Stránka 1 z 1

Prosím o preventivku, děkuji

Napsal: 09 pro 2014 19:01
od Godeth
Logfile of random's system information tool 1.10 (written by random/random)
Run by Václav_2 at 2014-12-09 18:54:25
Microsoft Windows 8.1
System drive C: has 377 GB (40%) free of 940 GB
Total RAM: 8061 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:54:30, on 9. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Václav_2.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 22A1342922
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... 22A1342922
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 22A1342922
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... 22A1342922
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ADSKAppManager] "C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun
O4 - HKLM\..\Run: [ADSK DLMSession] C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Václav_2\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Václav_2\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DellSystemDetect] C:\Users\Václav_2\AppData\Local\Apps\2.0\7RK6W6TR.6GQ\9W08EK1K.GA1\dell..tion_e30b47f5d4a30e9e_0005.000b_1df8a3cb60a9209e\DellSystemDetect.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Václav_2\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
O4 - HKCU\..\Run: [TunnelBear] C:\Program Files (x86)\TunnelBear\TBear.Client.exe -autoconnect
O4 - HKUS\S-1-5-18\..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dell Digital Delivery Service (DellDigitalDelivery) - Dell Products, LP. - C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: TunnelBear Maintenance (TunnelBearMaintenance) - Unknown owner - C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe
O23 - Service: Intel(R) Turbo Boost Technology Monitor 2.6 (TurboBoost) - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 13468 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\atiesrxx.exe
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SENDINPUT
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\system32\WLANExt.exe 1035786624048
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe"
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {257d6c13-f95b-4ffa-b75ee7626bebec73}
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\Explorer.EXE
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
ClassicStartMenu.exe -startup
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe" Restart Start EEU 52 -1
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
HydraDM64.exe -h:131790 "Maximalizovat na celou plochu" "Maximalizovat k rohům okna" "Obnovit pracovní plochu"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\BlueStacks\HD-Agent.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-0a6bb6df-1db0-46ba-a223-de91126f0b42 -SystemEventPortName:HostProcess-67ef794c-2778-47b0-ad70-a16b076dcbb7 -IoCancelEventPortName:HostProcess-2c4b3ea3-5dcd-4cdf-9e79-9d63ab142838 -NonStateChangingEventPortName:HostProcess-5a5923d6-1896-4c31-bbfc-69e03f615a69 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ce2c0b9c-5a52-4ec7-a6aa-2c677c2d5a91 -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe"
"C:\Program Files (x86)\BlueStacks\HD-Service.exe" BstHdAndroidSvc Android
"C:\Program Files (x86)\BlueStacks\HD-Network.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2884.0.121000970\814875928" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3643 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_96/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="2884.1.238937897\1765797591" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_96/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="2884.2.1677642515\1021313014" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_96/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="2884.3.566546022\1958647390" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_96/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="2884.4.1790161709\2063914562" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_96/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="2884.8.1170628391\961974392" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/DomRel-Enable/enable/EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GCM/Disabled/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_96/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="2884.13.963098097\1132500678" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2884.16.1883264703\246930975" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Users\Václav_2\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2674089598-1968449058-3127791073-1009Core.job - C:\Users\Václav_2\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2674089598-1968449058-3127791073-1009UA.job - C:\Users\Václav_2\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18 796352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-08-15 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-01-18 483520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-01-18 674496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-08-15 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-01-18 437440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18 796352]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-01-18 674496]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2013-03-05 5762408]
"IntelTBRunOnce"=wscript.exe //b //nologo C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs []
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-12-21 3010952]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-01-18 161984]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-08-07 36352]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Václav_2\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-25 1385808]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-10-17 55568]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2014-04-17 1967616]
"Facebook Update"=C:\Users\Václav_2\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-09-08 138096]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-25 6480664]
"DellSystemDetect"=C:\Users\Václav_2\AppData\Local\Apps\2.0\7RK6W6TR.6GQ\9W08EK1K.GA1\dell..tion_e30b47f5d4a30e9e_0005.000b_1df8a3cb60a9209e\DellSystemDetect.exe [2014-10-14 264488]
"Akamai NetSession Interface"=C:\Users\Václav_2\AppData\Local\Akamai\netsession_win.exe [2014-10-29 4673432]
"Autodesk Sync"=C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [2014-05-01 1193352]
"TunnelBear"=C:\Program Files (x86)\TunnelBear\TBear.Client.exe [2014-12-01 3165120]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-08-15 4085896]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-04-17 767200]
"ADSKAppManager"=C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [2014-09-04 488328]
"ADSK DLMSession"=C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe [2014-02-05 1627032]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2014-11-19 843480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2014-12-09 18:54:25 ----D---- C:\rsit
2014-12-08 21:48:59 ----D---- C:\Program Files (x86)\TunnelBear
2014-11-27 00:27:26 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-11-27 00:22:54 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2014-11-27 00:22:54 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2014-11-27 00:22:54 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2014-11-27 00:22:54 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2014-11-27 00:22:53 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2014-11-27 00:22:53 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2014-11-27 00:22:53 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2014-11-27 00:22:52 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2014-11-27 00:22:52 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2014-11-27 00:22:50 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2014-11-27 00:22:50 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2014-11-27 00:22:50 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2014-11-27 00:22:50 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2014-11-27 00:22:50 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2014-11-27 00:22:50 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2014-11-27 00:22:49 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2014-11-27 00:22:49 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2014-11-27 00:22:48 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2014-11-27 00:22:48 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2014-11-27 00:22:47 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2014-11-27 00:22:46 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2014-11-27 00:22:46 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2014-11-27 00:22:46 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2014-11-27 00:22:46 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2014-11-27 00:22:46 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2014-11-27 00:22:45 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2014-11-27 00:22:44 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2014-11-27 00:22:44 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2014-11-27 00:22:44 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2014-11-27 00:22:44 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2014-11-27 00:22:43 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2014-11-27 00:22:43 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2014-11-27 00:22:42 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2014-11-27 00:22:42 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2014-11-27 00:22:42 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2014-11-27 00:22:42 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2014-11-27 00:22:41 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2014-11-27 00:22:41 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2014-11-27 00:22:41 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2014-11-27 00:22:41 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2014-11-27 00:22:41 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2014-11-27 00:22:41 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2014-11-27 00:22:40 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2014-11-27 00:22:40 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2014-11-27 00:22:39 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2014-11-27 00:22:39 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2014-11-27 00:22:38 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2014-11-27 00:22:38 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2014-11-27 00:22:38 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2014-11-27 00:22:38 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2014-11-27 00:22:38 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2014-11-27 00:22:37 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2014-11-27 00:22:37 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2014-11-27 00:22:37 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2014-11-27 00:22:37 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2014-11-27 00:22:36 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2014-11-27 00:22:36 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2014-11-27 00:22:36 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2014-11-27 00:22:36 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2014-11-27 00:22:35 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2014-11-27 00:22:35 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2014-11-27 00:22:34 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2014-11-27 00:22:34 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2014-11-27 00:22:33 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2014-11-27 00:22:33 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2014-11-27 00:22:33 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2014-11-27 00:22:33 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2014-11-27 00:22:32 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2014-11-27 00:22:32 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2014-11-27 00:22:32 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2014-11-27 00:22:32 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2014-11-27 00:22:30 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2014-11-27 00:22:30 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2014-11-27 00:22:30 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2014-11-27 00:22:30 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2014-11-27 00:22:28 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2014-11-27 00:22:28 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2014-11-27 00:22:28 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2014-11-27 00:22:28 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2014-11-27 00:22:27 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2014-11-27 00:22:27 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2014-11-27 00:22:25 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2014-11-27 00:22:25 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2014-11-27 00:22:24 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2014-11-27 00:22:24 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2014-11-27 00:22:24 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2014-11-27 00:22:24 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2014-11-27 00:22:23 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2014-11-27 00:22:23 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2014-11-27 00:22:22 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2014-11-27 00:22:22 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2014-11-27 00:22:22 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2014-11-27 00:22:22 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2014-11-27 00:22:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2014-11-27 00:22:21 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2014-11-27 00:22:21 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2014-11-27 00:22:21 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2014-11-27 00:22:20 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2014-11-27 00:22:20 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2014-11-27 00:22:18 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2014-11-27 00:22:18 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2014-11-27 00:22:17 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2014-11-27 00:22:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2014-11-27 00:22:17 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2014-11-27 00:22:17 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2014-11-27 00:22:15 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2014-11-27 00:22:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2014-11-27 00:22:14 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2014-11-27 00:22:12 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2014-11-27 00:22:12 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2014-11-26 23:53:21 ----D---- C:\Program Files (x86)\2K Games
2014-11-20 19:37:26 ----D---- C:\ProgramData\BlueStacks
2014-11-20 19:37:26 ----D---- C:\Program Files (x86)\BlueStacks
2014-11-20 00:29:01 ----D---- C:\Program Files\Autodesk
2014-11-20 00:23:34 ----D---- C:\Program Files (x86)\Autodesk
2014-11-19 16:52:53 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2014-11-19 16:52:52 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2014-11-19 16:52:45 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2014-11-19 12:25:35 ----D---- C:\Users\Václav_2\AppData\Roaming\TunnelBear
2014-11-19 04:56:33 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-11-19 04:56:32 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-11-19 04:56:32 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-11-19 04:56:32 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-11-18 11:35:01 ----SHD---- C:\WINDOWS\SYSWOW64\AI_RecycleBin
2014-11-17 21:18:14 ----D---- C:\ProgramData\ATI
2014-11-15 13:45:26 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2014-11-15 13:45:26 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2014-11-15 13:45:26 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2014-11-15 13:45:26 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2014-11-15 13:45:25 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2014-11-15 13:45:25 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2014-11-15 13:45:25 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2014-11-15 13:45:25 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2014-11-15 13:45:24 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2014-11-15 13:45:24 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2014-11-15 13:45:23 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2014-11-15 13:45:23 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2014-11-15 13:45:23 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2014-11-15 13:45:23 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2014-11-15 13:45:22 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2014-11-15 13:45:22 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2014-11-12 15:57:08 ----D---- C:\Program Files (x86)\SQUARE ENIX
2014-11-11 23:48:35 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-11-11 23:48:35 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-11 23:48:34 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-11-11 23:48:34 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-11 23:48:34 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-11 23:47:45 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-11-11 23:47:45 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-11 23:47:45 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-11 23:47:44 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-11-11 23:47:44 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-11-11 23:47:44 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-11 23:47:44 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-11 23:47:43 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-11 23:47:39 ----A---- C:\WINDOWS\system32\user32.dll
2014-11-11 23:47:38 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-11-11 23:47:38 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-11 23:47:38 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-11 23:47:37 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-11 23:47:36 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-11-11 23:47:36 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-11 23:47:03 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-11-11 23:47:03 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-11 23:46:48 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-11 23:46:48 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-11 23:46:48 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-11 23:46:47 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-11-11 23:46:47 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-11-11 23:46:47 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-11-11 23:46:47 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-11 23:46:47 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-11 23:46:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-11 23:46:47 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-11 23:46:45 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-11 23:46:44 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-11-11 23:46:09 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-11 23:46:03 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-11-11 23:45:58 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-11 23:45:56 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-11-11 23:45:55 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-11-11 23:45:55 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-11 23:45:54 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-11-11 23:45:54 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-11 23:45:54 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-11 23:45:54 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-11 23:45:54 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-11 23:45:53 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-11-11 23:45:53 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-11-11 23:45:53 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-11-11 23:45:53 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-11 23:45:53 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-11 23:45:52 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-11-11 23:45:52 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-11-11 23:45:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-11-11 23:45:52 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-11-11 23:45:52 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-11 23:45:52 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-11 23:45:52 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-11 23:45:51 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-11-11 23:45:51 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-11-11 23:45:51 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-11-11 23:45:51 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-11 23:45:51 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-11 23:45:51 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-11 23:45:51 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-11 23:45:50 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-11-11 23:45:50 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-11-11 23:45:50 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-11-11 23:45:50 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-11-11 23:45:50 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-11 23:45:50 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-11-11 23:45:49 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-11 23:45:49 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-11 23:45:49 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-11 23:45:49 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-11 23:45:49 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-11-11 23:45:48 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-11 23:45:48 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-11 23:45:47 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-11-11 23:45:47 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-11-11 23:45:47 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-11-11 23:45:47 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-11-11 23:45:47 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-11 23:45:47 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-11 23:45:46 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-11-11 23:45:46 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-11-11 23:45:46 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-11-11 23:45:46 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-11-11 23:45:46 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-11-11 23:45:46 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-11 23:45:46 ----A---- C:\WINDOWS\system32\url.dll
2014-11-11 23:45:46 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-11 23:45:46 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-11 23:45:46 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-11 23:45:46 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-11 23:45:45 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-11 23:45:45 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-11 23:45:44 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-11-11 23:45:44 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-11 23:45:44 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-11 23:45:43 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\certcli.dll
2014-11-11 23:45:42 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-11 23:45:40 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-11-11 23:45:40 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-11 23:45:39 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-11-11 23:45:39 ----A---- C:\WINDOWS\system32\devinv.dll
2014-11-11 23:45:39 ----A---- C:\WINDOWS\system32\aepic.dll
2014-11-11 23:45:39 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-11-11 23:45:39 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-11-11 23:45:38 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-11-11 23:45:37 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-11 23:45:37 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-11 23:45:37 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-11 23:45:36 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-11-11 23:45:36 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-11 23:45:36 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-11 23:45:36 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-11-11 23:45:16 ----A---- C:\WINDOWS\system32\shell32.dll
2014-11-11 23:45:15 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-11-11 23:45:15 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-11-11 23:45:14 ----A---- C:\WINDOWS\system32\twinui.dll
2014-11-11 23:45:14 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-11 23:45:13 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-11-11 23:45:12 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-11 23:45:12 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-11 23:45:12 ----A---- C:\WINDOWS\system32\localspl.dll
2014-11-11 23:45:11 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-11-11 23:45:11 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-11-11 23:45:11 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-11-11 23:45:11 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-11-11 23:45:11 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-11-11 23:45:11 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-11-11 23:45:10 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-11-11 23:45:10 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-11-11 23:45:10 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-11-11 23:45:10 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-11-11 23:45:10 ----A---- C:\WINDOWS\system32\untfs.dll
2014-11-11 23:45:10 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-11-11 23:45:10 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-11 23:45:10 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-11-11 23:45:09 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-11-11 23:45:09 ----A---- C:\WINDOWS\system32\FXSAPI.dll

======List of files/folders modified in the last 1 month======

2014-12-09 18:54:28 ----D---- C:\Program Files\trend micro
2014-12-09 18:45:26 ----D---- C:\WINDOWS\Prefetch
2014-12-09 18:45:24 ----D---- C:\Users\Václav_2\AppData\Roaming\uTorrent
2014-12-09 18:00:00 ----D---- C:\WINDOWS\system32\sru
2014-12-09 14:04:00 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-09 14:03:54 ----HD---- C:\Program Files\WindowsApps
2014-12-09 14:03:32 ----D---- C:\WINDOWS\AppReadiness
2014-12-09 11:58:07 ----D---- C:\WINDOWS\Temp
2014-12-09 11:37:21 ----D---- C:\Users\Václav_2\AppData\Roaming\ClassicShell
2014-12-08 21:49:07 ----SHD---- C:\WINDOWS\Installer
2014-12-08 21:49:07 ----SHD---- C:\Config.Msi
2014-12-08 21:48:59 ----RD---- C:\Program Files (x86)
2014-12-08 21:48:49 ----D---- C:\ProgramData\Package Cache
2014-12-08 21:48:44 ----SHD---- C:\System Volume Information
2014-12-08 16:05:40 ----D---- C:\Users\Václav_2\AppData\Roaming\vlc
2014-12-08 14:48:03 ----RD---- C:\WINDOWS\System32
2014-12-08 14:48:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-08 14:48:02 ----D---- C:\WINDOWS\Inf
2014-12-05 13:46:22 ----D---- C:\Program Files (x86)\Dell Digital Delivery
2014-12-01 14:04:26 ----D---- C:\WINDOWS\system32\drivers
2014-12-01 14:03:36 ----D---- C:\Program Files (x86)\Glyph
2014-12-01 14:00:32 ----D---- C:\Windows
2014-12-01 13:42:33 ----D---- C:\Users\Václav_2\AppData\Roaming\Raptr
2014-11-29 12:09:53 ----D---- C:\WINDOWS\system32\config
2014-11-27 00:22:53 ----D---- C:\WINDOWS\SysWOW64
2014-11-27 00:22:09 ----RSD---- C:\WINDOWS\assembly
2014-11-27 00:20:47 ----D---- C:\WINDOWS\Logs
2014-11-27 00:01:03 ----D---- C:\WINDOWS\CbsTemp
2014-11-27 00:01:02 ----D---- C:\WINDOWS\WinSxS
2014-11-26 23:52:00 ----D---- C:\Users\Václav_2\AppData\Roaming\DAEMON Tools Lite
2014-11-20 23:37:14 ----D---- C:\WINDOWS\system32\Tasks
2014-11-20 21:51:37 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-11-20 19:43:20 ----D---- C:\ProgramData\BlueStacksSetup
2014-11-20 19:37:26 ----HD---- C:\ProgramData
2014-11-20 00:44:40 ----D---- C:\ProgramData\Autodesk
2014-11-20 00:36:22 ----D---- C:\Program Files\Common Files\Autodesk Shared
2014-11-20 00:32:24 ----RSD---- C:\WINDOWS\Fonts
2014-11-20 00:30:23 ----SD---- C:\WINDOWS\Downloaded Program Files
2014-11-20 00:29:01 ----D---- C:\Users\Václav_2\AppData\Roaming\Autodesk
2014-11-20 00:29:01 ----D---- C:\Program Files
2014-11-20 00:18:53 ----D---- C:\WINDOWS\SoftwareDistribution
2014-11-20 00:17:00 ----D---- C:\Autodesk
2014-11-19 22:34:20 ----D---- C:\WINDOWS\debug
2014-11-19 21:05:22 ----D---- C:\ProgramData\Origin
2014-11-19 21:04:45 ----D---- C:\Program Files (x86)\Origin
2014-11-19 16:25:07 ----D---- C:\Program Files (x86)\Battle.net
2014-11-19 12:25:31 ----D---- C:\WINDOWS\system32\DriverStore
2014-11-18 11:36:58 ----D---- C:\WINDOWS\Tasks
2014-11-18 11:21:00 ----D---- C:\WINDOWS\system32\wbem
2014-11-18 11:18:19 ----D---- C:\Program Files\AMD
2014-11-18 11:18:19 ----D---- C:\Program Files (x86)\Common Files
2014-11-18 11:18:11 ----D---- C:\ProgramData\FLEXnet
2014-11-18 11:18:11 ----D---- C:\ProgramData\Applications
2014-11-18 11:18:11 ----D---- C:\Program Files\Windows Defender
2014-11-18 11:18:11 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-11-18 11:18:11 ----D---- C:\Program Files\Common Files
2014-11-18 11:18:09 ----D---- C:\Users\Václav_2\AppData\Roaming\Battle.net
2014-11-18 11:18:08 ----HD---- C:\WINDOWS\system32\WLANProfiles
2014-11-18 11:18:08 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-11-18 11:18:08 ----D---- C:\WINDOWS\system32\CodeIntegrity
2014-11-18 11:18:08 ----D---- C:\WINDOWS\system32\catroot2
2014-11-18 11:12:19 ----D---- C:\WINDOWS\registration
2014-11-18 00:11:23 ----D---- C:\WINDOWS\system32\catroot
2014-11-17 21:14:17 ----D---- C:\ProgramData\AMD
2014-11-15 14:29:46 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-11-15 08:36:14 ----D---- C:\WINDOWS\rescache
2014-11-13 13:51:35 ----SD---- C:\WINDOWS\system32\CompatTel
2014-11-13 13:51:35 ----D---- C:\Program Files (x86)\Windows Defender
2014-11-13 13:51:34 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-11-13 13:51:34 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-11-13 13:51:34 ----D---- C:\WINDOWS\system32\migration
2014-11-13 13:51:34 ----D---- C:\WINDOWS\system32\cs-CZ
2014-11-13 13:51:34 ----D---- C:\Program Files\Internet Explorer
2014-11-13 13:51:34 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-12 16:25:16 ----RD---- C:\WINDOWS\ToastData
2014-11-12 16:25:15 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-11-12 16:25:15 ----D---- C:\WINDOWS\apppatch
2014-11-12 16:25:07 ----D---- C:\ProgramData\Microsoft Help
2014-11-12 16:24:21 ----D---- C:\WINDOWS\system32\MRT
2014-11-12 16:20:19 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-11 13:58:07 ----SD---- C:\Users\Václav_2\AppData\Roaming\Microsoft

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem32.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-12-13 36608]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-08-15 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-08-15 224896]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-07 644968]
R0 rtcrfilt64;@oem11.inf,%service_desc%;Realtek Turbo Mode Filter Driver; C:\WINDOWS\system32\DRIVERS\rtcrfilt64.sys [2000-01-01 19600]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-08-15 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-21 1041168]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-08-15 427360]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 dtsoftbus01;@oem1.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-10-01 283064]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-08-15 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-08-15 79184]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-08-15 92008]
R2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-11-19 122072]
R2 TurboB;Turbo Boost UI Monitor driver; C:\WINDOWS\system32\DRIVERS\TurboB.sys [2012-05-30 16168]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-04-18 15376384]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-04-18 638976]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2013-09-05 1390904]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2013-04-23 69088]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2000-01-01 3793408]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2000-01-01 3956056]
R3 IntcDAud;@oem219.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2000-01-01 450520]
R3 iwdbus;@oem167.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-05-06 27032]
R3 MEIx64;@oem193.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-04-03 118272]
R3 NETwNe64;@oem69.inf,%NIC_Service_DispName_WIN8_64%;Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\WINDOWS\system32\DRIVERS\Netwew00.sys [2013-10-08 3345376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 RSUSBVSTOR;@oem189.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2013-01-15 327240]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-12-21 32136]
R3 SynTP;@oem114.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-12-21 466824]
R3 tap-tb-0901;@oem121.inf,%DeviceDescription%;TunnelBear Adapter V9; C:\WINDOWS\system32\DRIVERS\tap-tb-0901.sys [2014-08-12 38656]
R3 usb3Hub;@oem66.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-10-09 47072]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
S3 AMPPAL;Virtuální adaptér Intel® Centrino® Wireless Bluetooth® + High Speed; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-02-13 164832]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dot4;@oem74.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2012-10-19 151968]
S3 Dot4Print;@oem75.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2012-10-19 27040]
S3 dot4usb;@oem74.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2012-10-19 49056]
S3 EagleX64;EagleX64; \??\C:\WINDOWS\system32\drivers\EagleX64.sys []
S3 ggflt;@oem201.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-09-21 16088]
S3 ggsomc;@oem201.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-09-21 30424]
S3 intaud_WaveExtensible;@oem166.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-05-06 38296]
S3 massfilter_hs;@oem183.inf,%filter.SvcDesc%;HS HandSet Mass Storage Filter Driver; C:\WINDOWS\System32\drivers\massfilter_hs.sys [2012-01-10 18456]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2014-03-30 119512]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-12-21 28040]
S3 SWDUMon;SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [2014-10-05 16152]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2000-01-01 98208]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-04-18 239616]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2014-02-07 31192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-08-15 50344]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-11-19 409304]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-11-19 388824]
R2 BstHdUpdaterSvc;BlueStacks Updater Service; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2014-11-19 786136]
R2 DellDigitalDelivery;Dell Digital Delivery Service; C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe [2014-11-24 224648]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2013-08-28 626416]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2000-01-01 315352]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-04-03 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-04-03 398296]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2014-07-21 76152]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2013-08-28 149744]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2012-04-25 254512]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2000-01-01 290520]
R2 TunnelBearMaintenance;TunnelBear Maintenance; C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe [2014-12-01 30656]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-12 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-25 267440]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2000-01-01 279000]
S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2014-10-06 1357104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-12 116648]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-08-28 273136]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2014-11-19 1900400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.6; C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2012-05-30 149544]

-----------------EOF-----------------

Re: Prosím o preventivku, děkuji

Napsal: 09 pro 2014 20:50
od altrok
Hezky vecer Vam preju :bye:

:arrow: Spustte jako spravce C:\Program Files\trend micro\Václav_2.exe
  • kliknete na Do a system scan only
  • zatrhnete (udelejte fajfku) nasledujici polozky
    • O15 - Trusted Zone: *.dell.com
  • kliknete na Fix checked
:arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).

:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Clean
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi

Re: Prosím o preventivku, děkuji

Napsal: 11 pro 2014 13:26
od Godeth
děkuji Vám za bleskovou kontrolu :-)
_________________________________
# AdwCleaner v4.105 - Report created 11/12/2014 at 13:22:07
# Updated 08/12/2014 by Xplode
# Database : 2014-12-08.2 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Václav_2 - VÁCLAV
# Running from : C:\Users\Václav_2\Desktop\adwcleaner_4.105.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : {00c97d86-accb-4288-9972-6d929c1fe93a}Gw64

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\CostMin
Folder Deleted : C:\ProgramData\4d4726517d68c86c
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\torch
Folder Deleted : C:\Users\Václav_2\AppData\Local\webplayer
Folder Deleted : C:\Users\Václav_2\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Václav_2\AppData\Roaming\Mozilla\Firefox\Profiles\hm6mzjec.default-1409496507151\Extensions\prositez@prz.com
Folder Deleted : C:\Users\Václav_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebbchgjkpmmpigagejpcdlhopcbnfhnf
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebbchgjkpmmpigagejpcdlhopcbnfhnf
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebbchgjkpmmpigagejpcdlhopcbnfhnf
Folder Deleted : C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebbchgjkpmmpigagejpcdlhopcbnfhnf
Folder Deleted : C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebbchgjkpmmpigagejpcdlhopcbnfhnf
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebbchgjkpmmpigagejpcdlhopcbnfhnf
Folder Deleted : C:\Users\Václav_2\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebbchgjkpmmpigagejpcdlhopcbnfhnf
File Deleted : C:\WINDOWS\System32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw64.sys
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystartsearch.xml
File Deleted : C:\Users\Václav_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
File Deleted : C:\Users\Václav_2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****

Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Václav_2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11C8C9C0-D918-44C0-8B5E-D297DA42F2C7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\Webplayer
Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\mystartsearchSoftware

***** [ Browsers ] *****

-\\ Internet Explorer v0.0.0.0

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]

-\\ Mozilla Firefox v32.0.2 (x86 cs)

[hm6mzjec.default-1409496507151\prefs.js] - Line Deleted : user_pref("browser.newtab.url", "hxxp://www.mystartsearch.com/newtab/?type=nt&t ... 22A1342922");
[hm6mzjec.default-1409496507151\prefs.js] - Line Deleted : user_pref("browser.search.defaultenginename", "mystartsearch");
[hm6mzjec.default-1409496507151\prefs.js] - Line Deleted : user_pref("browser.search.selectedEngine", "mystartsearch");
[hm6mzjec.default-1409496507151\prefs.js] - Line Deleted : user_pref("browser.startup.homepage", "hxxp://www.mystartsearch.com/?type=hp&ts=14142 ... 22A1342922");

-\\ Google Chrome v39.0.2171.71


-\\ Comodo Dragon v


*************************

AdwCleaner[R2].txt - [6611 octets] - [11/12/2014 13:20:20]
AdwCleaner[S2].txt - [5751 octets] - [11/12/2014 13:22:07]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [5811 octets] ##########

Re: Prosím o preventivku, děkuji

Napsal: 11 pro 2014 19:29
od altrok
:arrow: Nainstalujte MBAM a udelejte sken hrozeb - http://forum.viry.cz/viewtopic.php?f=29&t=137928
  • Vyjimecne nepostupujte presne podle navodu... pocitac nevypada nejak vyrazne zavirovany, takze postaci sken hrozeb (threat scan)