:\windows\SYSWOW64\shoAEE9.tmp
2014-10-01 08:19:39 ----A---- C:\windows\SYSWOW64\qdvd.dll
2014-10-01 08:19:39 ----A---- C:\windows\system32\qdvd.dll
2014-10-01 00:12:46 ----D---- C:\Program Files (x86)\Senses
2014-09-30 23:54:09 ----D---- C:\Program Files (x86)\YouTube Accelerator
2014-09-30 23:53:17 ----D---- C:\Program Files (x86)\Seznam.cz
2014-09-30 23:52:41 ----D---- C:\Users\Lukas\AppData\Roaming\Seznam.cz
2014-09-26 08:20:58 ----D---- C:\UpdateChromeLinksLogs
2014-09-26 08:20:52 ----A---- C:\windows\SYSWOW64\gdiplus.dll
2014-09-24 21:53:05 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-24 08:56:41 ----A---- C:\windows\SYSWOW64\tzres.dll
2014-09-24 08:56:41 ----A---- C:\windows\system32\tzres.dll
2014-09-12 00:26:07 ----A---- C:\windows\system32\ieui.dll
2014-09-12 00:26:06 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-09-12 00:26:03 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2014-09-12 00:26:03 ----A---- C:\windows\system32\MshtmlDac.dll
2014-09-12 00:26:03 ----A---- C:\windows\system32\iernonce.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\jscript9diag.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-09-12 00:26:01 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-09-12 00:26:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-09-12 00:26:01 ----A---- C:\windows\system32\ieUnatt.exe
2014-09-12 00:26:01 ----A---- C:\windows\system32\dxtrans.dll
2014-09-12 00:26:01 ----A---- C:\windows\system32\dxtmsft.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-09-12 00:26:00 ----A---- C:\windows\system32\vbscript.dll
2014-09-12 00:25:59 ----A---- C:\windows\system32\msrating.dll
2014-09-12 00:25:59 ----A---- C:\windows\system32\mshtmled.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-09-12 00:25:58 ----A---- C:\windows\system32\jsproxy.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2014-09-12 00:25:57 ----A---- C:\windows\system32\msfeeds.dll
2014-09-12 00:25:57 ----A---- C:\windows\system32\iesetup.dll
2014-09-12 00:25:56 ----A---- C:\windows\system32\iedkcs32.dll
2014-09-12 00:25:56 ----A---- C:\windows\system32\ie4uinit.exe
2014-09-12 00:25:55 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-09-12 00:25:55 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-12 00:25:53 ----A---- C:\windows\system32\mshtml.dll
2014-09-12 00:25:52 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-09-12 00:25:52 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\ieapfltr.dll
2014-09-12 00:25:50 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-09-12 00:25:50 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-09-12 00:25:50 ----A---- C:\windows\system32\ieetwcollector.exe
2014-09-12 00:25:45 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-09-12 00:25:44 ----A---- C:\windows\system32\wininet.dll
2014-09-12 00:25:44 ----A---- C:\windows\system32\iertutil.dll
2014-09-12 00:25:43 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-09-12 00:25:42 ----A---- C:\windows\system32\jscript9.dll
2014-09-12 00:25:41 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-09-12 00:25:40 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-09-12 00:25:40 ----A---- C:\windows\system32\urlmon.dll
2014-09-12 00:25:36 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-09-12 00:25:34 ----A---- C:\windows\system32\ieframe.dll
2014-09-12 00:25:33 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-09-12 00:15:46 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2014-09-12 00:15:46 ----A---- C:\windows\system32\msmpeg2vdec.dll
2014-09-11 17:28:14 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2014-09-11 17:28:14 ----A---- C:\windows\system32\TSWorkspace.dll
2014-09-11 17:27:59 ----A---- C:\windows\system32\d3d10warp.dll
2014-09-11 17:27:58 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2014-09-11 17:27:41 ----A---- C:\windows\SYSWOW64\kerberos.dll
2014-09-11 17:27:41 ----A---- C:\windows\system32\lsasrv.dll
2014-09-11 17:27:41 ----A---- C:\windows\system32\kerberos.dll
2014-09-11 17:27:40 ----A---- C:\windows\SYSWOW64\sspicli.dll
2014-09-11 17:27:40 ----A---- C:\windows\SYSWOW64\secur32.dll
2014-09-11 17:27:34 ----A---- C:\windows\system32\aepdu.dll
2014-09-11 17:27:33 ----A---- C:\windows\system32\aeinv.dll

======List of files/folders modified in the last 1 month======

2014-10-06 11:27:41 ----D---- C:\Program Files\trend micro
2014-10-06 11:25:17 ----D---- C:\windows\System32
2014-10-06 11:25:17 ----D---- C:\windows\inf
2014-10-06 11:25:17 ----D---- C:\Windows
2014-10-06 11:25:16 ----D---- C:\windows\temp
2014-10-06 10:59:35 ----D---- C:\ProgramData
2014-10-06 10:56:13 ----RD---- C:\Program Files (x86)
2014-10-06 10:55:04 ----AD---- C:\ProgramData\Temp
2014-10-06 09:52:21 ----A---- C:\windows\win.ini
2014-10-06 07:50:02 ----D---- C:\windows\system32\config
2014-10-06 07:34:44 ----A---- C:\windows\SYSWOW64\log.txt
2014-10-06 07:34:29 ----D---- C:\Users\Lukas\AppData\Roaming\Dropbox
2014-10-06 07:33:22 ----D---- C:\windows\system32\Tasks
2014-10-06 07:33:18 ----D---- C:\windows\Tasks
2014-10-06 07:32:11 ----D---- C:\ProgramData\PDFC
2014-10-06 07:32:05 ----D---- C:\ProgramData\HPQLOG
2014-10-06 00:00:44 ----D---- C:\windows\SysWOW64
2014-10-05 23:47:12 ----D---- C:\ProgramData\PhotoStitch
2014-10-05 23:28:29 ----A---- C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-03 00:06:28 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-10-02 21:06:38 ----D---- C:\Users\Lukas\AppData\Roaming\SoftGrid Client
2014-10-02 20:27:45 ----SHD---- C:\System Volume Information
2014-10-02 00:37:17 ----D---- C:\windows\winsxs
2014-10-01 08:17:09 ----D---- C:\windows\system32\catroot
2014-10-01 08:12:23 ----D---- C:\windows\Prefetch
2014-10-01 00:13:04 ----SHD---- C:\windows\Installer
2014-10-01 00:04:41 ----D---- C:\Users\Lukas\AppData\Roaming\Media Player Classic
2014-09-30 22:04:50 ----D---- C:\Users\Lukas\AppData\Roaming\Skype
2014-09-27 21:21:16 ----A---- C:\windows\sbwin.ini
2014-09-26 21:15:18 ----D---- C:\ProgramData\Ableton
2014-09-26 15:35:40 ----D---- C:\windows\rescache
2014-09-26 08:15:22 ----D---- C:\Program Files (x86)\The KMPlayer
2014-09-25 18:53:16 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-25 01:02:27 ----D---- C:\windows\SYSWOW64\cs-CZ
2014-09-25 01:02:27 ----D---- C:\windows\system32\cs-CZ
2014-09-24 09:39:15 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-09-24 08:54:15 ----D---- C:\windows\system32\catroot2
2014-09-22 22:09:09 ----A---- C:\windows\CTWave32.ini
2014-09-17 20:44:26 ----D---- C:\windows\system32\FxsTmp
2014-09-14 21:42:04 ----D---- C:\windows\debug
2014-09-13 20:14:32 ----D---- C:\windows\Microsoft.NET
2014-09-12 21:26:15 ----RSD---- C:\windows\assembly
2014-09-12 17:46:00 ----D---- C:\Program Files\Internet Explorer
2014-09-12 17:45:59 ----D---- C:\windows\SYSWOW64\en-US
2014-09-12 17:45:57 ----D---- C:\windows\system32\en-US
2014-09-12 17:45:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-12 00:23:27 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2014-09-12 00:21:58 ----D---- C:\windows\system32\MRT
2014-09-12 00:16:58 ----A---- C:\windows\system32\MRT.exe
2014-09-12 00:15:36 ----SD---- C:\windows\system32\CompatTel

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;Avast! Firewall Driver; C:\windows\system32\DRIVERS\aswNdisFlt.sys [2014-07-13 448400]
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2014-07-13 65776]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2014-07-13 224896]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-13 439320]
R0 MfeEpeOpal;MfeEpeOpal; C:\windows\system32\drivers\MfeEpeOpal.sys [2013-02-01 101288]
R0 MfeEpePc;MfeEpePc; C:\windows\system32\drivers\MfeEpePc.sys [2013-02-01 158888]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 Tpkd;Tpkd; C:\windows\system32\drivers\Tpkd.sys [2012-11-17 105624]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswKbd;aswKbd; C:\windows\system32\drivers\aswKbd.sys [2014-07-13 28184]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2014-07-13 93568]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2014-07-13 1041168]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2014-07-13 427360]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2014-01-22 64288]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2014-07-13 29208]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2014-07-13 79184]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2014-07-13 92008]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-28 9319424]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-28 303616]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class; C:\windows\system32\DRIVERS\btath_flt.sys [2012-09-14 88728]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2012-12-20 3837440]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\windows\system32\drivers\btath_a2dp.sys [2012-09-14 344216]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service; C:\windows\system32\drivers\btath_avdt.sys [2012-09-14 114840]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus; C:\windows\system32\DRIVERS\btath_bus.sys [2012-09-14 33944]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\windows\system32\DRIVERS\btath_hcrp.sys [2012-09-14 178840]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\windows\system32\DRIVERS\btath_lwflt.sys [2012-09-14 77464]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\windows\system32\DRIVERS\btath_rcp.sys [2012-09-14 135832]
R3 BtFilter;BtFilter; C:\windows\system32\DRIVERS\btfilter.sys [2012-09-14 575128]
R3 BthEnum;Služba Bluetooth Enumerator; C:\windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-12-03 25912]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-27 12273408]
R3 JMCR;JMCR; C:\windows\system32\DRIVERS\jmcr.sys [2013-06-29 175928]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 moufiltr;Tablet Mouse Filter Driver; C:\windows\system32\DRIVERS\moufiltr.sys [2009-03-08 7680]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2013-06-14 708200]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2013-06-26 767144]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2013-06-26 273576]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2013-06-26 28840]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2013-06-26 23208]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2011-01-12 2611704]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\windows\system32\DRIVERS\stwrt64.sys [2013-05-24 543744]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2014-02-01 524016]
R3 usbscan;Ovladač skeneru USB; C:\windows\system32\drivers\usbscan.sys [2013-07-03 42496]
R3 vhidmini;Generic Virtual HID Driver; C:\windows\system32\DRIVERS\walvhid.sys [2009-04-16 7808]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S2 Aspi32;Aspi32; C:\windows\System32\drivers\aspi32.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 ATHDFU;Qualcomm Atheros Valkyrie USB BootROM; C:\windows\System32\Drivers\AthDfu.sys [2012-08-19 55448]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2011-02-07 63336]
S3 ggflt;SEMC USB Flash Driver Filter; C:\windows\system32\DRIVERS\ggflt.sys [2013-02-25 14448]
S3 ggsemc;SEMC USB Flash Driver; C:\windows\system32\DRIVERS\ggsemc.sys [2013-02-25 27760]
S3 IT9135BDA;IT9135 BDA Devices; C:\windows\System32\Drivers\IT9135BDA.sys [2014-08-20 165504]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\windows\System32\Drivers\nx6000.sys [2010-12-13 36720]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2013-05-24 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-28 203264]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-09-14 216192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-13 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-07-13 106488]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2011-02-12 481104]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2013-05-13 270624]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2012-09-24 31040]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-26 13336]
R2 jhi_service;Intel(R) Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2010-11-29 210896]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
R2 McAfee Endpoint Encryption Agent;McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [2013-02-01 1323008]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS64.exe [2010-12-13 194416]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-08-11 1128952]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-05-24 323072]
R2 uArcCapture;ArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [2010-11-11 502464]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-01-17 2656280]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2012-02-15 2602576]
R3 HP ProtectTools Service;HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2011-01-12 36864]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-18 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2011-02-04 464480]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-18 136176]
S3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2012-09-05 1420192]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-24 114288]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S4 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-01-28 133688]
S4 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2011-02-07 320000]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: Prosím kontrola logu, nálezy Avast

Napsal: 06 říj 2014 16:33
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Prosím kontrola logu, nálezy Avast

Napsal: 06 říj 2014 21:39
od lukashenzl
Děkuji, zde:

# AdwCleaner v3.311 - Report created 06/10/2014 at 22:31:21
# Updated 30/09/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Lukas - LUKAS-HP
# Running from : C:\Users\Lukas\Desktop\adwcleaner_3.311.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : YouTubeAcceleratorService

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\Program Files (x86)\Crawler
Folder Deleted : C:\Program Files (x86)\FoxTab
Folder Deleted : C:\Program Files (x86)\NCH Software
Folder Deleted : C:\Program Files (x86)\YouTube Accelerator
Folder Deleted : C:\Program Files (x86)\Senses
Folder Deleted : C:\Users\Lukas\AppData\Local\Babylon
Folder Deleted : C:\Users\Lukas\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Lukas\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\Lukas\AppData\LocalLow\Goobzo
Folder Deleted : C:\Users\Lukas\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Lukas\AppData\Roaming\NCH Software
Folder Deleted : C:\Users\Lukas\AppData\Roaming\SimilarSites
Folder Deleted : C:\Users\Lukas\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Lukas\Documents\Updater
Folder Deleted : C:\Users\Public\Documents\Goobzo
Folder Deleted : C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\Extensions\warnerroberts@hotmail.com
File Deleted : C:\windows\System32\roboot64.exe
File Deleted : C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\searchplugins\bingp.xml

***** [ Scheduled Tasks ] *****

Task Deleted : YTAHelper
Task Deleted : YTAUpdate_logon
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-1
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-11
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-2
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-3
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-4
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-5
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-5_user
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-6
Task Deleted : 4696d05c-2f34-43ae-be32-b1dc97f8c184-7
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-1
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-11
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-2
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-4
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-5
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-5_user
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-6
Task Deleted : 53385511-d284-4bcb-bcee-b6b52521c8e3-7

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crawler lišta\Nápověda pro lištu.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crawler lišta\Více produktů Crawler.lnk

***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Key Deleted : HKCU\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Wow6432Node\BabylonToolbar
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [GoobzoYouTubeAccelerator]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\ctbcommon.Buttons
Key Deleted : HKLM\SOFTWARE\Classes\CToolbar.TB4Client
Key Deleted : HKLM\SOFTWARE\Classes\CToolbar.TB4Script
Key Deleted : HKLM\SOFTWARE\Classes\CToolbar.TB4Server
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\APN_ATU3__RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\APN_ATU3__RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\CToolbar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\Crawler
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{183643C8-EE67-4574-9A38-927852E34163}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1DDA201E-5B42-4352-933E-21A92B297E3B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{54ECA872-DB2A-4C6B-BBB2-F3777C6786CC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DBDB6FAA-1F5F-4A18-B60B-7A905C7FF83F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192215}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E9BBD270-4B87-4EE2-912F-6635674986C0}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195515}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196615}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{04006843-5199-4CE4-B3CD-8092CC91706E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{506F578A-91E1-46CE-830F-E2F4268E9966}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E79BB61D-7F1A-41DF-8AD0-402795E3B566}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644194415}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644514423}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7459F1D0-9FB6-4D71-AA7B-9DECB34EB704}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBF1B8D2-9A06-4174-A8B5-E38606DDB92B}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192215}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622512223}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E9BBD270-4B87-4EE2-912F-6635674986C0}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195515}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196615}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\CToolbar
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Goobzo
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\Senses
Key Deleted : HKLM\SOFTWARE\Babylon
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\CToolbar
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Goobzo
Key Deleted : HKLM\SOFTWARE\InstallCore
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\iWebar
Key Deleted : HKLM\SOFTWARE\iWebar-nv
Key Deleted : HKLM\SOFTWARE\PIP
Key Deleted : HKLM\SOFTWARE\Senses-nv
Key Deleted : HKLM\SOFTWARE\Senses
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CToolbar_UNINSTALL
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\iWebar-nv
Key Deleted : [x64] HKLM\SOFTWARE\Senses-nv
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17280


-\\ Mozilla Firefox v32.0.3 (x86 cs)

[ File : C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\prefs.js ]

Line Deleted : user_pref("extensions.aROUAILDE73397174UXGZI17268980com65123.65123.internaldb.Resources_meta.value", "%7B%22handlebars.js%22%3A%7B%22id%22%3A838651%2C%22ver%22%3A1%2C%22status%22%3A1%2C%22name%22%3A%2[...]
Line Deleted : user_pref("extensions.aROUAILDE73397174UXGZI17268980com65123.65123.internaldb.Resources_resource_838660.value", "%22function%20startAskCom%28e%2Ct%2Cr%29%7Bfunction%20a%28e%29%7Bvar%20t%3Dnew%20RegExp[...]
Line Deleted : user_pref("extensions.aROUAILDE73397174UXGZI17268980com65123.65123.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22[...]
Line Deleted : user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22[...]
Line Deleted : user_pref("extensions.crossrider.bic", "148ca5736c81f6b55907e2c4019bd1c6");

-\\ Google Chrome v37.0.2062.124

[ File : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [16955 octets] - [06/10/2014 22:29:29]
AdwCleaner[S0].txt - [16523 octets] - [06/10/2014 22:31:21]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [16584 octets] ##########

Re: Prosím kontrola logu, nálezy Avast

Napsal: 06 říj 2014 21:55
od Rudy
Dejte nový log RSIT.

Re: Prosím kontrola logu, nálezy Avast

Napsal: 06 říj 2014 22:37
od lukashenzl
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukas at 2014-10-06 23:35:05
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 5 GB (8%) free of 61 GB
Total RAM: 4030 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:35:09, on 6.10.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\Lukas.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: cb53b500f3e90131a6091fb939dcadf40061915 - {11111111-1111-1111-1111-110611191115} - (no file)
O2 - BHO: 68671f62832e4803b34065d441f9a2210065123 - {11111111-1111-1111-1111-110611511123} - (no file)
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Lukas\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - Startup: Dropbox.lnk = Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Převést výběr do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést výběr do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Endpoint Encryption Agent - Unknown owner - C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WTService - Unknown owner - C:\windows\System32\atwtusb.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe

--
End of file - 13667 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe"
atieclxx
"C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe"
"C:\Program Files\Microsoft LifeCam\MSCamS64.exe"
/QuitInfo:00000000000001A4;0000000000000148; /AddRef;
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\windows\System32\atwtusb.exe -s
WLIDSvcM.exe 3056
C:\windows\system32\atwtusb.exe
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"taskhost.exe"
/QuitInfo:00000000000008DC;00000000000008D8; /AddRef;
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe"
"c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe"
C:\windows\system32\svchost.exe -k bthsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\wbem\wmiprvse.exe
"C:\windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c7f58be7-fbdf-4647-9f09-5b2c8fedf3bb -SystemEventPortName:HostProcess-7aab5787-f8e2-409d-b659-fb8ecccce535 -IoCancelEventPortName:HostProcess-e9e5ea1b-8dca-40b7-9574-e5d18983fa34 -NonStateChangingEventPortName:HostProcess-93ae1c93-b3f2-45b6-9a5a-121e57dbd9ed -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:94383963-51c4-4bc0-9498-e9eecb3faac0 -DeviceGroupId:WpdFsGroup
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
szndesktop.exe default start
"C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "-1026350944-252210224378433528-7742736561761531375-174139538-929558907-1937416791
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\windows\system32\NOTEPAD.EXE" H:\ŠKOLA\FU OU-ILUSTRACE\etc-doplnění\odkazy-tutorialy.TXT
"C:\windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
"C:\Users\Lukas\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForLUKAS-HP$.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLUKAS-HP$ (null)
C:\windows\tasks\HPCeeScheduleForLukas.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLukas (null)

=========Mozilla firefox=========

ProfilePath - C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.email.cz"
prefs.js - "keyword.URL" - "https://www.google.com/search"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\searchplugins\
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-09-14 64640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-07-13 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2012-09-23 72336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
File Sanitizer for HP ProtectTools - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2011-02-07 117248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-13 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
AcroIEToolbarHelper Class - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-27 418328]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-27 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-27 391704]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-05-24 1664000]
""= []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-09-26 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"cz.seznam.software.autoupdate"=C:\Users\Lukas\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 7.0]
C:\Nová složka\Adobe Acrobat 7.0\Distillr\Acrotray.exe [2004-12-14 483328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray]
C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray]
C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [2012-09-14 764544]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtvStack]
C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-09-14 127616]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun]
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2010-11-24 517456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\File Sanitizer]
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2011-02-07 12274688]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP HD Webcam [Fixed]_Monitor]
C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [2010-11-26 267128]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPConnectionManager]
C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2012-09-05 184736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant]
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPQuickWebProxy]
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2014-02-01 169528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-26 283160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MacroKeyManager]
C:\windows\system32\WTMKM.exe [2009-08-11 5634792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MfeEpePcMonitor]
C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe [2013-02-01 200704]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF Complete]
C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-08-11 658424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QLBController]
C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2011-01-29 299576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-10-24 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-28 336384]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-02-01 2774256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lukas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe [2014-09-13 36414624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lukas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Deskjet 2510 series.lnk]
C:\Program Files\HP\HP Deskjet 2510 series\bin\HPStatusBL.dll [2012-10-02 5699176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LifeCam"=C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
""= []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-13 4086432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-27 385024]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=EpePcNp64
DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"aux6"=wdmaud.drv
"aux7"=wdmaud.drv
"aux8"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-10-06 22:33:58 ----A---- C:\windows\system32\FNTCACHE.DAT
2014-10-06 22:28:20 ----D---- C:\AdwCleaner
2014-10-06 11:27:39 ----D---- C:\rsit
2014-10-06 00:00:44 ----A---- C:\windows\SYSWOW64\shoAEE9.tmp
2014-10-01 08:19:39 ----A---- C:\windows\SYSWOW64\qdvd.dll
2014-10-01 08:19:39 ----A---- C:\windows\system32\qdvd.dll
2014-09-30 23:53:17 ----D---- C:\Program Files (x86)\Seznam.cz
2014-09-30 23:52:41 ----D---- C:\Users\Lukas\AppData\Roaming\Seznam.cz
2014-09-26 08:20:58 ----D---- C:\UpdateChromeLinksLogs
2014-09-26 08:20:52 ----A---- C:\windows\SYSWOW64\gdiplus.dll
2014-09-24 21:53:05 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-24 08:56:41 ----A---- C:\windows\SYSWOW64\tzres.dll
2014-09-24 08:56:41 ----A---- C:\windows\system32\tzres.dll
2014-09-12 00:26:07 ----A---- C:\windows\system32\ieui.dll
2014-09-12 00:26:06 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-09-12 00:26:03 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2014-09-12 00:26:03 ----A---- C:\windows\system32\MshtmlDac.dll
2014-09-12 00:26:03 ----A---- C:\windows\system32\iernonce.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\jscript9diag.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-09-12 00:26:01 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-09-12 00:26:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-09-12 00:26:01 ----A---- C:\windows\system32\ieUnatt.exe
2014-09-12 00:26:01 ----A---- C:\windows\system32\dxtrans.dll
2014-09-12 00:26:01 ----A---- C:\windows\system32\dxtmsft.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-09-12 00:26:00 ----A---- C:\windows\system32\vbscript.dll
2014-09-12 00:25:59 ----A---- C:\windows\system32\msrating.dll
2014-09-12 00:25:59 ----A---- C:\windows\system32\mshtmled.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-09-12 00:25:58 ----A---- C:\windows\system32\jsproxy.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2014-09-12 00:25:57 ----A---- C:\windows\system32\msfeeds.dll
2014-09-12 00:25:57 ----A---- C:\windows\system32\iesetup.dll
2014-09-12 00:25:56 ----A---- C:\windows\system32\iedkcs32.dll
2014-09-12 00:25:56 ----A---- C:\windows\system32\ie4uinit.exe
2014-09-12 00:25:55 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-09-12 00:25:55 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-12 00:25:53 ----A---- C:\windows\system32\mshtml.dll
2014-09-12 00:25:52 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-09-12 00:25:52 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\ieapfltr.dll
2014-09-12 00:25:50 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-09-12 00:25:50 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-09-12 00:25:50 ----A---- C:\windows\system32\ieetwcollector.exe
2014-09-12 00:25:45 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-09-12 00:25:44 ----A---- C:\windows\system32\wininet.dll
2014-09-12 00:25:44 ----A---- C:\windows\system32\iertutil.dll
2014-09-12 00:25:43 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-09-12 00:25:42 ----A---- C:\windows\system32\jscript9.dll
2014-09-12 00:25:41 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-09-12 00:25:40 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-09-12 00:25:40 ----A---- C:\windows\system32\urlmon.dll
2014-09-12 00:25:36 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-09-12 00:25:34 ----A---- C:\windows\system32\ieframe.dll
2014-09-12 00:25:33 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-09-12 00:15:46 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2014-09-12 00:15:46 ----A---- C:\windows\system32\msmpeg2vdec.dll
2014-09-11 17:28:14 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2014-09-11 17:28:14 ----A---- C:\windows\system32\TSWorkspace.dll
2014-09-11 17:27:59 ----A---- C:\windows\system32\d3d10warp.dll
2014-09-11 17:27:58 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2014-09-11 17:27:41 ----A---- C:\windows\SYSWOW64\kerberos.dll
2014-09-11 17:27:41 ----A---- C:\windows\system32\lsasrv.dll
2014-09-11 17:27:41 ----A---- C:\windows\system32\kerberos.dll
2014-09-11 17:27:40 ----A---- C:\windows\SYSWOW64\sspicli.dll
2014-09-11 17:27:40 ----A---- C:\windows\SYSWOW64\secur32.dll
2014-09-11 17:27:34 ----A---- C:\windows\system32\aepdu.dll
2014-09-11 17:27:33 ----A---- C:\windows\system32\aeinv.dll

======List of files/folders modified in the last 1 month======

2014-10-06 23:35:07 ----D---- C:\Program Files\trend micro
2014-10-06 22:48:40 ----D---- C:\windows\system32\config
2014-10-06 22:37:12 ----D---- C:\windows\temp
2014-10-06 22:37:08 ----A---- C:\windows\SYSWOW64\log.txt
2014-10-06 22:35:40 ----D---- C:\Users\Lukas\AppData\Roaming\Dropbox
2014-10-06 22:35:04 ----D---- C:\ProgramData\PDFC
2014-10-06 22:35:03 ----D---- C:\ProgramData\HPQLOG
2014-10-06 22:34:57 ----A---- C:\windows\win.ini
2014-10-06 22:34:47 ----D---- C:\Windows
2014-10-06 22:33:58 ----D---- C:\windows\System32
2014-10-06 22:31:27 ----D---- C:\windows\Tasks
2014-10-06 22:31:27 ----D---- C:\windows\system32\Tasks
2014-10-06 22:31:27 ----D---- C:\Users\Lukas\AppData\Roaming\SoftGrid Client
2014-10-06 22:31:23 ----RD---- C:\Program Files (x86)
2014-10-06 22:31:22 ----D---- C:\ProgramData
2014-10-06 22:31:22 ----AD---- C:\ProgramData\Temp
2014-10-06 22:16:41 ----D---- C:\Users\Lukas\AppData\Roaming\Skype
2014-10-06 21:32:21 ----SHD---- C:\System Volume Information
2014-10-06 11:25:17 ----D---- C:\windows\inf
2014-10-06 00:00:44 ----D---- C:\windows\SysWOW64
2014-10-05 23:47:12 ----D---- C:\ProgramData\PhotoStitch
2014-10-05 23:28:29 ----A---- C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-03 00:06:28 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-10-02 00:37:17 ----D---- C:\windows\winsxs
2014-10-01 08:17:09 ----D---- C:\windows\system32\catroot
2014-10-01 08:12:23 ----D---- C:\windows\Prefetch
2014-10-01 00:13:04 ----SHD---- C:\windows\Installer
2014-10-01 00:04:41 ----D---- C:\Users\Lukas\AppData\Roaming\Media Player Classic
2014-09-27 21:21:16 ----A---- C:\windows\sbwin.ini
2014-09-26 21:15:18 ----D---- C:\ProgramData\Ableton
2014-09-26 15:35:40 ----D---- C:\windows\rescache
2014-09-26 08:15:22 ----D---- C:\Program Files (x86)\The KMPlayer
2014-09-25 18:53:16 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-25 01:02:27 ----D---- C:\windows\SYSWOW64\cs-CZ
2014-09-25 01:02:27 ----D---- C:\windows\system32\cs-CZ
2014-09-24 09:39:15 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-09-24 08:54:15 ----D---- C:\windows\system32\catroot2
2014-09-22 22:09:09 ----A---- C:\windows\CTWave32.ini
2014-09-17 20:44:26 ----D---- C:\windows\system32\FxsTmp
2014-09-14 21:42:04 ----D---- C:\windows\debug
2014-09-13 20:14:32 ----D---- C:\windows\Microsoft.NET
2014-09-12 21:26:15 ----RSD---- C:\windows\assembly
2014-09-12 17:46:00 ----D---- C:\Program Files\Internet Explorer
2014-09-12 17:45:59 ----D---- C:\windows\SYSWOW64\en-US
2014-09-12 17:45:57 ----D---- C:\windows\system32\en-US
2014-09-12 17:45:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-12 00:23:27 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2014-09-12 00:21:58 ----D---- C:\windows\system32\MRT
2014-09-12 00:16:58 ----A---- C:\windows\system32\MRT.exe
2014-09-12 00:15:36 ----SD---- C:\windows\system32\CompatTel

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;Avast! Firewall Driver; C:\windows\system32\DRIVERS\aswNdisFlt.sys [2014-07-13 448400]
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2014-07-13 65776]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2014-07-13 224896]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-13 439320]
R0 MfeEpeOpal;MfeEpeOpal; C:\windows\system32\drivers\MfeEpeOpal.sys [2013-02-01 101288]
R0 MfeEpePc;MfeEpePc; C:\windows\system32\drivers\MfeEpePc.sys [2013-02-01 158888]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 Tpkd;Tpkd; C:\windows\system32\drivers\Tpkd.sys [2012-11-17 105624]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswKbd;aswKbd; C:\windows\system32\drivers\aswKbd.sys [2014-07-13 28184]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2014-07-13 93568]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2014-07-13 1041168]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2014-07-13 427360]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2014-01-22 64288]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2014-07-13 29208]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2014-07-13 79184]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2014-07-13 92008]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-28 9319424]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-28 303616]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class; C:\windows\system32\DRIVERS\btath_flt.sys [2012-09-14 88728]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2012-12-20 3837440]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\windows\system32\drivers\btath_a2dp.sys [2012-09-14 344216]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service; C:\windows\system32\drivers\btath_avdt.sys [2012-09-14 114840]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus; C:\windows\system32\DRIVERS\btath_bus.sys [2012-09-14 33944]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\windows\system32\DRIVERS\btath_hcrp.sys [2012-09-14 178840]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\windows\system32\DRIVERS\btath_lwflt.sys [2012-09-14 77464]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\windows\system32\DRIVERS\btath_rcp.sys [2012-09-14 135832]
R3 BtFilter;BtFilter; C:\windows\system32\DRIVERS\btfilter.sys [2012-09-14 575128]
R3 BthEnum;Služba Bluetooth Enumerator; C:\windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-12-03 25912]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-27 12273408]
R3 JMCR;JMCR; C:\windows\system32\DRIVERS\jmcr.sys [2013-06-29 175928]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 moufiltr;Tablet Mouse Filter Driver; C:\windows\system32\DRIVERS\moufiltr.sys [2009-03-08 7680]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2013-06-14 708200]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2013-06-26 767144]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2013-06-26 273576]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2013-06-26 28840]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2013-06-26 23208]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2011-01-12 2611704]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\windows\system32\DRIVERS\stwrt64.sys [2013-05-24 543744]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2014-02-01 524016]
R3 vhidmini;Generic Virtual HID Driver; C:\windows\system32\DRIVERS\walvhid.sys [2009-04-16 7808]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S2 Aspi32;Aspi32; C:\windows\System32\drivers\aspi32.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 ATHDFU;Qualcomm Atheros Valkyrie USB BootROM; C:\windows\System32\Drivers\AthDfu.sys [2012-08-19 55448]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2011-02-07 63336]
S3 ggflt;SEMC USB Flash Driver Filter; C:\windows\system32\DRIVERS\ggflt.sys [2013-02-25 14448]
S3 ggsemc;SEMC USB Flash Driver; C:\windows\system32\DRIVERS\ggsemc.sys [2013-02-25 27760]
S3 IT9135BDA;IT9135 BDA Devices; C:\windows\System32\Drivers\IT9135BDA.sys [2014-08-20 165504]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\windows\System32\Drivers\nx6000.sys [2010-12-13 36720]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2013-05-24 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-28 203264]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-09-14 216192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-13 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-07-13 106488]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2011-02-12 481104]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2013-05-13 270624]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2012-09-24 31040]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-26 13336]
R2 jhi_service;Intel(R) Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2010-11-29 210896]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
R2 McAfee Endpoint Encryption Agent;McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [2013-02-01 1323008]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS64.exe [2010-12-13 194416]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-08-11 1128952]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-05-24 323072]
R2 uArcCapture;ArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [2010-11-11 502464]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-01-17 2656280]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2012-02-15 2602576]
R3 HP ProtectTools Service;HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2011-01-12 36864]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-18 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2011-02-04 464480]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-18 136176]
S3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2012-09-05 1420192]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-24 114288]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S4 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-01-28 133688]
S4 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2011-02-07 320000]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: Prosím kontrola logu, nálezy Avast

Napsal: 07 říj 2014 16:11
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\SYSWOW64\shoAEE9.tmp

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: Prosím kontrola logu, nálezy Avast

Napsal: 07 říj 2014 19:42
od lukashenzl
RSIT nový:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukas at 2014-10-07 20:40:33
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 5 GB (8%) free of 61 GB
Total RAM: 4030 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:40:39, on 7.10.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17280)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\Lukas.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Lukas\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - Startup: Dropbox.lnk = Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Převést výběr do Adobe PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést výběr do existujícího PDF - res://C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Endpoint Encryption Agent - Unknown owner - C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WTService - Unknown owner - C:\windows\System32\atwtusb.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe

--
End of file - 13330 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
atieclxx
/QuitInfo:0000000000000790;0000000000000794; /AddRef;
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe"
"C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe"
"C:\Program Files\Microsoft LifeCam\MSCamS64.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"taskhost.exe"
/QuitInfo:0000000000000848;000000000000084C; /AddRef;
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe"
C:\windows\System32\atwtusb.exe -s
WLIDSvcM.exe 3428
C:\windows\system32\atwtusb.exe
"C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe"
C:\windows\System32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\system32\svchost.exe -k bthsvcs
"C:\windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d1526156-8aca-45d2-92dc-a99d84efe157 -SystemEventPortName:HostProcess-057d8881-7092-4146-813c-33dc2413444a -IoCancelEventPortName:HostProcess-8aa030b9-e99a-4cce-ba04-5ce4f9905d0d -NonStateChangingEventPortName:HostProcess-6f9bf43a-d464-4d61-aad1-f2d6279e68cd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9aeffbbd-6794-4cf7-b0f9-b7e0f37259fe -DeviceGroupId:WpdFsGroup
C:\windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
szndesktop.exe default start
"C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\windows\system32\conhost.exe "78060442450391157515387800679299328401202570425-1060587583-1977945960736213092
"C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
taskeng.exe {0EA6A3B6-8EB4-4327-9366-3B5C6596A742}
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Users\Lukas\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\HPCeeScheduleForLUKAS-HP$.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLUKAS-HP$ (null)
C:\windows\tasks\HPCeeScheduleForLukas.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLukas (null)

=========Mozilla firefox=========

ProfilePath - C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.email.cz"
prefs.js - "keyword.URL" - "https://www.google.com/search"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\3tnyqftd.default\searchplugins\
Google.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-09-14 64640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-07-13 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2012-09-23 72336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
File Sanitizer for HP ProtectTools - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2011-02-07 117248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-13 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
AcroIEToolbarHelper Class - C:\Nová složka\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14 225280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-27 418328]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-27 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-27 391704]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-05-24 1664000]
""= []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-09-26 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"cz.seznam.software.autoupdate"=C:\Users\Lukas\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Lukas\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 7.0]
C:\Nová složka\Adobe Acrobat 7.0\Distillr\Acrotray.exe [2004-12-14 483328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray]
C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray]
C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [2012-09-14 764544]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtvStack]
C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-09-14 127616]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DTRun]
c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2010-11-24 517456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\File Sanitizer]
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2011-02-07 12274688]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP HD Webcam [Fixed]_Monitor]
C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [2010-11-26 267128]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPConnectionManager]
C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2012-09-05 184736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPPowerAssistant]
C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPQuickWebProxy]
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2014-02-01 169528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-26 283160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MacroKeyManager]
C:\windows\system32\WTMKM.exe [2009-08-11 5634792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MfeEpePcMonitor]
C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe [2013-02-01 200704]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF Complete]
C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-08-11 658424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QLBController]
C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2011-01-29 299576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-10-24 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-28 336384]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-02-01 2774256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lukas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe [2014-09-13 36414624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lukas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Sledovat výstrahy inkoustu - HP Deskjet 2510 series.lnk]
C:\Program Files\HP\HP Deskjet 2510 series\bin\HPStatusBL.dll [2012-10-02 5699176]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"LifeCam"=C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
""= []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-13 4086432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-27 385024]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=EpePcNp64
DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"aux6"=wdmaud.drv
"aux7"=wdmaud.drv
"aux8"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-10-07 20:20:18 ----D---- C:\_OTM
2014-10-06 22:33:58 ----A---- C:\windows\system32\FNTCACHE.DAT
2014-10-06 22:28:20 ----D---- C:\AdwCleaner
2014-10-06 11:27:39 ----D---- C:\rsit
2014-10-01 08:19:39 ----A---- C:\windows\SYSWOW64\qdvd.dll
2014-10-01 08:19:39 ----A---- C:\windows\system32\qdvd.dll
2014-09-30 23:53:17 ----D---- C:\Program Files (x86)\Seznam.cz
2014-09-30 23:52:41 ----D---- C:\Users\Lukas\AppData\Roaming\Seznam.cz
2014-09-26 08:20:58 ----D---- C:\UpdateChromeLinksLogs
2014-09-26 08:20:52 ----A---- C:\windows\SYSWOW64\gdiplus.dll
2014-09-24 21:53:05 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-09-24 08:56:41 ----A---- C:\windows\SYSWOW64\tzres.dll
2014-09-24 08:56:41 ----A---- C:\windows\system32\tzres.dll
2014-09-12 00:26:07 ----A---- C:\windows\system32\ieui.dll
2014-09-12 00:26:06 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-09-12 00:26:03 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2014-09-12 00:26:03 ----A---- C:\windows\system32\MshtmlDac.dll
2014-09-12 00:26:03 ----A---- C:\windows\system32\iernonce.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\jscript9diag.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 00:26:02 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-09-12 00:26:01 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-09-12 00:26:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-09-12 00:26:01 ----A---- C:\windows\system32\ieUnatt.exe
2014-09-12 00:26:01 ----A---- C:\windows\system32\dxtrans.dll
2014-09-12 00:26:01 ----A---- C:\windows\system32\dxtmsft.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-09-12 00:26:00 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-09-12 00:26:00 ----A---- C:\windows\system32\vbscript.dll
2014-09-12 00:25:59 ----A---- C:\windows\system32\msrating.dll
2014-09-12 00:25:59 ----A---- C:\windows\system32\mshtmled.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-09-12 00:25:58 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-09-12 00:25:58 ----A---- C:\windows\system32\jsproxy.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-09-12 00:25:57 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2014-09-12 00:25:57 ----A---- C:\windows\system32\msfeeds.dll
2014-09-12 00:25:57 ----A---- C:\windows\system32\iesetup.dll
2014-09-12 00:25:56 ----A---- C:\windows\system32\iedkcs32.dll
2014-09-12 00:25:56 ----A---- C:\windows\system32\ie4uinit.exe
2014-09-12 00:25:55 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-09-12 00:25:55 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-09-12 00:25:53 ----A---- C:\windows\system32\mshtml.dll
2014-09-12 00:25:52 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-09-12 00:25:52 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-09-12 00:25:51 ----A---- C:\windows\system32\ieapfltr.dll
2014-09-12 00:25:50 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-09-12 00:25:50 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-09-12 00:25:50 ----A---- C:\windows\system32\ieetwcollector.exe
2014-09-12 00:25:45 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-09-12 00:25:44 ----A---- C:\windows\system32\wininet.dll
2014-09-12 00:25:44 ----A---- C:\windows\system32\iertutil.dll
2014-09-12 00:25:43 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-09-12 00:25:42 ----A---- C:\windows\system32\jscript9.dll
2014-09-12 00:25:41 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-09-12 00:25:40 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-09-12 00:25:40 ----A---- C:\windows\system32\urlmon.dll
2014-09-12 00:25:36 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-09-12 00:25:34 ----A---- C:\windows\system32\ieframe.dll
2014-09-12 00:25:33 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-09-12 00:15:46 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2014-09-12 00:15:46 ----A---- C:\windows\system32\msmpeg2vdec.dll
2014-09-11 17:28:14 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2014-09-11 17:28:14 ----A---- C:\windows\system32\TSWorkspace.dll
2014-09-11 17:27:59 ----A---- C:\windows\system32\d3d10warp.dll
2014-09-11 17:27:58 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2014-09-11 17:27:41 ----A---- C:\windows\SYSWOW64\kerberos.dll
2014-09-11 17:27:41 ----A---- C:\windows\system32\lsasrv.dll
2014-09-11 17:27:41 ----A---- C:\windows\system32\kerberos.dll
2014-09-11 17:27:40 ----A---- C:\windows\SYSWOW64\sspicli.dll
2014-09-11 17:27:40 ----A---- C:\windows\SYSWOW64\secur32.dll
2014-09-11 17:27:34 ----A---- C:\windows\system32\aepdu.dll
2014-09-11 17:27:33 ----A---- C:\windows\system32\aeinv.dll

======List of files/folders modified in the last 1 month======

2014-10-07 20:40:37 ----D---- C:\Program Files\trend micro
2014-10-07 20:35:29 ----D---- C:\windows\system32\config
2014-10-07 20:29:59 ----D---- C:\Users\Lukas\AppData\Roaming\Dropbox
2014-10-07 20:27:33 ----D---- C:\windows\temp
2014-10-07 20:27:28 ----A---- C:\windows\SYSWOW64\log.txt
2014-10-07 20:25:33 ----D---- C:\ProgramData\PDFC
2014-10-07 20:25:29 ----D---- C:\ProgramData\HPQLOG
2014-10-07 20:24:41 ----A---- C:\windows\win.ini
2014-10-07 20:21:27 ----D---- C:\windows\SysWOW64
2014-10-07 20:20:18 ----D---- C:\windows\Tasks
2014-10-07 20:18:02 ----D---- C:\Users\Lukas\AppData\Roaming\Skype
2014-10-07 19:06:07 ----D---- C:\windows\inf
2014-10-06 22:34:47 ----D---- C:\Windows
2014-10-06 22:33:58 ----D---- C:\windows\System32
2014-10-06 22:31:27 ----D---- C:\windows\system32\Tasks
2014-10-06 22:31:27 ----D---- C:\Users\Lukas\AppData\Roaming\SoftGrid Client
2014-10-06 22:31:23 ----RD---- C:\Program Files (x86)
2014-10-06 22:31:22 ----D---- C:\ProgramData
2014-10-06 22:31:22 ----AD---- C:\ProgramData\Temp
2014-10-06 21:32:21 ----SHD---- C:\System Volume Information
2014-10-05 23:47:12 ----D---- C:\ProgramData\PhotoStitch
2014-10-05 23:28:29 ----A---- C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-03 00:06:28 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-10-02 00:37:17 ----D---- C:\windows\winsxs
2014-10-01 08:17:09 ----D---- C:\windows\system32\catroot
2014-10-01 08:12:23 ----D---- C:\windows\Prefetch
2014-10-01 00:13:04 ----SHD---- C:\windows\Installer
2014-10-01 00:04:41 ----D---- C:\Users\Lukas\AppData\Roaming\Media Player Classic
2014-09-27 21:21:16 ----A---- C:\windows\sbwin.ini
2014-09-26 21:15:18 ----D---- C:\ProgramData\Ableton
2014-09-26 15:35:40 ----D---- C:\windows\rescache
2014-09-26 08:15:22 ----D---- C:\Program Files (x86)\The KMPlayer
2014-09-25 18:53:16 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-25 01:02:27 ----D---- C:\windows\SYSWOW64\cs-CZ
2014-09-25 01:02:27 ----D---- C:\windows\system32\cs-CZ
2014-09-24 09:39:15 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-09-24 08:54:15 ----D---- C:\windows\system32\catroot2
2014-09-22 22:09:09 ----A---- C:\windows\CTWave32.ini
2014-09-17 20:44:26 ----D---- C:\windows\system32\FxsTmp
2014-09-14 21:42:04 ----D---- C:\windows\debug
2014-09-13 20:14:32 ----D---- C:\windows\Microsoft.NET
2014-09-12 21:26:15 ----RSD---- C:\windows\assembly
2014-09-12 17:46:00 ----D---- C:\Program Files\Internet Explorer
2014-09-12 17:45:59 ----D---- C:\windows\SYSWOW64\en-US
2014-09-12 17:45:57 ----D---- C:\windows\system32\en-US
2014-09-12 17:45:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-09-12 00:23:27 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2014-09-12 00:21:58 ----D---- C:\windows\system32\MRT
2014-09-12 00:16:58 ----A---- C:\windows\system32\MRT.exe
2014-09-12 00:15:36 ----SD---- C:\windows\system32\CompatTel

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;Avast! Firewall Driver; C:\windows\system32\DRIVERS\aswNdisFlt.sys [2014-07-13 448400]
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2014-07-13 65776]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2014-07-13 224896]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-01-13 439320]
R0 MfeEpeOpal;MfeEpeOpal; C:\windows\system32\drivers\MfeEpeOpal.sys [2013-02-01 101288]
R0 MfeEpePc;MfeEpePc; C:\windows\system32\drivers\MfeEpePc.sys [2013-02-01 158888]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 Tpkd;Tpkd; C:\windows\system32\drivers\Tpkd.sys [2012-11-17 105624]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswKbd;aswKbd; C:\windows\system32\drivers\aswKbd.sys [2014-07-13 28184]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2014-07-13 93568]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2014-07-13 1041168]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2014-07-13 427360]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2014-01-22 64288]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2014-07-13 29208]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2014-07-13 79184]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2014-07-13 92008]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2011-03-28 9319424]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2011-03-28 303616]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2010-11-11 32192]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class; C:\windows\system32\DRIVERS\btath_flt.sys [2012-09-14 88728]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2012-12-20 3837440]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\windows\system32\drivers\btath_a2dp.sys [2012-09-14 344216]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service; C:\windows\system32\drivers\btath_avdt.sys [2012-09-14 114840]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus; C:\windows\system32\DRIVERS\btath_bus.sys [2012-09-14 33944]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\windows\system32\DRIVERS\btath_hcrp.sys [2012-09-14 178840]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\windows\system32\DRIVERS\btath_lwflt.sys [2012-09-14 77464]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\windows\system32\DRIVERS\btath_rcp.sys [2012-09-14 135832]
R3 BtFilter;BtFilter; C:\windows\system32\DRIVERS\btfilter.sys [2012-09-14 575128]
R3 BthEnum;Služba Bluetooth Enumerator; C:\windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-12-03 25912]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 intelkmd;intelkmd; C:\windows\system32\DRIVERS\igdpmd64.sys [2011-01-27 12273408]
R3 JMCR;JMCR; C:\windows\system32\DRIVERS\jmcr.sys [2013-06-29 175928]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 moufiltr;Tablet Mouse Filter Driver; C:\windows\system32\DRIVERS\moufiltr.sys [2009-03-08 7680]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2013-06-14 708200]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2013-06-26 767144]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2013-06-26 273576]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2013-06-26 28840]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2013-06-26 23208]
R3 SPUVCbv;SPUVCb Driver Service; C:\windows\System32\Drivers\SPUVCbv_x64.sys [2011-01-12 2611704]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\windows\system32\DRIVERS\stwrt64.sys [2013-05-24 543744]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2014-02-01 524016]
R3 vhidmini;Generic Virtual HID Driver; C:\windows\system32\DRIVERS\walvhid.sys [2009-04-16 7808]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S2 Aspi32;Aspi32; C:\windows\System32\drivers\aspi32.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
S3 ATHDFU;Qualcomm Atheros Valkyrie USB BootROM; C:\windows\System32\Drivers\AthDfu.sys [2012-08-19 55448]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 DAMDrv;DAMDrv; C:\windows\system32\DRIVERS\DAMDrv64.sys [2011-02-07 63336]
S3 ggflt;SEMC USB Flash Driver Filter; C:\windows\system32\DRIVERS\ggflt.sys [2013-02-25 14448]
S3 ggsemc;SEMC USB Flash Driver; C:\windows\system32\DRIVERS\ggsemc.sys [2013-02-25 27760]
S3 IT9135BDA;IT9135 BDA Devices; C:\windows\System32\Drivers\IT9135BDA.sys [2014-08-20 165504]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\windows\System32\Drivers\nx6000.sys [2010-12-13 36720]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2013-05-24 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2011-03-28 203264]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-09-14 216192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-13 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-07-13 106488]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2011-02-12 481104]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-01-27 131128]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2013-05-13 270624]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2012-09-24 31040]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-26 13336]
R2 jhi_service;Intel(R) Identity Protection Technology Host Interface Service; C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2010-11-29 210896]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-01-17 326168]
R2 McAfee Endpoint Encryption Agent;McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [2013-02-01 1323008]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS64.exe [2010-12-13 194416]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-08-11 1128952]
R2 PdiService;Portrait Displays SDK Service; C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2011-01-18 113264]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-05-24 323072]
R2 uArcCapture;ArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [2010-11-11 502464]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-01-17 2656280]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2012-02-15 2602576]
R3 HP ProtectTools Service;HP ProtectTools Service; c:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [2011-01-12 36864]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-18 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; c:\Windows\SysWOW64\flcdlock.exe [2011-02-04 464480]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-18 136176]
S3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2012-09-05 1420192]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-08-19 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-09-24 114288]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S4 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-01-28 133688]
S4 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2011-02-07 320000]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

______________________________________________
______________________________________________

zde ještě log OTM:

All processes killed
========== FILES ==========
C:\windows\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\windows\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\windows\SYSWOW64\shoAEE9.tmp moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611191115}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611191115}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611511123}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Lukas
->Temp folder emptied: 36694192 bytes
->Temporary Internet Files folder emptied: 20060209 bytes
->FireFox cache emptied: 373198175 bytes
->Google Chrome cache emptied: 5985907 bytes
->Flash cache emptied: 4675 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 30559 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 778 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 9154 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 416,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Lukas
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 10072014_202018

Files moved on Reboot...
C:\Users\Lukas\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File move failed. C:\windows\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.
C:\windows\SysWow64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

Registry entries deleted on Reboot...

Re: Prosím kontrola logu, nálezy Avast

Napsal: 07 říj 2014 19:47
od Rudy
Log je již OK. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: Prosím kontrola logu, nálezy Avast

Napsal: 07 říj 2014 21:21
od lukashenzl
Děkuji
Zdá se to lepší, OTM se i sám odinstaloval (?). Na občasné čištění používám CC cleaner, ADW Cleaner, co tam teď zůstal, je podobný? Děkuji, podporuji.
Lukáš

Re: Prosím kontrola logu, nálezy Avast

Napsal: 07 říj 2014 21:31
od Rudy
Ano, jak jsem psal, OTM po sobě uklidil ADW je skener, který maže některé druhy AdWarů. Pokud ho spustíte a něco najde, smaže to. Můžete ho občas použít. Nemáte zač a za podporu děkujeme! :)