kontrola logu
Napsal: 24 říj 2014 09:18
Dobrý den,
prosím o ko logu. Začaly vyskakovat občas zvláštní okna. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Marek at 2014-10-24 09:28:58
Microsoft Windows 8.1
System drive C: has 222 GB (78%) free of 286 GB
Total RAM: 6062 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:29:21, on 24. 10. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Windows\SysWOW64\UMonit64.exe
D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTray.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
D:\program files\Origin\Origin.exe
C:\Program Files (x86)\Dialog MIS\Doktor.EXE
C:\Program Files (x86)\Dialog MIS\MSMWS002.DLL
C:\Program Files (x86)\Dialog MIS\Dialog.Goblin.exe
C:\Program Files (x86)\Dialog MIS\cgmassist\wkflsr32.exe
C:\Program Files (x86)\Dialog MIS\cgmassist\wkflbu32.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqdirec.exe
C:\Program Files (x86)\Apteryx\Apteryx Imaging\DrSuni.exe
C:\Program Files\trend micro\Marek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.zonealarm.com/?src=hp&tbi ... tsId=&ver=&
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = domino.dent.cz:3128
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: eee1ef70083a013208d37190b1a6e5ef0063429 - {11111111-1111-1111-1111-110611341129} - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-bho.dll
O2 - BHO: BS Player ControlBar B - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\java\bin\ssv.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\java\bin\jp2ssv.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll" (file missing)
O3 - Toolbar: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [ROGNB] "C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe"
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Zoner Photo Studio Service 16] "D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXED:\Program Files (x86)\Photo Studio 16\Program32\ZPSService.exe"
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: Name Grabber.lnk = C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: ImageBrowser EX Agent.lnk = C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe
O23 - Service: Asus WebStorage Windows Service - Unknown owner - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: SluĹľba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: SluĹľba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HCS.MedConnect.Service - HCS GmbH - D:\CGMSERVER\bin\medical-net\MedConnect\HCS.MedConnect.Service.exe
O23 - Service: HCS.MEDCONNECT.SERVICEMANAGER - HCS GmbH - D:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Toolbar Service (TBSrv) - ClientConnect Ltd. - C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 13160 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"dwm.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ASUS\P4G\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
D:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe
D:\CGMSERVER\bin\core\cgm.servercore.exe
C:\WINDOWS\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
dashost.exe {94d728cb-ddd2-4a46-8832c34036c6dd7f}
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe"
"C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
D:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
"D:\CGMSERVER\nginx.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss e9eef50e-cf89-49be-bf55-fdb21e6d8919 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k HPService
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
CMD /C ""D:/CGMSERVER/bin/pgsql/bin/postgres.exe" -D "D:/CGMSERVER/data/pgsql" < "nul" 2>&1"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" -D "D:/CGMSERVER/data/pgsql"
"D:\CGMSERVER\nginx.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forklog" "5108" "5112"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files\ASUS\P4G\InsOnWMI.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkboot" "4988" "-x3"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkboot" "4956" "-x4"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkavlauncher" "4940"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkcol" "4936"
KBFiltr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkbackend" "4920"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Windows\SysWOW64\UMonit64.exe"
"D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTray.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe"
"C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe" -CtxID "#Hewlett-Packard#HP Photosmart B110 series#1405950031" -Startup
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe" -Embedding
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe" -Embedding
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe" -check
"C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe"
taskhost.exe $(Arg0)
"D:\program files\Origin\Origin.exe" "origin2://game/launch/?offerIds=1024871,1024872,1023299,1024870,1028693,1028694&title=FIFA%u002015&cmdParams="
"C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Dialog MIS\Doktor.EXE"
MSMWS002.DLL +msmapplid "C:\Program Files (x86)\Dialog MIS\Doktor.EXE"
"C:\Program Files (x86)\Dialog MIS\Dialog.Goblin.exe" PCDENT 20040
"C:\Program Files (x86)\Dialog MIS\cgmassist\wkflsr32"
"C:\Program Files (x86)\Dialog MIS\cgmassist\wkflbu32" "C:/Program Files (x86)/Dialog MIS/cgmassist/globalfix/" "C:/Program Files (x86)/Dialog MIS/cgmassist/globalvariable/" C:/Users/Marek/AppData/Roaming/cgmassist/local/ "" TRAYICON ENABLE
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ddd63148-2ec4-4bab-92fb-b66ee2fdb4b3 -SystemEventPortName:HostProcess-81a122a3-3e36-4293-89a8-ea1c51dd8654 -IoCancelEventPortName:HostProcess-fb2d395f-ce3e-43e4-a4c7-c7a0c7168ea8 -NonStateChangingEventPortName:HostProcess-9a34eecd-fce5-4156-aa2a-ff3816702890 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:01be5ef2-a3be-4369-8e89-39dc7d8584c2 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\System32\svchost.exe -k HPZ12
/mini ContextID:"#Hewlett-Packard#HP Photosmart B110 series#1405950031" LaunchMode:"Auto"
C:\WINDOWS\splwow64.exe 8192
"C:\Program Files (x86)\Apteryx\Apteryx Imaging\DrSuni.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe76_ Global\UsGthrCtrlFltPipeMssGthrPipe76 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 588 592 600 65536 596
C:\WINDOWS\system32\msiexec.exe /V
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3328339923-2747926138-1126850117-100277_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3328339923-2747926138-1126850117-100277 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Users\Marek\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-1.job - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-codedownloader.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-11.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-11.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-2.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-2.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-4.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-4.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5_user.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-6.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-6.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-7.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-7.exe# /rawdata=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#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /ua /installsource scheduler#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /ua /installsource scheduler#
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611341129}]
SavePass 1.1 - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-bho64.dll [2014-10-18 826784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-03 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-06-13 66176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-03 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-08-12 715016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611341129}]
SavePass 1.1 - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-bho.dll [2014-10-18 608672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31264a33-a653-46c4-af49-1232c59a7da5}]
BS Player ControlBar B Toolbar - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-04-10 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\java\bin\ssv.dll [2014-09-26 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\java\bin\jp2ssv.dll [2014-09-26 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-08-12 606472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{31264A33-A653-46C4-AF49-1232C59A7DA5} - BS Player ControlBar B Toolbar - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-04-10 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
{31264a33-a653-46c4-af49-1232c59a7da5} - BS Player ControlBar B Toolbar - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-04-10 423744]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-06-25 13626072]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-06-05 1311304]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-04-11 2890128]
"UMonit64"=C:\Windows\SysWOW64\UMonit64.exe [2013-03-14 40960]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2014-08-09 1283136]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-08-09 2403288]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-06-13 132736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=D:\program files\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Zoner Photo Studio Service 16"=D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXE [2014-06-16 833024]
"Zoner Photo Studio Autoupdate"=D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXE [2014-06-16 833024]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-08-27 22041192]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
"ASUSWebStorage"=C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [2012-12-19 3576784]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-03-08 95192]
"ROGNB"=C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe [2011-09-19 466944]
"KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-04-23 311616]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-06-13 132736]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
ImageBrowser EX Agent.lnk - C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Name Grabber.lnk - C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"PromptOnSecureDesktop"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-10-24 09:28:58 ----D---- C:\rsit
2014-10-24 09:28:58 ----D---- C:\Program Files\trend micro
2014-10-18 08:32:27 ----D---- C:\Program Files (x86)\globalUpdate
2014-10-18 08:32:09 ----D---- C:\Program Files (x86)\SavePass 1.1
2014-10-17 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\ispnet.dll
2014-10-17 18:23:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2014-10-17 18:23:16 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2014-10-17 18:23:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2014-10-17 18:23:15 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2014-10-17 18:23:13 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2014-10-17 18:23:13 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2014-10-17 18:22:29 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2014-10-17 18:22:19 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2014-10-17 18:22:19 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2014-10-17 18:22:19 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2014-10-17 18:13:33 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-10-15 16:47:36 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2014-10-15 16:45:39 ----A---- C:\WINDOWS\system32\win32k.sys
2014-10-15 16:45:24 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-10-15 16:45:24 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-10-15 16:45:23 ----A---- C:\WINDOWS\system32\winbici.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wups2.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wups.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-10-15 16:45:09 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-10-15 16:45:08 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-10-15 16:44:57 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-10-15 16:44:54 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-10-15 16:44:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-10-15 16:44:51 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-10-15 16:44:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\system32\wininet.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\system32\rastls.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\system32\packager.dll
2014-10-15 16:42:34 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-10-15 16:42:34 ----A---- C:\WINDOWS\system32\authui.dll
2014-10-15 16:42:34 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-10-15 16:42:30 ----A---- C:\WINDOWS\system32\shell32.dll
2014-10-15 16:42:28 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-10-15 16:42:27 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-10-15 16:42:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-10-15 16:42:25 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-10-15 16:42:25 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-10-15 16:42:24 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-10-15 16:42:24 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-10-15 16:42:23 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-10-15 16:42:23 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-10-15 16:42:22 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-10-15 16:42:22 ----A---- C:\WINDOWS\system32\propsys.dll
2014-10-15 16:42:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-10-15 16:39:47 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-10-15 16:39:47 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-10-15 16:39:46 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-10-15 16:39:46 ----A---- C:\WINDOWS\system32\msi.dll
2014-10-15 16:39:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-10-12 20:09:45 ----RD---- C:\Program Files (x86)\Skype
======List of files/folders modified in the last 1 month======
2014-10-24 09:29:06 ----D---- C:\WINDOWS\Prefetch
2014-10-24 09:28:58 ----RD---- C:\Program Files
2014-10-24 09:28:45 ----SHD---- C:\WINDOWS\Installer
2014-10-24 09:28:45 ----D---- C:\WINDOWS\Temp
2014-10-24 09:28:38 ----HD---- C:\Config.Msi
2014-10-24 09:28:35 ----D---- C:\Program Files\Adblock Plus for IE
2014-10-24 09:28:01 ----SHD---- C:\System Volume Information
2014-10-24 09:25:53 ----D---- C:\Users\Marek\AppData\Roaming\Skype
2014-10-24 09:00:01 ----D---- C:\WINDOWS\system32\sru
2014-10-24 08:59:59 ----D---- C:\Program Files (x86)\Google
2014-10-23 14:38:52 ----RD---- C:\Program Files (x86)
2014-10-23 14:38:49 ----D---- C:\WINDOWS\Tasks
2014-10-23 09:09:04 ----D---- C:\WINDOWS\SoftwareDistribution
2014-10-23 09:09:03 ----D---- C:\Windows
2014-10-22 19:43:17 ----D---- C:\WINDOWS\Inf
2014-10-22 19:43:17 ----D---- C:\WINDOWS\debug
2014-10-22 18:50:40 ----D---- C:\Program Files (x86)\Dialog MIS
2014-10-22 13:47:42 ----D---- C:\WINDOWS\system32\config
2014-10-22 13:44:52 ----D---- C:\WINDOWS\Microsoft.NET
2014-10-22 10:29:53 ----HD---- C:\Program Files\WindowsApps
2014-10-22 10:29:38 ----D---- C:\WINDOWS\AppReadiness
2014-10-21 19:14:06 ----D---- C:\ProgramData\Origin
2014-10-21 18:42:15 ----D---- C:\WINDOWS\system32\Tasks
2014-10-21 14:43:22 ----D---- C:\ProgramData\NVIDIA
2014-10-21 13:32:31 ----RD---- C:\WINDOWS\System32
2014-10-21 13:32:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-20 17:14:59 ----D---- C:\WINDOWS\system32\DriverStore
2014-10-20 15:18:48 ----RSD---- C:\WINDOWS\assembly
2014-10-20 15:17:49 ----D---- C:\WINDOWS\rescache
2014-10-20 15:13:05 ----D---- C:\WINDOWS\WinSxS
2014-10-18 08:44:16 ----D---- C:\Users\Marek\AppData\Roaming\DAEMON Tools Lite
2014-10-18 08:44:09 ----D---- C:\WINDOWS\Logs
2014-10-17 19:59:44 ----D---- C:\WINDOWS\SysWOW64
2014-10-17 19:19:41 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-10-17 18:22:43 ----D---- C:\ProgramData\Oracle
2014-10-17 18:22:34 ----D---- C:\Program Files (x86)\Common Files
2014-10-17 18:09:19 ----D---- C:\WINDOWS\MediaViewer
2014-10-17 18:09:18 ----D---- C:\WINDOWS\FileManager
2014-10-17 18:09:18 ----D---- C:\WINDOWS\Camera
2014-10-17 18:09:14 ----D---- C:\Program Files (x86)\Internet Explorer
2014-10-17 18:09:13 ----D---- C:\Program Files\Internet Explorer
2014-10-17 18:09:10 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-10-17 18:09:08 ----D---- C:\WINDOWS\system32\cs-CZ
2014-10-17 18:09:03 ----RD---- C:\WINDOWS\ToastData
2014-10-17 18:08:59 ----D---- C:\WINDOWS\WinStore
2014-10-17 18:08:56 ----D---- C:\WINDOWS\system32\drivers
2014-10-17 18:05:40 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-10-17 10:50:53 ----D---- C:\WINDOWS\CbsTemp
2014-10-16 21:12:05 ----D---- C:\Program Files\CCleaner
2014-10-16 14:14:45 ----D---- C:\WINDOWS\system32\catroot
2014-10-15 16:48:42 ----D---- C:\WINDOWS\system32\MRT
2014-10-15 16:48:26 ----A---- C:\WINDOWS\system32\MRT.exe
2014-10-15 16:47:47 ----SD---- C:\WINDOWS\system32\CompatTel
2014-10-15 16:40:30 ----D---- C:\WINDOWS\system32\catroot2
2014-10-15 15:03:01 ----D---- C:\WINDOWS\system32\NDF
2014-10-14 14:10:21 ----SD---- C:\ProgramData\Microsoft
2014-10-12 20:09:53 ----D---- C:\ProgramData\Skype
2014-10-01 07:51:43 ----D---- C:\Program Files\Windows Journal
2014-10-01 07:51:42 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-10-01 07:51:42 ----D---- C:\WINDOWS\SYSWOW64\setup
2014-10-01 07:51:38 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\wbem
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\setup
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\oobe
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\Boot
2014-10-01 07:51:35 ----RSD---- C:\WINDOWS\Fonts
2014-10-01 07:51:35 ----D---- C:\WINDOWS\apppatch
2014-10-01 07:51:34 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-10-01 07:51:34 ----D---- C:\WINDOWS\SYSWOW64\InputMethod
2014-10-01 07:51:33 ----D---- C:\WINDOWS\system32\migration
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-05-03 677360]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 dtsoftbus01;@oem1.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-02-08 283064]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 plctrl;plctrl; \??\C:\Program Files\ASUS\P4G\plctrl.sys [2013-06-19 18232]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-06-13 89800]
R3 athr;@oem24.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-21 3873792]
R3 BTATH_A2DP;@oem9.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-06-13 347336]
R3 btath_avdt;@oem9.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-06-13 115912]
R3 BTATH_BUS;@oem6.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-06-13 34384]
R3 BTATH_HCRP;@oem12.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-06-13 179432]
R3 BTATH_LWFLT;@oem15.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-06-13 77464]
R3 BTATH_RCP;@oem17.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-06-13 136784]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-01-28 593000]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;SluĹľba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2014-05-07 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;OvladaÄŤ rozhranĂ USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 dot4;@oem26.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2012-10-19 151968]
R3 Dot4Print;@oem27.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2012-10-19 27040]
R3 dot4usb;@oem26.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2012-10-19 49056]
R3 ETD;@oem14.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-04-11 363920]
R3 HIDSwitch;@oem18.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-06-25 3462616]
R3 kbfiltr;@oem16.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@oem4.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-04-26 129224]
R3 MEIx64;@oem13.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-05-15 64624]
R3 NVHDA;@oem87.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2014-07-02 12866008]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-08-09 20440]
R3 nvvad_WaveExtensible;@oem83.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-05-07 167424]
R3 usbscan;@sti.inf,%usbscan.SvcDesc%;OvladaÄŤ skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;ZobrazovacĂ zaĹ™ĂzenĂ USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;OvladaÄŤ portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dg_ssudbus;@oem67.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-04-11 110336]
S3 ssudmdm;@oem70.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-04-11 206080]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R2 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files\ASUS\P4G\InsOnSrv.exe [2013-06-19 277120]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [2012-12-19 72192]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-06-13 312448]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 cgm.ebooking-1;cgm.ebooking-1; D:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe [2014-06-16 42896]
R2 cgm.servercore;cgm.servercore; D:\CGMSERVER\bin\core\cgm.servercore.exe [2014-05-13 59280]
R2 HCS.MEDCONNECT.SERVICEMANAGER;HCS.MEDCONNECT.SERVICEMANAGER; D:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe [2013-11-19 84480]
R2 hpqddsvc;SluĹľba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-05-15 131544]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-05-15 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-05-15 366552]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-08-09 1720792]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-08-09 18973144]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2014-07-02 935368]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2013-08-22 37768]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-07-02 411936]
R2 TBSrv;Toolbar Service; C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe [2014-04-10 350528]
R2 TeamViewer6;TeamViewer 6; C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2013-02-19 2417504]
R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe [2012-01-25 240408]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
S2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BBSvc.exe [2012-01-25 192792]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-10-18 68608]
S2 gupdate;SluĹľba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-26 116648]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2013-08-22 37768]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-10-18 68608]
S3 gupdatem;SluĹľba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-26 116648]
S3 HCS.MedConnect.Service;HCS.MedConnect.Service; D:\CGMSERVER\bin\medical-net\MedConnect\HCS.MedConnect.Service.exe [2013-11-19 45568]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184]
-----------------EOF-----------------
prosím o ko logu. Začaly vyskakovat občas zvláštní okna. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by Marek at 2014-10-24 09:28:58
Microsoft Windows 8.1
System drive C: has 222 GB (78%) free of 286 GB
Total RAM: 6062 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:29:21, on 24. 10. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Windows\SysWOW64\UMonit64.exe
D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTray.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
D:\program files\Origin\Origin.exe
C:\Program Files (x86)\Dialog MIS\Doktor.EXE
C:\Program Files (x86)\Dialog MIS\MSMWS002.DLL
C:\Program Files (x86)\Dialog MIS\Dialog.Goblin.exe
C:\Program Files (x86)\Dialog MIS\cgmassist\wkflsr32.exe
C:\Program Files (x86)\Dialog MIS\cgmassist\wkflbu32.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqdirec.exe
C:\Program Files (x86)\Apteryx\Apteryx Imaging\DrSuni.exe
C:\Program Files\trend micro\Marek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.zonealarm.com/?src=hp&tbi ... tsId=&ver=&
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = domino.dent.cz:3128
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: eee1ef70083a013208d37190b1a6e5ef0063429 - {11111111-1111-1111-1111-110611341129} - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-bho.dll
O2 - BHO: BS Player ControlBar B - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\java\bin\ssv.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\java\bin\jp2ssv.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll" (file missing)
O3 - Toolbar: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [ROGNB] "C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe"
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\program files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Zoner Photo Studio Service 16] "D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXED:\Program Files (x86)\Photo Studio 16\Program32\ZPSService.exe"
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: Name Grabber.lnk = C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: ImageBrowser EX Agent.lnk = C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe
O23 - Service: Asus WebStorage Windows Service - Unknown owner - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: SluĹľba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: SluĹľba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HCS.MedConnect.Service - HCS GmbH - D:\CGMSERVER\bin\medical-net\MedConnect\HCS.MedConnect.Service.exe
O23 - Service: HCS.MEDCONNECT.SERVICEMANAGER - HCS GmbH - D:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Toolbar Service (TBSrv) - ClientConnect Ltd. - C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 13160 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"dwm.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ASUS\P4G\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
D:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe
D:\CGMSERVER\bin\core\cgm.servercore.exe
C:\WINDOWS\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
dashost.exe {94d728cb-ddd2-4a46-8832c34036c6dd7f}
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe"
"C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
D:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
"D:\CGMSERVER\nginx.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss e9eef50e-cf89-49be-bf55-fdb21e6d8919 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k HPService
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
CMD /C ""D:/CGMSERVER/bin/pgsql/bin/postgres.exe" -D "D:/CGMSERVER/data/pgsql" < "nul" 2>&1"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" -D "D:/CGMSERVER/data/pgsql"
"D:\CGMSERVER\nginx.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forklog" "5108" "5112"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files\ASUS\P4G\InsOnWMI.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkboot" "4988" "-x3"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkboot" "4956" "-x4"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkavlauncher" "4940"
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkcol" "4936"
KBFiltr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"D:/CGMSERVER/bin/pgsql/bin/postgres.exe" "--forkbackend" "4920"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Windows\SysWOW64\UMonit64.exe"
"D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTray.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe"
"C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe" -CtxID "#Hewlett-Packard#HP Photosmart B110 series#1405950031" -Startup
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe" -Embedding
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe" -Embedding
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe" -check
"C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe"
taskhost.exe $(Arg0)
"D:\program files\Origin\Origin.exe" "origin2://game/launch/?offerIds=1024871,1024872,1023299,1024870,1028693,1028694&title=FIFA%u002015&cmdParams="
"C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.25.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Dialog MIS\Doktor.EXE"
MSMWS002.DLL +msmapplid "C:\Program Files (x86)\Dialog MIS\Doktor.EXE"
"C:\Program Files (x86)\Dialog MIS\Dialog.Goblin.exe" PCDENT 20040
"C:\Program Files (x86)\Dialog MIS\cgmassist\wkflsr32"
"C:\Program Files (x86)\Dialog MIS\cgmassist\wkflbu32" "C:/Program Files (x86)/Dialog MIS/cgmassist/globalfix/" "C:/Program Files (x86)/Dialog MIS/cgmassist/globalvariable/" C:/Users/Marek/AppData/Roaming/cgmassist/local/ "" TRAYICON ENABLE
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ddd63148-2ec4-4bab-92fb-b66ee2fdb4b3 -SystemEventPortName:HostProcess-81a122a3-3e36-4293-89a8-ea1c51dd8654 -IoCancelEventPortName:HostProcess-fb2d395f-ce3e-43e4-a4c7-c7a0c7168ea8 -NonStateChangingEventPortName:HostProcess-9a34eecd-fce5-4156-aa2a-ff3816702890 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:01be5ef2-a3be-4369-8e89-39dc7d8584c2 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\System32\svchost.exe -k HPZ12
/mini ContextID:"#Hewlett-Packard#HP Photosmart B110 series#1405950031" LaunchMode:"Auto"
C:\WINDOWS\splwow64.exe 8192
"C:\Program Files (x86)\Apteryx\Apteryx Imaging\DrSuni.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe76_ Global\UsGthrCtrlFltPipeMssGthrPipe76 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 588 592 600 65536 596
C:\WINDOWS\system32\msiexec.exe /V
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3328339923-2747926138-1126850117-100277_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3328339923-2747926138-1126850117-100277 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Users\Marek\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-1.job - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-codedownloader.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-11.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-11.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-2.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-2.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-4.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-4.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5_user.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-5.exe# /rawdata=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#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-6.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-6.exe# /rawdata=mXKBeDKBItL3swDd+YSnqH7Xq44izh16NIdLN4FpIL6DdHADkKVrjdk1jEL7+3Vo+AOVD5BDJNTrYhIuzUyjKeU2OsXwFx6z3bhgC4IXoObORwQL3WiWHuvv6JyOmOi0YHiraVM4++bjgCN4FEXeUKVeP/lheFBJNE3zniDL7SvDumgIkYDUvTnvf29dULyOQuuspJTC1+sE0fXX7zDoc1LKmYJL7+ZLdL+kLZy8KBi0/vBMtUmffRUhppNL2CqNvTgcJB3v+MPQs1JkrTlgYC8YXgdgMbv5jC7RiFvRrCta+jJyKPJDtwdUd35NI+iPXDyfeMqtZH0M5Jj/26DtrQg5cjmk732HpI3NcpS1d18dFKGd7Zl7UFyR9beu96zPt35XUi4xdaKZxMuAihaJKl5nimr04ZOV7AxAFsysqhKx4QxnzIrnPitFf8nCYl5Yrcmgz7TcVro7H0DdpkLGwM1PkPvvFGze8CTHBozCPK4BRfqlnvNk7xiQCT3NX/y7uZbSLi4RG9tVTQZ7M4U1hTIqtGByDGg9Ok51j162fmLJLZgd2+0QsRx1uHFVexQR6QgB/aBRbB8Fu0iUzOwXbmTVckBNCltdBHSkVihqv2nCSy3Ye/n9HHuvA223aPjjhdUocih+5rNZFcE7hlza0TvuJhYRsdmGzYUEWLufH2h2GpnkZ++653oeNpEGWUNqprwkIv4kIt0A52G/l+xSgjUo+WRSzG66ey35jSgNSuVmv3AoveZmygk4KBTj8AMqAK3vbDDDUKq+Ery+oJOetE2dTv+qbhbTH435JCPAOArZDPCXqI2hvZtDk0M2e7j6PskesFjesBy8nR2OLdWSdLwxvNnyzWawvV6Pyl6+oim+ahCyu5XckLDAEpm/A3dfYwEvb6/nKbdj3yMRdYpwnegskSxVJ1JEGwCPXkXpF+/Pu192DW+dvQ1xzg81Fo8FrHaVODyDzX3g+kuIEW55GuPLJBkan02NoSfwFy7JkSSYTzf4T9bV/btPfz9WyLG7eLoWvUFeVsrKDAePPeTa+ViQ7wrfiHYT4OA1MsEDWbcjJHRJ7Mvw8QL4UOzbs0WjX+X6R1IQeGrEK30gN5IG4EhIP4aiXJdGPYU+5MJncp0lIQHqiphffTZ/78bfL58TE84MJfMMrd7QL/BZDg3jz0BAKL0qpRnLN+PgcNqW3YmK+FX7hx/vOh72lNKSqexoBYSqBq/ZLtTlZDOa99eIWMDtUXMhbbcrR3o11MqX1T4OXBBJ4Fy50dLA6kpHN9Sp13Dv6x/BYCDVcPg/FcSqiuEK7VbrkPvVHBzB19Nq/9GbrTpYEi/5SUR1I/szBJ5oyrpgcxSxWfCL5Bhy0RNvtnNonqiYANq92bLuishCYmS4RC+fI9VLBf4plipj5xFWXFGhvcvcdn+6GjA9DYdSEEqMCv1Jc5t/S8UYSbOdgOdh83STfz17Huu3qdOyn7vngvjJ6YkH41U9EKOAhQzuaC0wylE1u7LVjBrh5DBQqnI51bsy6zSfh3U7M8Emd4z6NTUFwYNYllSFX3NtwJvuBH0/J2sZUHd23ux8ezUxn6QFxhXGyRGT2+r50uzN0bEbyACMLSXPKO8jhB/5KkGCQV0Oz2FMwhMGTTGAnEdM4gLppUS7H6xf9RFsQuCw8as9kav3yIWZKI5KFOFaYbm8Z4hex51HH2o2P4skwYHd/E0QCfC+CFvGRT5k77Y+RhtT7r6+KOknkLaKwCKH9Wk8uNAp6BhqkmQS5kuc7ofxSbNohyTIgIY+evHEa5PXPwVQ2Ow124TSmOCxBGeKWs7tyTrC5zYq3EntFzjfVT57+kfcO/W9R6bd99EHiusWrAqkq+ogXwEwtpesibuF500ZgQ==#
C:\WINDOWS\tasks\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-7.job - C:\Program Files (x86)\SavePass 1.1\6fe9931a-f2a5-4563-a8ad-0ffb0525aaba-7.exe# /rawdata=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#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe# /ua /installsource scheduler#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /c#
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe# /ua /installsource scheduler#
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611341129}]
SavePass 1.1 - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-bho64.dll [2014-10-18 826784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-03 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-06-13 66176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-03 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-08-12 715016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611341129}]
SavePass 1.1 - C:\Program Files (x86)\SavePass 1.1\SavePass 1.1-bho.dll [2014-10-18 608672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31264a33-a653-46c4-af49-1232c59a7da5}]
BS Player ControlBar B Toolbar - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-04-10 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files (x86)\java\bin\ssv.dll [2014-09-26 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files (x86)\java\bin\jp2ssv.dll [2014-09-26 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-08-12 606472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{31264A33-A653-46C4-AF49-1232C59A7DA5} - BS Player ControlBar B Toolbar - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-04-10 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
{31264a33-a653-46c4-af49-1232c59a7da5} - BS Player ControlBar B Toolbar - C:\Users\Marek\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-04-10 423744]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-06-25 13626072]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-06-05 1311304]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-04-11 2890128]
"UMonit64"=C:\Windows\SysWOW64\UMonit64.exe [2013-03-14 40960]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2014-08-09 1283136]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-08-09 2403288]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-06-13 132736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=D:\program files\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Zoner Photo Studio Service 16"=D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXE [2014-06-16 833024]
"Zoner Photo Studio Autoupdate"=D:\Program Files (x86)\Photo Studio 16\Program32\ZPSTRAY.EXE [2014-06-16 833024]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-08-27 22041192]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
"ASUSWebStorage"=C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [2012-12-19 3576784]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-03-08 95192]
"ROGNB"=C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe [2011-09-19 466944]
"KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [2014-04-23 311616]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-06-13 132736]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
ImageBrowser EX Agent.lnk - C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Name Grabber.lnk - C:\Program Files (x86)\Apteryx\Apteryx Imaging\Name Grabber.exe
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"PromptOnSecureDesktop"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-10-24 09:28:58 ----D---- C:\rsit
2014-10-24 09:28:58 ----D---- C:\Program Files\trend micro
2014-10-18 08:32:27 ----D---- C:\Program Files (x86)\globalUpdate
2014-10-18 08:32:09 ----D---- C:\Program Files (x86)\SavePass 1.1
2014-10-17 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\ispnet.dll
2014-10-17 18:23:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2014-10-17 18:23:16 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2014-10-17 18:23:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2014-10-17 18:23:15 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2014-10-17 18:23:13 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2014-10-17 18:23:13 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2014-10-17 18:22:29 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2014-10-17 18:22:19 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2014-10-17 18:22:19 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2014-10-17 18:22:19 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2014-10-17 18:13:33 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-10-15 16:47:36 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2014-10-15 16:45:39 ----A---- C:\WINDOWS\system32\win32k.sys
2014-10-15 16:45:24 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-10-15 16:45:24 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-10-15 16:45:23 ----A---- C:\WINDOWS\system32\winbici.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-10-15 16:45:14 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wups2.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wups.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-10-15 16:45:13 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-10-15 16:45:09 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-10-15 16:45:08 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-10-15 16:44:57 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-10-15 16:44:54 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-10-15 16:44:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-10-15 16:44:51 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-10-15 16:44:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\system32\wininet.dll
2014-10-15 16:44:49 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-10-15 16:44:48 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-10-15 16:44:47 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\system32\rastls.dll
2014-10-15 16:42:57 ----A---- C:\WINDOWS\system32\packager.dll
2014-10-15 16:42:34 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-10-15 16:42:34 ----A---- C:\WINDOWS\system32\authui.dll
2014-10-15 16:42:34 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-10-15 16:42:30 ----A---- C:\WINDOWS\system32\shell32.dll
2014-10-15 16:42:28 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-10-15 16:42:27 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-10-15 16:42:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-10-15 16:42:25 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-10-15 16:42:25 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-10-15 16:42:24 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-10-15 16:42:24 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-10-15 16:42:23 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-10-15 16:42:23 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-10-15 16:42:22 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-10-15 16:42:22 ----A---- C:\WINDOWS\system32\propsys.dll
2014-10-15 16:42:22 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-10-15 16:42:21 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-10-15 16:42:20 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-10-15 16:42:19 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-10-15 16:39:47 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-10-15 16:39:47 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-10-15 16:39:46 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-10-15 16:39:46 ----A---- C:\WINDOWS\system32\msi.dll
2014-10-15 16:39:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-10-12 20:09:45 ----RD---- C:\Program Files (x86)\Skype
======List of files/folders modified in the last 1 month======
2014-10-24 09:29:06 ----D---- C:\WINDOWS\Prefetch
2014-10-24 09:28:58 ----RD---- C:\Program Files
2014-10-24 09:28:45 ----SHD---- C:\WINDOWS\Installer
2014-10-24 09:28:45 ----D---- C:\WINDOWS\Temp
2014-10-24 09:28:38 ----HD---- C:\Config.Msi
2014-10-24 09:28:35 ----D---- C:\Program Files\Adblock Plus for IE
2014-10-24 09:28:01 ----SHD---- C:\System Volume Information
2014-10-24 09:25:53 ----D---- C:\Users\Marek\AppData\Roaming\Skype
2014-10-24 09:00:01 ----D---- C:\WINDOWS\system32\sru
2014-10-24 08:59:59 ----D---- C:\Program Files (x86)\Google
2014-10-23 14:38:52 ----RD---- C:\Program Files (x86)
2014-10-23 14:38:49 ----D---- C:\WINDOWS\Tasks
2014-10-23 09:09:04 ----D---- C:\WINDOWS\SoftwareDistribution
2014-10-23 09:09:03 ----D---- C:\Windows
2014-10-22 19:43:17 ----D---- C:\WINDOWS\Inf
2014-10-22 19:43:17 ----D---- C:\WINDOWS\debug
2014-10-22 18:50:40 ----D---- C:\Program Files (x86)\Dialog MIS
2014-10-22 13:47:42 ----D---- C:\WINDOWS\system32\config
2014-10-22 13:44:52 ----D---- C:\WINDOWS\Microsoft.NET
2014-10-22 10:29:53 ----HD---- C:\Program Files\WindowsApps
2014-10-22 10:29:38 ----D---- C:\WINDOWS\AppReadiness
2014-10-21 19:14:06 ----D---- C:\ProgramData\Origin
2014-10-21 18:42:15 ----D---- C:\WINDOWS\system32\Tasks
2014-10-21 14:43:22 ----D---- C:\ProgramData\NVIDIA
2014-10-21 13:32:31 ----RD---- C:\WINDOWS\System32
2014-10-21 13:32:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-20 17:14:59 ----D---- C:\WINDOWS\system32\DriverStore
2014-10-20 15:18:48 ----RSD---- C:\WINDOWS\assembly
2014-10-20 15:17:49 ----D---- C:\WINDOWS\rescache
2014-10-20 15:13:05 ----D---- C:\WINDOWS\WinSxS
2014-10-18 08:44:16 ----D---- C:\Users\Marek\AppData\Roaming\DAEMON Tools Lite
2014-10-18 08:44:09 ----D---- C:\WINDOWS\Logs
2014-10-17 19:59:44 ----D---- C:\WINDOWS\SysWOW64
2014-10-17 19:19:41 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-10-17 18:22:43 ----D---- C:\ProgramData\Oracle
2014-10-17 18:22:34 ----D---- C:\Program Files (x86)\Common Files
2014-10-17 18:09:19 ----D---- C:\WINDOWS\MediaViewer
2014-10-17 18:09:18 ----D---- C:\WINDOWS\FileManager
2014-10-17 18:09:18 ----D---- C:\WINDOWS\Camera
2014-10-17 18:09:14 ----D---- C:\Program Files (x86)\Internet Explorer
2014-10-17 18:09:13 ----D---- C:\Program Files\Internet Explorer
2014-10-17 18:09:10 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-10-17 18:09:08 ----D---- C:\WINDOWS\system32\cs-CZ
2014-10-17 18:09:03 ----RD---- C:\WINDOWS\ToastData
2014-10-17 18:08:59 ----D---- C:\WINDOWS\WinStore
2014-10-17 18:08:56 ----D---- C:\WINDOWS\system32\drivers
2014-10-17 18:05:40 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-10-17 10:50:53 ----D---- C:\WINDOWS\CbsTemp
2014-10-16 21:12:05 ----D---- C:\Program Files\CCleaner
2014-10-16 14:14:45 ----D---- C:\WINDOWS\system32\catroot
2014-10-15 16:48:42 ----D---- C:\WINDOWS\system32\MRT
2014-10-15 16:48:26 ----A---- C:\WINDOWS\system32\MRT.exe
2014-10-15 16:47:47 ----SD---- C:\WINDOWS\system32\CompatTel
2014-10-15 16:40:30 ----D---- C:\WINDOWS\system32\catroot2
2014-10-15 15:03:01 ----D---- C:\WINDOWS\system32\NDF
2014-10-14 14:10:21 ----SD---- C:\ProgramData\Microsoft
2014-10-12 20:09:53 ----D---- C:\ProgramData\Skype
2014-10-01 07:51:43 ----D---- C:\Program Files\Windows Journal
2014-10-01 07:51:42 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-10-01 07:51:42 ----D---- C:\WINDOWS\SYSWOW64\setup
2014-10-01 07:51:38 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\wbem
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\setup
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\oobe
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2014-10-01 07:51:38 ----D---- C:\WINDOWS\system32\Boot
2014-10-01 07:51:35 ----RSD---- C:\WINDOWS\Fonts
2014-10-01 07:51:35 ----D---- C:\WINDOWS\apppatch
2014-10-01 07:51:34 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-10-01 07:51:34 ----D---- C:\WINDOWS\SYSWOW64\InputMethod
2014-10-01 07:51:33 ----D---- C:\WINDOWS\system32\migration
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-05-03 677360]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 dtsoftbus01;@oem1.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-02-08 283064]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 plctrl;plctrl; \??\C:\Program Files\ASUS\P4G\plctrl.sys [2013-06-19 18232]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 AthBTPort;@oem10.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-06-13 89800]
R3 athr;@oem24.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-21 3873792]
R3 BTATH_A2DP;@oem9.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-06-13 347336]
R3 btath_avdt;@oem9.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-06-13 115912]
R3 BTATH_BUS;@oem6.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-06-13 34384]
R3 BTATH_HCRP;@oem12.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-06-13 179432]
R3 BTATH_LWFLT;@oem15.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-06-13 77464]
R3 BTATH_RCP;@oem17.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-06-13 136784]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-01-28 593000]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;SluĹľba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2014-05-07 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;OvladaÄŤ rozhranĂ USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 dot4;@oem26.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2012-10-19 151968]
R3 Dot4Print;@oem27.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2012-10-19 27040]
R3 dot4usb;@oem26.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2012-10-19 49056]
R3 ETD;@oem14.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-04-11 363920]
R3 HIDSwitch;@oem18.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-06-25 3462616]
R3 kbfiltr;@oem16.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@oem4.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-04-26 129224]
R3 MEIx64;@oem13.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-05-15 64624]
R3 NVHDA;@oem87.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2013-11-28 197408]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2014-07-02 12866008]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-08-09 20440]
R3 nvvad_WaveExtensible;@oem83.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-05-07 167424]
R3 usbscan;@sti.inf,%usbscan.SvcDesc%;OvladaÄŤ skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;ZobrazovacĂ zaĹ™ĂzenĂ USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;OvladaÄŤ portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dg_ssudbus;@oem67.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-04-11 110336]
S3 ssudmdm;@oem70.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-04-11 206080]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R2 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files\ASUS\P4G\InsOnSrv.exe [2013-06-19 277120]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [2012-12-19 72192]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-06-13 312448]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 cgm.ebooking-1;cgm.ebooking-1; D:\CGMSERVER\bin\ebooking-1\cgm.ebooking-1.exe [2014-06-16 42896]
R2 cgm.servercore;cgm.servercore; D:\CGMSERVER\bin\core\cgm.servercore.exe [2014-05-13 59280]
R2 HCS.MEDCONNECT.SERVICEMANAGER;HCS.MEDCONNECT.SERVICEMANAGER; D:\CGMSERVER\bin\medical-net\MedConnect.ServiceManager\HCS.MedConnect.ServiceManager.exe [2013-11-19 84480]
R2 hpqddsvc;SluĹľba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-05-15 131544]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-05-15 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-05-15 366552]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-08-09 1720792]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-08-09 18973144]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2014-07-02 935368]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2013-08-22 37768]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-07-02 411936]
R2 TBSrv;Toolbar Service; C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe [2014-04-10 350528]
R2 TeamViewer6;TeamViewer 6; C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2013-02-19 2417504]
R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe [2012-01-25 240408]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
S2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BBSvc.exe [2012-01-25 192792]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-10-18 68608]
S2 gupdate;SluĹľba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-26 116648]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2013-08-22 37768]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-10-18 68608]
S3 gupdatem;SluĹľba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-26 116648]
S3 HCS.MedConnect.Service;HCS.MedConnect.Service; D:\CGMSERVER\bin\medical-net\MedConnect\HCS.MedConnect.Service.exe [2013-11-19 45568]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184]
-----------------EOF-----------------