Prohlížeč plný reklam a vys. oken
Napsal: 15 úno 2015 12:59
Dobrý den mám problém,
prohlížeč je zanesen reklamami a nežádoucími vyskakovacími okny, pomozte mi prosím. A pokud možno mi sdělte z jakých programů ono nežádoucí svinstvo pochází děkuji předem.
RSIT log:Logfile of random's system information tool 1.10 (written by random/random)
Run by Matouskovi at 2015-02-15 12:55:25
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 7 GB (4%) free of 172 GB
Total RAM: 4030 MB (14% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:55:39, on 15.2.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Matouskovi.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/fwlink/?LinkID= ... om%2F&OSP=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: 71c6c330e74701318a6f0adb73eaa5ae0060804 - {11111111-1111-1111-1111-110611081104} - C:\Program Files (x86)\Radio Canyon\Radio Canyon-bho.dll
O2 - BHO: 166090e0f32601317e4e5118752c52d60061752 - {11111111-1111-1111-1111-110611171152} - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-bho.dll
O2 - BHO: TperfeectcoUpon - {14c33b96-8815-4889-ac5a-c8e22abc8fbd} - C:\ProgramData\TperfeectcoUpon\f8NjudZJR9w5Wn.dll
O2 - BHO: SaverAddon - {19766f37-672d-4037-b893-7b3d120febb9} - C:\ProgramData\SaverAddon\JFYEfkrFdqbdZB.dll
O2 - BHO: FFLExibleSShOuPpere - {2c069121-6399-4df6-a468-915a295e5b6f} - C:\Program Files (x86)\FFLExibleSShOuPpere\G2Cu0uNzY1ad1c.dll
O2 - BHO: (no name) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - (no file)
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Linkey - {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} - C:\Users\ESTERK~1\AppData\Local\Linkey\IEEXTE~1\iedll.dll
O2 - BHO: FineeDealSOffti - {50d8d9ec-a74b-4a3b-8c6b-7ed89d624aa2} - C:\ProgramData\FineeDealSOffti\887gkK92O1wEly.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ttoopdeal - {9a3c7949-e4de-4883-b8d4-4ea0f4c070b4} - C:\Program Files (x86)\ttoopdeal\89wejFNZEkUUK5.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: AppptoUo - {b3af377a-3d15-4510-8f78-59a13ed712de} - C:\ProgramData\AppptoUo\qkpaWlixFhdUvR.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll
O2 - BHO: savinshhop - {f1f7024a-77b2-4c52-9c3d-0144c7944261} - C:\Program Files (x86)\savinshhop\VRnibiJVLvRAmb.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [Sound Blaster Tactic3D Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe" /r
O4 - HKCU\..\Run: [TornTv Downloader] C:\Users\Matouskovi\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [SpyEmergency] "C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe"
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Steam] "D:\Program Files (x86)\Steam\Steam.exe" -silent (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [cz.seznam.software.szndesktop] "C:\Users\EsterkaPú\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [cz.seznam.software.autoupdate] "C:\Users\EsterkaPú\AppData\Roaming\Seznam.cz\szninstall.exe" -c (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [DAEMON Tools Lite] "D:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Pokki] C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1006\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1006\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: TornTvDownloader.lnk = Matouskovi\AppData\Roaming\TornTV.com\TornTV Downloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe
O9 - Extra 'Tools' menuitem: Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe
O9 - Extra button: (no name) - {64964764-1101-4bbd-8891-B56B1A53B9B3} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwar ... TSUEng.cab
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 5.11.0.cab
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwar ... PIDPDE.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\users\esterk~1\appdata\local\linkey\ieexte~1\iedll.dll c:\progra~3\intere~1\intere~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESL Wire Helper Service (EslWireHelper) - Unknown owner - C:\Program Files\EslWire\service\WireHelperSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - Unknown owner - D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (file missing)
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IePlugin Services (IePluginServices) - Unknown owner - C:\ProgramData\IePluginServices\PluginService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SmdmF Service (SmdmFService) - Unknown owner - C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15372 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\rundll32.exe" "c:\progra~3\intere~1\InterenetOptimizerSvc.dll",service
"C:\Windows\system32\rundll32.exe" "c:\progra~3\intere~1\InterenetOptimizerSvc.dll",service
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe"
"C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Windows\system32\rundll32.exe" Shell32.dll,Control_RunDLL mmsys.cpl
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2504
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {99A31920-1DEB-4AD4-9387-92A7DC0B9040}
"C:\Windows\system32\Dwm.exe"
taskhost.exe USER
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-6.exe" /rawdata=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
"C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-6.exe" /rawdata=JNn8sGm9uH4NNDPVzNSHm+kixuwX8jHYVpDCt+qfBsPuWezqQpQHejBUbFQ0CKVSfCzgIa1BEr4LRM7XML0K+sQA4ZxnCKRxTPKgoAk5hadH3YzWRiBP5I6MM98NMDf7/I21rpF60G+xP0EvZ0FWdkjUkFZHbwUufNgbLGrTdg4maxmOQBxdTIQUpT4lTh3fKJW9LsONJNf/zhtqpyRJmyT+yBrVx75GMWrd2PzN8Ud9HvAbr86qjEQsQfGUouhB5G9h4MxCbcqETeEZQ3cOStL0Noc4gD/zLkTKG+MZbQSoBRMVOiCxlxN/OvyqDleZXOP6Z/sHW3hZlCTlpv/OshRdtBicrA4/+sEqIwFyrytNcFti836YlFCEIOXNAOvxjz8GM5XFZ8GExK1Qfi100Pb1hKapvbFbPbn08rhJFPbEDlyvTDYluyFn8jraad9znsAX4LEwxC+ZniQMrjQOQRCC4AFgove7pEGXEoLqBuepVN3JSbowF2ebGABZ9Z4mDrzA9t3wlUn12HL+ZDre+o/KxFiEB1gfzhYNzbkNIIR3xK12sWnhu7YfPxrOHPKwMyPAJkai/MGgzNh6asFMfA+wu4XSLhRTMyzYyToQYIwIDeiIn7BXXCuvTvjXZW8lWsler2M1/7T025xKKxDK1T5DQps++eLx1qwkfdT390EQncTgVUrQEcuS7PDZ2kyWqbeVuZVx6pjIekuuDmGjLg1NCRNWZXqH05iiASSu5qmAlVapFskjyG/uAwLJwusuki0mx8DalNvq3OXDkHcV18YJnhirzIFEP3Gv9qHi7rz6q++iNSmr47RKYmgLu7ecQLlIApmrfnEQe5jtLsvCLA4CqTykFI7YlzrVbCrjoKdGqANTW9qedy7ISLgQS8CX26fKUpY5yP2Q1zAusoXMzFJBFZ1FHXJy5IQdcdRptClzS30nU/gbfoLtUMik3B+IQ9Gwk3xqpTziOdvdstpfwF86gmYS8cG48+wjcMrxyJRVNUKrX8NWyUSeLgoC0ZR2OkgXG2T99I6BGH/qVNMPheUx/LY3L3HrJQuKRhstszIySjCoGhRUYr8X3gO8NYl4h14ePWW+Fe3YxqxgJ89Tv85ITNedYaEkLE/Weh5z6GtPCVYLlkg4f5neHdXWfSkzyA/MFxM6g7Sdbc9DCxMWluUMwRPgRd9bYJhbwLR7l6a7zPEQKAXNge99rlx+uK/D/hTHzp20Ba+VbLpTexFtKiVwkka4nZqDAaIWI3vBhZMNF5AQv+r+Q39PFzwrn7JsH2xlKKL+RGGGAxYbFdHokZlIcltQz61xqxG5PsoMo9AH9BbKQjroLWz4rQmUvuF1vr6j/SG3JXAURQQ5buKQNgFUxnb0Qvo/QlfKQFatb+iDJ9bXSV5WtLx5R3RA3uodlXlYw/K9N8BHlxqEmn+LmQDj6kSKssbUy+ABeukN94V9NzlR47/DGdtMFYPqZnQOk7Ui5TZatiTWYm0aI/6/rMrI7YXoczUxUucvPgGBMnF4WoDBf+uV++H3pxum3G7tU+yihc2B6NHuD/1Sy3GwY6SFScvfOWdL37Afum50S0FS+CuXCEWJRim33Mu5qNkOgneBdZyxW3VXuU8WREpcW0RTFg9XgmVNDByXtMfgKFrTDLu1UMEl2cYh9y0iFd7FzA90tezJLf6qeLo2iLTUPENV43WJet6f7n2v6sFoZ7CqgDC2Myr1ZdYqejj93F1qHe/44QuD09yIxQrWdUAxH/9OY62GSBZ6V9wXMizkxlI+2f6vrsJ23n3x5+s6EBQ1qDOWmaOCSvbqtprlc9rOt733ofFZxk35uMcFOS8gLVOGxpz6qLO1omhwInJYmJzDyTSzt8zD0hkvlnRv5nAFjw==
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe"
"C:\Program Files\Classic Shell\ClassicStartMenu.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"D:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
szndesktop.exe default start
"C:\Users\EsterkaPú\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "1939768837-271846909-19001880001998235223-849775909-643822203-1371851859-1662263585
"C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe" /r
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "13101401781594872229-161987396470795086355454884-1978665398896734291-1323964320
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"D:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "D:\Program Files (x86)\Steam\config\htmlcache" -cookiepath "D:\Program Files (x86)\Steam\config\cookies" -steampid 3800 --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3840.0.81491915\1892320675" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x11c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3523 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/NewProfileManagement/Enabled/PasswordGeneration/Disabled/Prerender/PrerenderMulti/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_86/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3840.2.1956315291\884438187" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3840.10.1169360821\1126298508" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/NewProfileManagement/Enabled/PasswordGeneration/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_86/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3840.17.1291896134\1907919682" /prefetch:673131151
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/NewProfileManagement/Enabled/PasswordGeneration/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_86/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3840.22.1044524961\1485619130" /prefetch:673131151
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Classic Shell\ClassicStartMenu.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
taskeng.exe {05AB1DC8-7154-41F6-8860-357757DE58D8}
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7236.0.1801545879\829925851" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x11c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3523 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.2.1361788346\1438561450" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.3.498049779\1168291404" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.4.146380297\956750085" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="7236.7.1455674759\343450826" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.9.588316000\752592473" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Matouskovi\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-1.job - C:\Program Files (x86)\Radio Canyon\Radio Canyon-codedownloader.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-11.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-11.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-4.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-4.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-5.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-5.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-5_user.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-5.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-6.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-6.exe /rawdata=JNn8sGm9uH4NNDPVzNSHm+kixuwX8jHYVpDCt+qfBsPuWezqQpQHejBUbFQ0CKVSfCzgIa1BEr4LRM7XML0K+sQA4ZxnCKRxTPKgoAk5hadH3YzWRiBP5I6MM98NMDf7/I21rpF60G+xP0EvZ0FWdkjUkFZHbwUufNgbLGrTdg4maxmOQBxdTIQUpT4lTh3fKJW9LsONJNf/zhtqpyRJmyT+yBrVx75GMWrd2PzN8Ud9HvAbr86qjEQsQfGUouhB5G9h4MxCbcqETeEZQ3cOStL0Noc4gD/zLkTKG+MZbQSoBRMVOiCxlxN/OvyqDleZXOP6Z/sHW3hZlCTlpv/OshRdtBicrA4/+sEqIwFyrytNcFti836YlFCEIOXNAOvxjz8GM5XFZ8GExK1Qfi100Pb1hKapvbFbPbn08rhJFPbEDlyvTDYluyFn8jraad9znsAX4LEwxC+ZniQMrjQOQRCC4AFgove7pEGXEoLqBuepVN3JSbowF2ebGABZ9Z4mDrzA9t3wlUn12HL+ZDre+o/KxFiEB1gfzhYNzbkNIIR3xK12sWnhu7YfPxrOHPKwMyPAJkai/MGgzNh6asFMfA+wu4XSLhRTMyzYyToQYIwIDeiIn7BXXCuvTvjXZW8lWsler2M1/7T025xKKxDK1T5DQps++eLx1qwkfdT390EQncTgVUrQEcuS7PDZ2kyWqbeVuZVx6pjIekuuDmGjLg1NCRNWZXqH05iiASSu5qmAlVapFskjyG/uAwLJwusuki0mx8DalNvq3OXDkHcV18YJnhirzIFEP3Gv9qHi7rz6q++iNSmr47RKYmgLu7ecQLlIApmrfnEQe5jtLsvCLA4CqTykFI7YlzrVbCrjoKdGqANTW9qedy7ISLgQS8CX26fKUpY5yP2Q1zAusoXMzFJBFZ1FHXJy5IQdcdRptClzS30nU/gbfoLtUMik3B+IQ9Gwk3xqpTziOdvdstpfwF86gmYS8cG48+wjcMrxyJRVNUKrX8NWyUSeLgoC0ZR2OkgXG2T99I6BGH/qVNMPheUx/LY3L3HrJQuKRhstszIySjCoGhRUYr8X3gO8NYl4h14ePWW+Fe3YxqxgJ89Tv85ITNedYaEkLE/Weh5z6GtPCVYLlkg4f5neHdXWfSkzyA/MFxM6g7Sdbc9DCxMWluUMwRPgRd9bYJhbwLR7l6a7zPEQKAXNge99rlx+uK/D/hTHzp20Ba+VbLpTexFtKiVwkka4nZqDAaIWI3vBhZMNF5AQv+r+Q39PFzwrn7JsH2xlKKL+RGGGAxYbFdHokZlIcltQz61xqxG5PsoMo9AH9BbKQjroLWz4rQmUvuF1vr6j/SG3JXAURQQ5buKQNgFUxnb0Qvo/QlfKQFatb+iDJ9bXSV5WtLx5R3RA3uodlXlYw/K9N8BHlxqEmn+LmQDj6kSKssbUy+ABeukN94V9NzlR47/DGdtMFYPqZnQOk7Ui5TZatiTWYm0aI/6/rMrI7YXoczUxUucvPgGBMnF4WoDBf+uV++H3pxum3G7tU+yihc2B6NHuD/1Sy3GwY6SFScvfOWdL37Afum50S0FS+CuXCEWJRim33Mu5qNkOgneBdZyxW3VXuU8WREpcW0RTFg9XgmVNDByXtMfgKFrTDLu1UMEl2cYh9y0iFd7FzA90tezJLf6qeLo2iLTUPENV43WJet6f7n2v6sFoZ7CqgDC2Myr1ZdYqejj93F1qHe/44QuD09yIxQrWdUAxH/9OY62GSBZ6V9wXMizkxlI+2f6vrsJ23n3x5+s6EBQ1qDOWmaOCSvbqtprlc9rOt733ofFZxk35uMcFOS8gLVOGxpz6qLO1omhwInJYmJzDyTSzt8zD0hkvlnRv5nAFjw==
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-7.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-7.exe /rawdata=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
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-1.job - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-11.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-11.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-4.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-4.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5_user.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-6.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-6.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-7.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-7.exe /rawdata=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
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Matouskovi\AppData\Roaming\Mozilla\Firefox\Profiles\smscr827.default
prefs.js - "browser.startup.homepage" - "http://search.gboxapp.com/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@raidcall.en/RCplugin]
"Description"=Raidcall plugin
"Path"=C:\Users\EsterkaPú\AppData\Roaming\raidcall\plugins\nprcplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Users\Matouskovi\AppData\Roaming\Mozilla\Firefox\Profiles\smscr827.default\extensions\
1853a82e-ce44-4a8c-a6fe-9bcf74a65575@4b6b1c16-5f0a-4ef0-866f-b063e235ef97.com
a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com
bjEWFzQQnQ@2.com
faststartff@gmail.com
H@WMwGwZjR.org
h@Zo3VB0.org
j88uM@vlXeY.org
jaHk@K.edu
Pk8aU@Ufp0H0.edu
RK@hFGbCFuJN.net
sepherdwilbur@aol.com
skipcerterror@foudil.fr
staged
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611081104}]
Radio Canyon - C:\Program Files (x86)\Radio Canyon\Radio Canyon-bho64.dll [2014-10-27 822176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
Internet Speed Checker - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-bho64.dll [2015-01-07 946656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14c33b96-8815-4889-ac5a-c8e22abc8fbd}]
TperfeectcoUpon - C:\ProgramData\TperfeectcoUpon\f8NjudZJR9w5Wn.x64.dll [2015-01-06 697856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{19766f37-672d-4037-b893-7b3d120febb9}]
SaverAddon - C:\ProgramData\SaverAddon\JFYEfkrFdqbdZB.x64.dll [2014-12-29 654336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c069121-6399-4df6-a468-915a295e5b6f}]
FFLExibleSShOuPpere - C:\Program Files (x86)\FFLExibleSShOuPpere\G2Cu0uNzY1ad1c.x64.dll [2015-02-08 708096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2013-06-29 724992]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}]
Linkey - C:\Users\EsterkaPú\AppData\Local\Linkey\IEExtension\iedll64.dll [2014-08-31 202256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50d8d9ec-a74b-4a3b-8c6b-7ed89d624aa2}]
FineeDealSOffti - C:\ProgramData\FineeDealSOffti\887gkK92O1wEly.x64.dll [2015-01-06 697856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9a3c7949-e4de-4883-b8d4-4ea0f4c070b4}]
ttoopdeal - C:\Program Files (x86)\ttoopdeal\89wejFNZEkUUK5.x64.dll [2015-01-28 699904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-03-21 6270336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b3af377a-3d15-4510-8f78-59a13ed712de}]
AppptoUo - C:\ProgramData\AppptoUo\qkpaWlixFhdUvR.x64.dll [2015-01-18 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIE9BHO Class - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll [2013-06-29 437760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f1f7024a-77b2-4c52-9c3d-0144c7944261}]
savinshhop - C:\Program Files (x86)\savinshhop\VRnibiJVLvRAmb.x64.dll [2015-01-28 699904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611081104}]
Radio Canyon - C:\Program Files (x86)\Radio Canyon\Radio Canyon-bho.dll [2014-10-27 607648]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
Internet Speed Checker - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-bho.dll [2015-01-07 620512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14c33b96-8815-4889-ac5a-c8e22abc8fbd}]
TperfeectcoUpon - C:\ProgramData\TperfeectcoUpon\f8NjudZJR9w5Wn.dll [2015-01-06 562688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{19766f37-672d-4037-b893-7b3d120febb9}]
SaverAddon - C:\ProgramData\SaverAddon\JFYEfkrFdqbdZB.dll [2014-12-29 512512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c069121-6399-4df6-a468-915a295e5b6f}]
FFLExibleSShOuPpere - C:\Program Files (x86)\FFLExibleSShOuPpere\G2Cu0uNzY1ad1c.dll [2015-02-08 564736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-06-29 594432]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}]
Linkey - C:\Users\ESTERK~1\AppData\Local\Linkey\IEEXTE~1\iedll.dll [2014-08-31 175632]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50d8d9ec-a74b-4a3b-8c6b-7ed89d624aa2}]
FineeDealSOffti - C:\ProgramData\FineeDealSOffti\887gkK92O1wEly.dll [2015-01-06 562688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-11-01 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9a3c7949-e4de-4883-b8d4-4ea0f4c070b4}]
ttoopdeal - C:\Program Files (x86)\ttoopdeal\89wejFNZEkUUK5.dll [2015-01-28 561664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-03-21 4502400]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b3af377a-3d15-4510-8f78-59a13ed712de}]
AppptoUo - C:\ProgramData\AppptoUo\qkpaWlixFhdUvR.dll [2015-01-18 566272]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-11-01 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIE9BHO Class - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll [2013-06-29 367616]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f1f7024a-77b2-4c52-9c3d-0144c7944261}]
savinshhop - C:\Program Files (x86)\savinshhop\VRnibiJVLvRAmb.dll [2015-01-28 561664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2013-06-29 724992]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-06-29 594432]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2013-06-29 151552]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]
"LogMeIn GUI"=C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [2011-09-16 57928]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TornTv Downloader"=C:\Users\Matouskovi\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup []
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe [2013-10-03 3231032]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ESL Wire]
C:\Program Files\EslWire\wire.exe --tray []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msvdbufSrv]
C:\Windows\system32\msvdbuf.vbe mskviy mssdxk []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-11-08 1028384]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess]
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RaidCall]
C:\Program Files (x86)\RaidCall\raidcall.exe [2013-05-27 3428024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Razer Synapse]
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-03-11 444760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2013-11-08 1064224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-10-01 22059616]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
D:\Program Files (x86)\Steam\Steam.exe [2015-01-23 1942720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Sound Blaster Tactic3D Control Panel"=C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe [2014-07-03 2091008]
C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
TornTvDownloader.lnk - C:\Users\Matouskovi\AppData\Roaming\TornTV.com\TornTV Downloader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Users\ESTERK~1\AppData\Local\Linkey\IEEXTE~1\iedll64.dll C:\PROGRA~3\INTERE~1\INTERE~2.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.FPS1"=frapsv64.dll
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-02-15 12:55:25 ----D---- C:\rsit
2015-02-15 12:55:25 ----D---- C:\Program Files\trend micro
2015-02-10 11:35:41 ----D---- C:\ProgramData\ChampionDeals
2015-02-08 11:05:52 ----D---- C:\Program Files (x86)\FFLExibleSShOuPpere
2015-02-08 11:05:42 ----D---- C:\Program Files (x86)\SMeAartCOmpare
2015-02-08 11:05:37 ----D---- C:\Program Files (x86)\Bubble Elements
2015-02-07 17:05:16 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2015-02-03 18:13:02 ----D---- C:\ProgramData\SuperManCoupon
2015-01-28 13:51:45 ----D---- C:\Program Files (x86)\saveoRoinn
2015-01-28 13:51:10 ----D---- C:\ProgramData\clfaldpgocbhophahlbklehlilcogebk
2015-01-28 13:51:04 ----D---- C:\Program Files (x86)\One Number
2015-01-28 13:30:44 ----D---- C:\Program Files (x86)\savinshhop
2015-01-28 13:30:32 ----D---- C:\Program Files (x86)\ttoopdeal
2015-01-18 13:18:11 ----D---- C:\ProgramData\AppptoUo
======List of files/folders modified in the last 1 month======
2015-02-15 12:55:25 ----RD---- C:\Program Files
2015-02-15 12:55:04 ----D---- C:\Windows\temp
2015-02-15 12:19:28 ----D---- C:\Windows\system32\Tasks
2015-02-15 11:49:59 ----D---- C:\Windows\system32\config
2015-02-15 11:21:49 ----D---- C:\Windows\System32
2015-02-15 11:21:49 ----D---- C:\Windows\inf
2015-02-15 11:21:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-15 11:15:35 ----D---- C:\ProgramData\NVIDIA
2015-02-14 20:29:56 ----D---- C:\Program Files (x86)\Opera
2015-02-13 19:12:39 ----SHD---- C:\System Volume Information
2015-02-11 20:18:33 ----D---- C:\Windows\SysWOW64
2015-02-11 20:18:19 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-02-11 16:51:33 ----D---- C:\Windows\system32\NDF
2015-02-10 11:35:41 ----D---- C:\ProgramData
2015-02-10 11:17:26 ----D---- C:\Windows\system32\catroot2
2015-02-08 11:06:00 ----D---- C:\ProgramData\14747293520112485990UL
2015-02-08 11:05:52 ----RD---- C:\Program Files (x86)
2015-02-07 17:08:24 ----D---- C:\ProgramData\FineeDealSOffti
2015-02-07 17:05:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-01-29 19:37:12 ----D---- C:\ProgramData\TperfeectcoUpon
2015-01-25 17:44:37 ----D---- C:\Users\Matouskovi\AppData\Roaming\TS3Client
2015-01-22 17:47:49 ----D---- C:\Users\Matouskovi\AppData\Roaming\Spy Emergency
2015-01-18 13:19:04 ----D---- C:\ProgramData\cca8e95270b98666
2015-01-17 18:59:50 ----D---- C:\Users\Matouskovi\AppData\Roaming\Skype
2015-01-16 16:35:47 ----D---- C:\Users\Matouskovi\AppData\Roaming\.minecraft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 RzFilter;RzFilter; C:\Windows\system32\drivers\RzFilter.sys [2014-02-21 74432]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-11-09 386680]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-11-10 283064]
R1 SpyEmrg;Spy Emergency Driver; C:\Windows\System32\Drivers\spyemrg.sys [2011-04-21 17240]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [2013-12-11 16056]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\Windows\system32\drivers\LMIRfsDriver.sys [2011-09-16 72216]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys [2011-09-16 11552]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-03-20 197408]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-09-28 39200]
R3 SpyEmrgGuard;Spy Emergency Real-Time Shield Driver; C:\Windows\System32\Drivers\spyemrg_guard.sys [2011-04-21 18776]
S1 F06DEFF2-5B9C-490D-910F-35D3A9119622;F06DEFF2-5B9C-490D-910F-35D3A9119622; \??\C:\Program Files (x86)\Settings Manager\smdmf\x64\smdmfmgrc2.cfg []
S3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2009-04-23 497152]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SpyEmrgAccess;Spy Emergency OnAccess Driver; C:\Windows\System32\Drivers\spyemrg_access.sys [2011-04-21 24408]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 UHSfiltv;UHSfiltv; C:\Windows\system32\drivers\UHSfiltv.sys [2013-05-31 23552]
S3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
S4 LMIRfsClientNP;LMIRfsClientNP; C:\Windows\system32\drivers\LMIRfsClientNP.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 0c632643;Interenet Optimizer; C:\Windows\syswow64\rundll32.exe [2009-07-14 44544]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2011-10-19 423424]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2014-08-22 9216]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [2014-11-03 376168]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-11-08 15125280]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-04 922968]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-11-08 1914656]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-07-22 76888]
R2 SpyEmrgSrv;Spy Emergency Engine Service; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe [2013-03-11 3284008]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2015-02-09 5249808]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-01-23 834752]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 EslWireHelper;ESL Wire Helper Service; C:\Program Files\EslWire\service\WireHelperSvc.exe []
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-07 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-14 116648]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -s []
S2 IePluginServices;IePlugin Services; C:\ProgramData\IePluginServices\PluginService.exe -service []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S2 SmdmFService;SmdmF Service; C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-07 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-08-13 448384]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-07 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-14 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-11-07 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
prohlížeč je zanesen reklamami a nežádoucími vyskakovacími okny, pomozte mi prosím. A pokud možno mi sdělte z jakých programů ono nežádoucí svinstvo pochází děkuji předem.
RSIT log:Logfile of random's system information tool 1.10 (written by random/random)
Run by Matouskovi at 2015-02-15 12:55:25
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 7 GB (4%) free of 172 GB
Total RAM: 4030 MB (14% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:55:39, on 15.2.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Matouskovi.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/fwlink/?LinkID= ... om%2F&OSP=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: 71c6c330e74701318a6f0adb73eaa5ae0060804 - {11111111-1111-1111-1111-110611081104} - C:\Program Files (x86)\Radio Canyon\Radio Canyon-bho.dll
O2 - BHO: 166090e0f32601317e4e5118752c52d60061752 - {11111111-1111-1111-1111-110611171152} - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-bho.dll
O2 - BHO: TperfeectcoUpon - {14c33b96-8815-4889-ac5a-c8e22abc8fbd} - C:\ProgramData\TperfeectcoUpon\f8NjudZJR9w5Wn.dll
O2 - BHO: SaverAddon - {19766f37-672d-4037-b893-7b3d120febb9} - C:\ProgramData\SaverAddon\JFYEfkrFdqbdZB.dll
O2 - BHO: FFLExibleSShOuPpere - {2c069121-6399-4df6-a468-915a295e5b6f} - C:\Program Files (x86)\FFLExibleSShOuPpere\G2Cu0uNzY1ad1c.dll
O2 - BHO: (no name) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - (no file)
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Linkey - {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} - C:\Users\ESTERK~1\AppData\Local\Linkey\IEEXTE~1\iedll.dll
O2 - BHO: FineeDealSOffti - {50d8d9ec-a74b-4a3b-8c6b-7ed89d624aa2} - C:\ProgramData\FineeDealSOffti\887gkK92O1wEly.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ttoopdeal - {9a3c7949-e4de-4883-b8d4-4ea0f4c070b4} - C:\Program Files (x86)\ttoopdeal\89wejFNZEkUUK5.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: AppptoUo - {b3af377a-3d15-4510-8f78-59a13ed712de} - C:\ProgramData\AppptoUo\qkpaWlixFhdUvR.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll
O2 - BHO: savinshhop - {f1f7024a-77b2-4c52-9c3d-0144c7944261} - C:\Program Files (x86)\savinshhop\VRnibiJVLvRAmb.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [Sound Blaster Tactic3D Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe" /r
O4 - HKCU\..\Run: [TornTv Downloader] C:\Users\Matouskovi\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [SpyEmergency] "C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe"
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Steam] "D:\Program Files (x86)\Steam\Steam.exe" -silent (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [cz.seznam.software.szndesktop] "C:\Users\EsterkaPú\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [cz.seznam.software.autoupdate] "C:\Users\EsterkaPú\AppData\Roaming\Seznam.cz\szninstall.exe" -c (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [DAEMON Tools Lite] "D:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Pokki] C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1003\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'EsterkaPú')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1006\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1528716315-3860698994-2152196103-1006\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: TornTvDownloader.lnk = Matouskovi\AppData\Roaming\TornTV.com\TornTV Downloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe
O9 - Extra 'Tools' menuitem: Classic IE9 Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE9_32.exe
O9 - Extra button: (no name) - {64964764-1101-4bbd-8891-B56B1A53B9B3} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwar ... TSUEng.cab
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 5.11.0.cab
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwar ... PIDPDE.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\users\esterk~1\appdata\local\linkey\ieexte~1\iedll.dll c:\progra~3\intere~1\intere~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESL Wire Helper Service (EslWireHelper) - Unknown owner - C:\Program Files\EslWire\service\WireHelperSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - Unknown owner - D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (file missing)
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: IePlugin Services (IePluginServices) - Unknown owner - C:\ProgramData\IePluginServices\PluginService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SmdmF Service (SmdmFService) - Unknown owner - C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15372 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\rundll32.exe" "c:\progra~3\intere~1\InterenetOptimizerSvc.dll",service
"C:\Windows\system32\rundll32.exe" "c:\progra~3\intere~1\InterenetOptimizerSvc.dll",service
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe"
"C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Windows\system32\rundll32.exe" Shell32.dll,Control_RunDLL mmsys.cpl
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2504
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {99A31920-1DEB-4AD4-9387-92A7DC0B9040}
"C:\Windows\system32\Dwm.exe"
taskhost.exe USER
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-6.exe" /rawdata=TpJk1pDDi3/YlSjbXkp9obqQVhdfqEHaW17tdaJNQJwSSFQIvlVhv3g8kNX50rW74lNAVyAEGXL20gscQUl+P7sH1gH/KE+d3KCcpJh8Dvew85K28xLGygPRRJYapsAZ/gKtIKLd+NP5Q7zWbc+cl6CCTRKd1EMq6f79MxcOHYV5ugU1/wweBfWNlnxxLFXlrdW3swd7JnhJZv05rvnBbZMcJ3TD5ikyoul729IDA0GfHaC26z5MTZ7HFQ7EgZMXm1V+Q9Y97V8uRgn5J2Ye3dthtOEDMWSGQxCz7mqgmdsHh0vtAFtRxZrM4X/j1nmsVpE/etnBSyqifuBiP4aWpq3EtY7/WcBkd4dgBXkz2sUVsGziZrR6Y/zkfWVMI7aEIBNuIAy+HzO5ZcDIoKaWUsUHIXYpkLDWEPMkgUaQ/NFm9NR6hKDhl+BgDHXi6WAP9Wy5FnOzyomKDRHDTLbHAN688BKZvRqraK/k070sj5w/hzKoL3efyu3/7tUYnEVleg33aBFoNYZHLwRMstHFeamK5XWg9NP0hqESfvPjT3Eb+pv/LyhB4tNTcU3EmexleKZVfeCAz7/OF+5sE/5WVahQMohKjX5Lt+6PwrQpu6AlpToylGYqGDZ004rGS1eTaMtzW6hdXnL/ZdUdijEz+i71hK+qYU7PXhgBiBJvJDeknnObL+wT8H5NBuMiEqXc3dVmz7iePspD5/SVbI1GwQOcU1OHV3xASxrm5kozyTFwv9P9ZJFKpv7bJYqF+vRfaJ1LASGFG1/FCkvXeEofCu62rRnkorwfG081qUOWG9jxc7UIPoYi47fF/cZWTvWhL7G4HQacm6/4/D523q6p5rOMPBc9i4pjZVLvj+1sk/8FPT7SfVwz2Dr03gotQOAg4Zkk/XcCVNVabDbwpDo8OH3AEnJAywnyCdL0ZtS3GZJft5S23GcFFGCrQ16GvKq7qTjbNMZE9hFT1ZjzCwj7BkMiDtI3h+zWpc3wBt6H2jFwUlWMoLsmBbQPSfk4f+dRrCrpJLvJGSWGAhia0vSNDYp9I3n8jPuax+sOi4jTK9NpjNI+HEN4OXhHQCgZoVdYKGiz1fvH1Rbmy+r8HjdQAUwp61jitD0LhS0ZtPJxDpx+bwQoiMI+5KoZCnA0a+fxngk+QHo/1SwkOhLDxOo5Cv3PYVaSeSkSq0co6PtlKSe4dE9p6OxfkUZXJ1CykJDsbqY+5uorCZwZXy2Vz3s4XG3OEOCb9PS3jNqL/edzvuU7rnOMcoU4Y8YWMiBe1h8j4jPrPcRXduYe1E0DGSfVmuUBq2nOr4EUsv56cjTTqVuqXEclPkzwSUR6Uz0SEmN/tD80RsRrpO+ya+eLNWgaoZUeSlVFYackEZZo06a3zptIoDmfD53Sp7a5Hkz5j5zSveJOpCuznv5D2hRzMg1h3f0Kv/GE0ydXS+x03yoZuZEQkf6NRgGwcYtGBtLFk3FhnaQYMfKNqPmtDGhr01dq1Yc9JvmRWcrKwMr57tdSvVyjNDa8L6/j4SRL+8JKEnKRTo+WrA5I6ebvM1A1LQpAhbnLIdi92N6iAhMw/1s3P6mV1TC85uosqOq1Z3fIJyw5k3J6nXDQIdbN2SEYlCUDcvgdEZPWwoToyzLWsjTS8A5ax731S+uclgEB5SYp0j4/PQOXBxqxgIvDaLn9SbIGPqZ9hpJynZxFcQ+Qa2xZtBtdNITQeqORmGsFO+97V5DG8Ziux60oaquXDayzDJVWwKvbnAFJsepIXj22Bra+6q+YD1+6uQ+3UCRsPC8ow3qGfEhuhBNiow8VTQsuCIDaL4SLVocQhl1AM23SJl5hv9eR1h0KvBtF+SXalRGt4oZLkORUD6pT07IGx1GDhi35lyYaFjMg1ZX5FisEkrLOxjKZ2bf5niMT0Gj6JqMZF4JnVcDabCEJVCW325EoSa/r8bpUcPVuLaLT6qO/k0qRacgsyli1JIsfBzAVTUceBJERJ9X6D9D8l14/WBKZSX7oNd5I40skVpGmduH00M0JmNF52bRsnHBnpAzm0bwrtt4DLOl+0EHnuUzqREDnyliPmNyR0FplLoNxw7cE1ZyomLQ0VHnG81/plnfMcBQ1p6X1H7JbuYiURqtwBK7bnEGq+XIjVvBeHmB+4mhcBaZM/PQ8ZmgnrKhJ1Tee5VYgqVHbpWBuDXUQLmGuNqpnPGXtYfgtePS46moJuZXP/xBj2Hddq4tqWT6lRHIAklewYfLV8IixdeuTYAJnVbz1/tSTb/hAaDVNUemj4nlzx685bQrYJ8I3uKPHs1zK7izpC95vHQut/er1EbFZX2wJZIM/PgRLolyi/2AZ3Z4/YGYYTxbJqjtCFBJv2WIXhfmG5iqo+kROG+OwrCnaQRp+jqwJulZ1Da/I5gjnv/oLN11ksmgtTI9uHwNAuADc797N89Gh5FiuFb4suqqcXfMw5TwIllu2iTm2K9gDc151EQjP1HBimkR26JYJBT/egLmPHdLcS6PLJgc6MWzZ/G7EaA7nx+JTgGMUekOxYDmQKVYqKI1KJ42Zx545MkJ8cSPHgfxv
"C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-6.exe" /rawdata=JNn8sGm9uH4NNDPVzNSHm+kixuwX8jHYVpDCt+qfBsPuWezqQpQHejBUbFQ0CKVSfCzgIa1BEr4LRM7XML0K+sQA4ZxnCKRxTPKgoAk5hadH3YzWRiBP5I6MM98NMDf7/I21rpF60G+xP0EvZ0FWdkjUkFZHbwUufNgbLGrTdg4maxmOQBxdTIQUpT4lTh3fKJW9LsONJNf/zhtqpyRJmyT+yBrVx75GMWrd2PzN8Ud9HvAbr86qjEQsQfGUouhB5G9h4MxCbcqETeEZQ3cOStL0Noc4gD/zLkTKG+MZbQSoBRMVOiCxlxN/OvyqDleZXOP6Z/sHW3hZlCTlpv/OshRdtBicrA4/+sEqIwFyrytNcFti836YlFCEIOXNAOvxjz8GM5XFZ8GExK1Qfi100Pb1hKapvbFbPbn08rhJFPbEDlyvTDYluyFn8jraad9znsAX4LEwxC+ZniQMrjQOQRCC4AFgove7pEGXEoLqBuepVN3JSbowF2ebGABZ9Z4mDrzA9t3wlUn12HL+ZDre+o/KxFiEB1gfzhYNzbkNIIR3xK12sWnhu7YfPxrOHPKwMyPAJkai/MGgzNh6asFMfA+wu4XSLhRTMyzYyToQYIwIDeiIn7BXXCuvTvjXZW8lWsler2M1/7T025xKKxDK1T5DQps++eLx1qwkfdT390EQncTgVUrQEcuS7PDZ2kyWqbeVuZVx6pjIekuuDmGjLg1NCRNWZXqH05iiASSu5qmAlVapFskjyG/uAwLJwusuki0mx8DalNvq3OXDkHcV18YJnhirzIFEP3Gv9qHi7rz6q++iNSmr47RKYmgLu7ecQLlIApmrfnEQe5jtLsvCLA4CqTykFI7YlzrVbCrjoKdGqANTW9qedy7ISLgQS8CX26fKUpY5yP2Q1zAusoXMzFJBFZ1FHXJy5IQdcdRptClzS30nU/gbfoLtUMik3B+IQ9Gwk3xqpTziOdvdstpfwF86gmYS8cG48+wjcMrxyJRVNUKrX8NWyUSeLgoC0ZR2OkgXG2T99I6BGH/qVNMPheUx/LY3L3HrJQuKRhstszIySjCoGhRUYr8X3gO8NYl4h14ePWW+Fe3YxqxgJ89Tv85ITNedYaEkLE/Weh5z6GtPCVYLlkg4f5neHdXWfSkzyA/MFxM6g7Sdbc9DCxMWluUMwRPgRd9bYJhbwLR7l6a7zPEQKAXNge99rlx+uK/D/hTHzp20Ba+VbLpTexFtKiVwkka4nZqDAaIWI3vBhZMNF5AQv+r+Q39PFzwrn7JsH2xlKKL+RGGGAxYbFdHokZlIcltQz61xqxG5PsoMo9AH9BbKQjroLWz4rQmUvuF1vr6j/SG3JXAURQQ5buKQNgFUxnb0Qvo/QlfKQFatb+iDJ9bXSV5WtLx5R3RA3uodlXlYw/K9N8BHlxqEmn+LmQDj6kSKssbUy+ABeukN94V9NzlR47/DGdtMFYPqZnQOk7Ui5TZatiTWYm0aI/6/rMrI7YXoczUxUucvPgGBMnF4WoDBf+uV++H3pxum3G7tU+yihc2B6NHuD/1Sy3GwY6SFScvfOWdL37Afum50S0FS+CuXCEWJRim33Mu5qNkOgneBdZyxW3VXuU8WREpcW0RTFg9XgmVNDByXtMfgKFrTDLu1UMEl2cYh9y0iFd7FzA90tezJLf6qeLo2iLTUPENV43WJet6f7n2v6sFoZ7CqgDC2Myr1ZdYqejj93F1qHe/44QuD09yIxQrWdUAxH/9OY62GSBZ6V9wXMizkxlI+2f6vrsJ23n3x5+s6EBQ1qDOWmaOCSvbqtprlc9rOt733ofFZxk35uMcFOS8gLVOGxpz6qLO1omhwInJYmJzDyTSzt8zD0hkvlnRv5nAFjw==
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe"
"C:\Program Files\Classic Shell\ClassicStartMenu.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"D:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
szndesktop.exe default start
"C:\Users\EsterkaPú\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "1939768837-271846909-19001880001998235223-849775909-643822203-1371851859-1662263585
"C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe" /r
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "13101401781594872229-161987396470795086355454884-1978665398896734291-1323964320
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"D:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "D:\Program Files (x86)\Steam\config\htmlcache" -cookiepath "D:\Program Files (x86)\Steam\config\cookies" -steampid 3800 --blacklist-accelerated-compositing --process-per-tab --disable-accelerated-video-decode --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3840.0.81491915\1892320675" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x11c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3523 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/NewProfileManagement/Enabled/PasswordGeneration/Disabled/Prerender/PrerenderMulti/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_86/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3840.2.1956315291\884438187" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3840.10.1169360821\1126298508" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/NewProfileManagement/Enabled/PasswordGeneration/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_86/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3840.17.1291896134\1907919682" /prefetch:673131151
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/ControlEnforce/ExtensionInstallVerification/None/NewProfileManagement/Enabled/PasswordGeneration/Disabled/Prerender/PrerenderMulti/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_03/UMA-Uniformity-Trial-1-Percent/group_86/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="3840.22.1044524961\1485619130" /prefetch:673131151
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Classic Shell\ClassicStartMenu.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
taskeng.exe {05AB1DC8-7154-41F6-8860-357757DE58D8}
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyWow64.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7236.0.1801545879\829925851" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17,38,46 --gpu-vendor-id=0x10de --gpu-device-id=0x11c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3523 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.2.1361788346\1438561450" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.3.498049779\1168291404" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.4.146380297\956750085" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="7236.7.1455674759\343450826" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --test-type --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Control/DomRel-Enable/enable/EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Bootstrap/NewProfileManagement/Enabled/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/RememberCertificateErrorDecisions/OneDay/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Enabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_81/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/WebRTC-IPv6Default/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --extensions-on-chrome-urls --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="7236.9.588316000\752592473" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Matouskovi\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-1.job - C:\Program Files (x86)\Radio Canyon\Radio Canyon-codedownloader.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-11.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-11.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-4.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-4.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-5.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-5.exe /rawdata=SksZYZH9AK0WVVZLfbdjapCiHq4sh/szp9/odHNJ2j0fvg7okK82TeXpHL5Tto1+K/aISRrqYO1SJk+jSjPCBgIDKwTyJ7H2WyakO5KAdHuCKgCcNdwlvLSTO61zJv0FDl1ezRXDRc12pn4ywErQNjQhEMethFaw1hmLuo7EwBtwuHbM8eS0WDqGwILB7pm1rWEUp8ZTPcg+BNHdsVDECb5mqQQaUoXsHwS1ygZWubXPnfVM8GjvK2la92DGrf5Z/ltW98Wz48ZIUFQM2skco0oPaRr5rCY5WU245MhwBgJbWS3a6+YeV55CqJpu2l6nPGe5zttdAkcNHV96w1SN8Kw87y2MWiYKahI1QJV0byO6D5xtUXcNJkgxMc32XiLBoylK86ZFLVmZ8/WFwLoH54VQtNYNJQEBlCfJqLV/V5zCAd3WGHodqA4QaqYXaHPipdZvG8IRqJ2CGw/vC7HjC13kLVuV+MvyFU9QCijVi0gp1PdgBS5846PZAh2IQbDatrnqplr9M96yVpmvBCngqxnukG4Lh0wLbJX3jMb2pMGMwoVVf0vLg25WQGeLh6vuts8wWVpQ5heLsEUEcdNhjtu8nmkGGe986vlNXYbkPvD3crwMaKz36ZHLrBhggWHLf/WE57LzSEZAe8GIkHydB2sz0zsG5ekGJb9P3I63P82/mCkyOZgg/e/PZ3M2EjWf8btrEWUtG8fyy27rIUa/aPCXs+BMoITXiJmbM2BYdJP9OeFU8QAv0y4r/Zo7EQNfTKFUBn0I3W6vTjO14s1nEf2a89gRfLMIr5o/E+gat8heNKkCvNXBUf4saTw2KBgNW2v8C1rNH0DNXrgQxtwQ+2G0JxM/Rut3cHi+Lq4OxH8Pr3q5x0EUCLlD8llSkfyKvWsg442crPEqXBByhEWDKE+f2Lt8xedIDoc49r5Uf/fPpen9ewrDW/bSXYt2nqc+3Q3nZoiGBAs7fHplz534hMbiHbbM5l9lRmT8Fw1ODUrkt7CZenYv2xiKquoIVBuT
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-5_user.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-5.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-6.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-6.exe /rawdata=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
C:\Windows\tasks\307579cc-108b-4551-9f7f-cbd042fabf42-7.job - C:\Program Files (x86)\Radio Canyon\307579cc-108b-4551-9f7f-cbd042fabf42-7.exe /rawdata=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
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-1.job - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-11.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-11.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-4.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-4.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5_user.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-5.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-6.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-6.exe /rawdata=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
C:\Windows\tasks\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-7.job - C:\Program Files (x86)\Internet Speed Checker\bbac79df-f3bf-4ebc-98c7-8c8e65597d04-7.exe /rawdata=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
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Matouskovi\AppData\Roaming\Mozilla\Firefox\Profiles\smscr827.default
prefs.js - "browser.startup.homepage" - "http://search.gboxapp.com/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@raidcall.en/RCplugin]
"Description"=Raidcall plugin
"Path"=C:\Users\EsterkaPú\AppData\Roaming\raidcall\plugins\nprcplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Users\Matouskovi\AppData\Roaming\Mozilla\Firefox\Profiles\smscr827.default\extensions\
1853a82e-ce44-4a8c-a6fe-9bcf74a65575@4b6b1c16-5f0a-4ef0-866f-b063e235ef97.com
a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com
bjEWFzQQnQ@2.com
faststartff@gmail.com
H@WMwGwZjR.org
h@Zo3VB0.org
j88uM@vlXeY.org
jaHk@K.edu
Pk8aU@Ufp0H0.edu
RK@hFGbCFuJN.net
sepherdwilbur@aol.com
skipcerterror@foudil.fr
staged
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611081104}]
Radio Canyon - C:\Program Files (x86)\Radio Canyon\Radio Canyon-bho64.dll [2014-10-27 822176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
Internet Speed Checker - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-bho64.dll [2015-01-07 946656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14c33b96-8815-4889-ac5a-c8e22abc8fbd}]
TperfeectcoUpon - C:\ProgramData\TperfeectcoUpon\f8NjudZJR9w5Wn.x64.dll [2015-01-06 697856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{19766f37-672d-4037-b893-7b3d120febb9}]
SaverAddon - C:\ProgramData\SaverAddon\JFYEfkrFdqbdZB.x64.dll [2014-12-29 654336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c069121-6399-4df6-a468-915a295e5b6f}]
FFLExibleSShOuPpere - C:\Program Files (x86)\FFLExibleSShOuPpere\G2Cu0uNzY1ad1c.x64.dll [2015-02-08 708096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2013-06-29 724992]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}]
Linkey - C:\Users\EsterkaPú\AppData\Local\Linkey\IEExtension\iedll64.dll [2014-08-31 202256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50d8d9ec-a74b-4a3b-8c6b-7ed89d624aa2}]
FineeDealSOffti - C:\ProgramData\FineeDealSOffti\887gkK92O1wEly.x64.dll [2015-01-06 697856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9a3c7949-e4de-4883-b8d4-4ea0f4c070b4}]
ttoopdeal - C:\Program Files (x86)\ttoopdeal\89wejFNZEkUUK5.x64.dll [2015-01-28 699904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-03-21 6270336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b3af377a-3d15-4510-8f78-59a13ed712de}]
AppptoUo - C:\ProgramData\AppptoUo\qkpaWlixFhdUvR.x64.dll [2015-01-18 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIE9BHO Class - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll [2013-06-29 437760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f1f7024a-77b2-4c52-9c3d-0144c7944261}]
savinshhop - C:\Program Files (x86)\savinshhop\VRnibiJVLvRAmb.x64.dll [2015-01-28 699904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611081104}]
Radio Canyon - C:\Program Files (x86)\Radio Canyon\Radio Canyon-bho.dll [2014-10-27 607648]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171152}]
Internet Speed Checker - C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-bho.dll [2015-01-07 620512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14c33b96-8815-4889-ac5a-c8e22abc8fbd}]
TperfeectcoUpon - C:\ProgramData\TperfeectcoUpon\f8NjudZJR9w5Wn.dll [2015-01-06 562688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{19766f37-672d-4037-b893-7b3d120febb9}]
SaverAddon - C:\ProgramData\SaverAddon\JFYEfkrFdqbdZB.dll [2014-12-29 512512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c069121-6399-4df6-a468-915a295e5b6f}]
FFLExibleSShOuPpere - C:\Program Files (x86)\FFLExibleSShOuPpere\G2Cu0uNzY1ad1c.dll [2015-02-08 564736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-06-29 594432]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}]
Linkey - C:\Users\ESTERK~1\AppData\Local\Linkey\IEEXTE~1\iedll.dll [2014-08-31 175632]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50d8d9ec-a74b-4a3b-8c6b-7ed89d624aa2}]
FineeDealSOffti - C:\ProgramData\FineeDealSOffti\887gkK92O1wEly.dll [2015-01-06 562688]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-11-01 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9a3c7949-e4de-4883-b8d4-4ea0f4c070b4}]
ttoopdeal - C:\Program Files (x86)\ttoopdeal\89wejFNZEkUUK5.dll [2015-01-28 561664]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-03-21 4502400]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b3af377a-3d15-4510-8f78-59a13ed712de}]
AppptoUo - C:\ProgramData\AppptoUo\qkpaWlixFhdUvR.dll [2015-01-18 566272]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-11-01 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIE9BHO Class - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll [2013-06-29 367616]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f1f7024a-77b2-4c52-9c3d-0144c7944261}]
savinshhop - C:\Program Files (x86)\savinshhop\VRnibiJVLvRAmb.dll [2015-01-28 561664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2013-06-29 724992]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-06-29 594432]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2013-06-29 151552]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 1271072]
"LogMeIn GUI"=C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [2011-09-16 57928]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TornTv Downloader"=C:\Users\Matouskovi\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup []
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe [2013-10-03 3231032]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ESL Wire]
C:\Program Files\EslWire\wire.exe --tray []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msvdbufSrv]
C:\Windows\system32\msvdbuf.vbe mskviy mssdxk []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-11-08 1028384]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess]
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RaidCall]
C:\Program Files (x86)\RaidCall\raidcall.exe [2013-05-27 3428024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Razer Synapse]
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2014-03-11 444760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2013-11-08 1064224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-10-01 22059616]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
D:\Program Files (x86)\Steam\Steam.exe [2015-01-23 1942720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Sound Blaster Tactic3D Control Panel"=C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe [2014-07-03 2091008]
C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
TornTvDownloader.lnk - C:\Users\Matouskovi\AppData\Roaming\TornTV.com\TornTV Downloader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Users\ESTERK~1\AppData\Local\Linkey\IEEXTE~1\iedll64.dll C:\PROGRA~3\INTERE~1\INTERE~2.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.FPS1"=frapsv64.dll
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-02-15 12:55:25 ----D---- C:\rsit
2015-02-15 12:55:25 ----D---- C:\Program Files\trend micro
2015-02-10 11:35:41 ----D---- C:\ProgramData\ChampionDeals
2015-02-08 11:05:52 ----D---- C:\Program Files (x86)\FFLExibleSShOuPpere
2015-02-08 11:05:42 ----D---- C:\Program Files (x86)\SMeAartCOmpare
2015-02-08 11:05:37 ----D---- C:\Program Files (x86)\Bubble Elements
2015-02-07 17:05:16 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2015-02-03 18:13:02 ----D---- C:\ProgramData\SuperManCoupon
2015-01-28 13:51:45 ----D---- C:\Program Files (x86)\saveoRoinn
2015-01-28 13:51:10 ----D---- C:\ProgramData\clfaldpgocbhophahlbklehlilcogebk
2015-01-28 13:51:04 ----D---- C:\Program Files (x86)\One Number
2015-01-28 13:30:44 ----D---- C:\Program Files (x86)\savinshhop
2015-01-28 13:30:32 ----D---- C:\Program Files (x86)\ttoopdeal
2015-01-18 13:18:11 ----D---- C:\ProgramData\AppptoUo
======List of files/folders modified in the last 1 month======
2015-02-15 12:55:25 ----RD---- C:\Program Files
2015-02-15 12:55:04 ----D---- C:\Windows\temp
2015-02-15 12:19:28 ----D---- C:\Windows\system32\Tasks
2015-02-15 11:49:59 ----D---- C:\Windows\system32\config
2015-02-15 11:21:49 ----D---- C:\Windows\System32
2015-02-15 11:21:49 ----D---- C:\Windows\inf
2015-02-15 11:21:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-15 11:15:35 ----D---- C:\ProgramData\NVIDIA
2015-02-14 20:29:56 ----D---- C:\Program Files (x86)\Opera
2015-02-13 19:12:39 ----SHD---- C:\System Volume Information
2015-02-11 20:18:33 ----D---- C:\Windows\SysWOW64
2015-02-11 20:18:19 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2015-02-11 16:51:33 ----D---- C:\Windows\system32\NDF
2015-02-10 11:35:41 ----D---- C:\ProgramData
2015-02-10 11:17:26 ----D---- C:\Windows\system32\catroot2
2015-02-08 11:06:00 ----D---- C:\ProgramData\14747293520112485990UL
2015-02-08 11:05:52 ----RD---- C:\Program Files (x86)
2015-02-07 17:08:24 ----D---- C:\ProgramData\FineeDealSOffti
2015-02-07 17:05:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-01-29 19:37:12 ----D---- C:\ProgramData\TperfeectcoUpon
2015-01-25 17:44:37 ----D---- C:\Users\Matouskovi\AppData\Roaming\TS3Client
2015-01-22 17:47:49 ----D---- C:\Users\Matouskovi\AppData\Roaming\Spy Emergency
2015-01-18 13:19:04 ----D---- C:\ProgramData\cca8e95270b98666
2015-01-17 18:59:50 ----D---- C:\Users\Matouskovi\AppData\Roaming\Skype
2015-01-16 16:35:47 ----D---- C:\Users\Matouskovi\AppData\Roaming\.minecraft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 268512]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 RzFilter;RzFilter; C:\Windows\system32\drivers\RzFilter.sys [2014-02-21 74432]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-11-09 386680]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-11-10 283064]
R1 SpyEmrg;Spy Emergency Driver; C:\Windows\System32\Drivers\spyemrg.sys [2011-04-21 17240]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [2013-12-11 16056]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\Windows\system32\drivers\LMIRfsDriver.sys [2011-09-16 72216]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 133928]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys [2011-09-16 11552]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-03-20 197408]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-09-28 39200]
R3 SpyEmrgGuard;Spy Emergency Real-Time Shield Driver; C:\Windows\System32\Drivers\spyemrg_guard.sys [2011-04-21 18776]
S1 F06DEFF2-5B9C-490D-910F-35D3A9119622;F06DEFF2-5B9C-490D-910F-35D3A9119622; \??\C:\Program Files (x86)\Settings Manager\smdmf\x64\smdmfmgrc2.cfg []
S3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2009-04-23 497152]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SpyEmrgAccess;Spy Emergency OnAccess Driver; C:\Windows\System32\Drivers\spyemrg_access.sys [2011-04-21 24408]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 UHSfiltv;UHSfiltv; C:\Windows\system32\drivers\UHSfiltv.sys [2013-05-31 23552]
S3 WinUsb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
S4 LMIRfsClientNP;LMIRfsClientNP; C:\Windows\system32\drivers\LMIRfsClientNP.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 0c632643;Interenet Optimizer; C:\Windows\syswow64\rundll32.exe [2009-07-14 44544]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2011-10-19 423424]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2014-08-22 9216]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [2014-11-03 376168]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 23808]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-11-08 15125280]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-03-04 922968]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-11-08 1914656]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-07-22 76888]
R2 SpyEmrgSrv;Spy Emergency Engine Service; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe [2013-03-11 3284008]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-03-04 411936]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2015-02-09 5249808]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 347872]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-01-23 834752]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 EslWireHelper;ESL Wire Helper Service; C:\Program Files\EslWire\service\WireHelperSvc.exe []
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-07 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-14 116648]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -s []
S2 IePluginServices;IePlugin Services; C:\ProgramData\IePluginServices\PluginService.exe -service []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S2 SmdmFService;SmdmF Service; C:\Program Files (x86)\Settings Manager\smdmf\SmdmFService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-07 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-08-13 448384]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-07 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-14 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-06 111616]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-11-07 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------