Stránka 1 z 1

Sekání všeho

Napsal: 17 úno 2015 20:22
od Mortva
Ahoj, nefinguje mi prave tlačítko. Na ploše ani v adresářích nejde rozbalit roletové menu (vlastnosti, přejmenovat atd.), vždy když kliknu na prave tlačítko myši, celá plocha se znovu obnoví a případné otevřené adresáře se vypnou. Prosím o radu a děkuji za odpověď. Log z RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Janek at 2015-02-17 20:22:12
Microsoft Windows 8.1
System drive C: has 197 GB (21%) free of 938 GB
Total RAM: 8043 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:22:24, on 17. 2. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Users\Janek\AppData\Roaming\Spotify\spotify.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe
C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\PROGRA~2\Raptr\raptr.exe
C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\PROGRA~2\Raptr\raptr_im.exe
C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Janek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [CLWCSM] "c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe"
O4 - HKLM\..\Run: [File Sanitizer] c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [YouCam Mirage] "c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr\raptrstub.exe" --startup
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [Spotify] "C:\Users\Janek\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\RunOnce: [Autodesk® AutoCAD® 2015] C:\Autodesk\AutoCAD_2015_Czech_Win_32-64bit_R1_wi_cs-CZ\Setup.exe /url "http://edutrial.autodesk.com/SWDLDNET4/ ... _Setup.exe" /SN 900-46834949 /PK 001G1 /student /akamai /skipEULA /auth authparam /sid SESSION_ID
O4 - Startup: Automatické vypnutí počítače.lnk = ?
O4 - Startup: Dropbox.lnk = Janek\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: SolidWorks Nástroj pro stahování na pozadí.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\windows\SysWow64\skype4com.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: ANSYS, Inc. License Manager - ANSYS, Inc. - C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: CD-adapco_License_server - Flexera Software, Inc. - C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe
O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systemes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DigitalPersona Ověřovací služba (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate1cf991c87a8257e) (gupdate1cf991c87a8257e) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem1cf991c87acea31) (gupdatem1cf991c87acea31) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP HotSpot 1.0 Service (HotSpotSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\windows\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem33.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IBM Platform MPI Remote Launch (IBM Platform MPI SMPID) - Unknown owner - C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: lmadmin - Unknown owner - C:\Program Files (x86)\FLEXnet Publisher License Server Manager\lmadmin.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Protect Monitor (ProtectMonitor) - Unknown owner - C:\Program Files (x86)\PCData\StartHelp.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Remote Solver for Flow Simulation 2012 - Mentor Graphics Corporation - C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 18859 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe" -nodaemon -k runservice
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe" -service
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_monitor.exe" -monitor 1888 -service -nodaemon -restart_port_timeout 15
"C:\PROGRAM FILES\MICROSOFT OFFICE 15\CLIENTX64\OFFICECLICKTORUN.EXE" /service
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
dashost.exe {f2cddbad-69e9-4418-965aaa12a9ed4cd4}
"c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\lmgrd.exe" -c "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.dat" -l "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.log" -z2
ansyslmd.exe -T B05-430b 11.9 -1 -c "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.dat" --lmgrd_start 54e386f5 -l "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.log"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
C:\windows\system32\HPSIsvc.exe
"C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe"
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\WINDOWS\system32\cmd.exe /c ""C:\Program Files (x86)\PCData\cstart.bat" 7"
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskhostex.exe
"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
taskeng.exe {7A4C8250-650E-4BAE-80AB-6115432F66DC}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\vcsFPService.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\skydrive.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Users\Janek\AppData\Roaming\Spotify\spotify.exe" /uri spotify:autostart
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe" /launch_from 0
"C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --product-version=Spotify/0.9.15.27.g87efe634 --channel="5664.0.914311449\267882551" /prefetch:673131151
"C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --product-version=Spotify/0.9.15.27.g87efe634 --channel="5664.1.1924374475\2034631503" /prefetch:673131151
"C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --product-version=Spotify/0.9.15.27.g87efe634 --channel="5664.2.619338533\1777285203" /prefetch:673131151
raptr_im.exe
"C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=renderer --js-flags=--harmony-proxies --no-sandbox --lang=en-US --lang=en-US --log-severity=disable --product-version=Spotify/0.9.15.27.g87efe634 --channel="5664.3.95371346\1666131576" /prefetch:673131151
"C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe" --type=gpu-process --channel="5664.4.566104648\221447641" --no-sandbox --lang=en-US --log-severity=disable --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --gpu-vendor-id=0x8086 --gpu-device-id=0x0156 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3958 --lang=en-US --log-severity=disable /prefetch:822062411
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5280.0.783856390\1080230840" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,15 --gpu-vendor-id=0x8086 --gpu-device-id=0x0156 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3958 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderControl/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5280.5.1145805897\366668662" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5280.8.132895546\532421499" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderControl/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5280.10.799109440\1388054608" /prefetch:673131151
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe" /showAfterInstallPage
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min /NOSPLASH /SETUPSTART
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00001a74
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe" /CFG="C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp" /GUIMODE=1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderControl/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5280.14.1919999949\1051616313" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderControl/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5280.16.1767944766\554865137" /prefetch:673131151
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
explorer.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderControl/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5280.24.501962236\2059756788" /prefetch:673131151

"C:\Users\Janek\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Janek\AppData\Roaming\Mozilla\Firefox\Profiles\wg7ko70v.default-1411845238384

prefs.js - "keyword.URL" - "https://www.google.com/search/?trackid=sp-006"
prefs.js - "browser.startup.homepage" - "https://www.google.com/?trackid=sp-006"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@t.garena.com/garenatalk]
"Description"=Garena Talk Plugin
"Path"=C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\digitalpersona.com/ChromeDPAgent]
"Description"=
"Path"=c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\ChromeExt\components\npChromeDPAgent.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL


C:\Users\Janek\AppData\Roaming\Mozilla\Firefox\Profiles\wg7ko70v.default-1411845238384\searchplugins\
google-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-11-04 218784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-02-21 553384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-11-12 2334928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-02-21 210856]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2013-03-06 107736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-21 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-21 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2014-10-01 448912]
"Autodesk Sync"=C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [2012-02-05 415680]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30 2804976]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-02-04 1702912]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2014-05-29 1754816]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-06-05 24474752]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2015-02-16 3619160]
"Spotify"=C:\Users\Janek\AppData\Roaming\Spotify\Spotify.exe [2014-12-13 6737976]
"Spotify Web Helper"=C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-12-13 1676344]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Autodesk® AutoCAD® 2015"=C:\Autodesk\AutoCAD_2015_Czech_Win_32-64bit_R1_wi_cs-CZ\Setup.exe [2013-11-25 980872]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-10 56568]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2013-02-07 683656]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2013-01-31 337184]
""= []
"CLWCSM"=c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe [2013-02-20 249096]
"File Sanitizer"=c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2013-03-06 13685464]
"YouCam Mirage"=c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2013-02-01 136488]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2013-02-01 167488]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-11-21 111136]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-11-21 493088]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"Raptr"=C:\Program Files (x86)\Raptr\raptrstub.exe [2015-01-30 55568]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2015-01-19 126712]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-11-24 702768]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SolidWorks Nástroj pro stahování na pozadí.lnk - C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe

C:\Users\Janek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Automatické vypnutí počítače.lnk - C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe
Dropbox.lnk - C:\Users\Janek\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Program Files (x86)\SW_BOO~1\ASSIST~2.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
""=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe:*:Enabled:star-ccm+"
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe:*:Enabled:starccmw"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe:*:Enabled:cdlmd.exe"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe:*:Enabled:lmadmin.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe:*:Enabled:starccm+8.04.007"
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe:*:Enabled:starccmw8.04.007"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe:*:Enabled:cdlmd.exe"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe:*:Enabled:lmadmin.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpid.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpid.exe:LocalSubNet:Enabled:mpid.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpirun.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpirun.exe:LocalSubNet:Enabled:mpirun.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpidiag.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpidiag.exe:LocalSubNet:Enabled:mpidiag.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpisrvutil.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpisrvutil.exe:LocalSubNet:Enabled:mpisrvutil.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2015-02-17 20:00:32 ----D---- C:\Program Files\trend micro
2015-02-17 20:00:31 ----D---- C:\rsit
2015-02-17 19:37:19 ----D---- C:\Users\Janek\AppData\Roaming\Avira
2015-02-17 19:36:30 ----A---- C:\WINDOWS\system32\drivers\avnetflt.sys
2015-02-17 19:32:32 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2015-02-17 19:32:32 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2015-02-17 19:32:31 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2015-02-17 19:30:54 ----D---- C:\ProgramData\Avira
2015-02-17 19:30:54 ----D---- C:\Program Files (x86)\Avira
2015-02-17 19:18:03 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2015-02-16 08:27:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-02-16 08:27:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-02-11 09:32:53 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-02-11 09:32:50 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-02-11 09:32:25 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-02-11 09:32:25 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-02-11 09:32:24 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-02-11 09:32:23 ----A---- C:\WINDOWS\system32\invagent.dll
2015-02-11 09:32:23 ----A---- C:\WINDOWS\system32\devinv.dll
2015-02-11 09:32:13 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-02-11 09:32:01 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-02-11 06:06:51 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-02-11 06:06:51 ----A---- C:\WINDOWS\system32\schannel.dll
2015-02-11 06:06:50 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-02-11 06:06:50 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-02-11 06:06:49 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-02-11 06:06:48 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\wow64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-02-11 06:06:46 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-02-11 06:06:46 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-11 06:06:43 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\certcli.dll
2015-02-11 06:06:22 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-02-11 06:06:21 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-02-11 06:06:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-02-11 06:06:18 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\wininet.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-02-11 06:06:13 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-02-11 06:06:13 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-02-11 06:06:12 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-02-11 06:06:12 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-02-11 06:06:10 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-02-11 06:06:10 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-02-11 06:06:09 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-02-11 06:06:09 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-02-11 06:06:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-02-11 06:06:06 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-02-11 06:06:06 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-02-11 06:06:05 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-02-11 06:06:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-02-11 06:06:02 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-02-11 06:06:02 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-02-11 06:05:59 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-02-11 06:05:52 ----A---- C:\WINDOWS\system32\win32k.sys
2015-01-30 14:24:38 ----D---- C:\Users\Janek\AppData\Roaming\AMD
2015-01-23 00:37:32 ----D---- C:\WINDOWS\system32\appraiser
2015-01-22 09:40:50 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-01-22 09:40:50 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-01-22 09:40:48 ----A---- C:\WINDOWS\system32\aepic.dll
2015-01-22 09:40:44 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-01-22 09:40:44 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-01-22 09:40:37 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-01-22 09:40:37 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-01-22 09:40:36 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-01-22 09:40:36 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-01-22 09:40:36 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-01-22 09:40:32 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-01-22 09:40:32 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-01-22 09:29:26 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-01-22 09:26:44 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-01-22 09:26:43 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-22 09:26:43 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-01-22 09:22:55 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-01-22 09:22:55 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-01-22 09:21:51 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2015-01-22 09:21:50 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2015-01-22 09:14:04 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-01-22 09:14:04 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-01-22 09:13:38 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-01-22 09:13:36 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-01-22 09:12:28 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-01-22 09:12:28 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-01-22 09:12:27 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-01-22 09:12:27 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-01-22 09:09:49 ----A---- C:\WINDOWS\system32\wer.dll
2015-01-22 09:09:48 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-01-22 09:09:48 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\ci.dll
2015-01-22 09:09:46 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-01-22 09:09:46 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-22 09:06:07 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-01-22 09:06:06 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-01-22 01:28:09 ----D---- C:\WINDOWS\Minidump
2015-01-21 23:25:56 ----D---- C:\ProgramData\ATI
2015-01-21 23:19:33 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-01-21 23:09:10 ----D---- C:\Program Files (x86)\AMD AVT
2015-01-21 23:08:32 ----D---- C:\Program Files (x86)\AMD
2015-01-21 12:10:14 ----D---- C:\Program Files\Steam
2015-01-21 11:34:08 ----D---- C:\Program Files (x86)\Dark Souls II
2015-01-21 07:43:48 ----D---- C:\Users\Janek\AppData\Roaming\Identities
2015-01-21 07:43:00 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-01-21 02:15:54 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-01-21 01:35:33 ----SD---- C:\Users\Janek\AppData\Roaming\Microsoft
2015-01-21 01:31:06 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-01-21 01:27:21 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-01-21 01:27:01 ----D---- C:\Program Files\Synaptics
2015-01-21 01:26:55 ----D---- C:\WINDOWS\system32\SRSLabs
2015-01-21 01:26:47 ----D---- C:\Program Files (x86)\Intel
2015-01-21 01:24:55 ----D---- C:\WINDOWS\Prefetch
2015-01-21 01:22:20 ----SHD---- C:\Recovery
2015-01-21 01:22:08 ----DC---- C:\WINDOWS\Panther
2015-01-21 01:16:01 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-01-21 01:16:01 ----D---- C:\Program Files (x86)\MSBuild
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-01-21 01:16:00 ----D---- C:\Program Files\Reference Assemblies
2015-01-21 01:16:00 ----D---- C:\Program Files\MSBuild
2015-01-21 01:16:00 ----D---- C:\inetpub
2015-01-21 01:15:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-01-21 01:15:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-01-21 01:15:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-01-21 01:15:00 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-01-20 17:04:19 ----D---- C:\Users\Janek\AppData\Roaming\DarkSoulsII

======List of files/folders modified in the last 1 month======

2015-02-17 20:22:17 ----D---- C:\WINDOWS\Temp
2015-02-17 20:03:44 ----D---- C:\WINDOWS\system32\sru
2015-02-17 20:00:32 ----RD---- C:\Program Files
2015-02-17 19:54:52 ----SHD---- C:\System Volume Information
2015-02-17 19:54:12 ----D---- C:\KOLEJNET_DC
2015-02-17 19:47:16 ----D---- C:\Users\Janek\AppData\Roaming\Spotify
2015-02-17 19:39:38 ----D---- C:\WINDOWS\SysWOW64
2015-02-17 19:36:30 ----D---- C:\WINDOWS\system32\drivers
2015-02-17 19:31:27 ----SHD---- C:\WINDOWS\Installer
2015-02-17 19:30:54 ----RD---- C:\Program Files (x86)
2015-02-17 19:30:54 ----HD---- C:\ProgramData
2015-02-17 19:30:48 ----D---- C:\ProgramData\Package Cache
2015-02-17 19:27:27 ----D---- C:\Users\Janek\AppData\Roaming\Raptr
2015-02-17 19:25:47 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-02-17 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-02-17 19:23:44 ----D---- C:\Windows
2015-02-17 19:23:35 ----D---- C:\ProgramData\PDFC
2015-02-17 19:22:56 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-02-17 19:22:45 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-02-17 19:20:56 ----D---- C:\ProgramData\AVAST Software
2015-02-17 19:19:07 ----D---- C:\WINDOWS\System32
2015-02-17 19:18:55 ----D---- C:\WINDOWS\system32\Tasks
2015-02-17 19:18:54 ----D---- C:\WINDOWS\system32\DriverStore
2015-02-17 19:18:54 ----D---- C:\WINDOWS\Inf
2015-02-17 14:48:07 ----D---- C:\Program Files (x86)\YourFileDownloader Updater
2015-02-17 14:48:07 ----D---- C:\Program Files (x86)\Mobogenie
2015-02-17 10:46:02 ----D---- C:\WINDOWS\system32\config
2015-02-17 09:49:17 ----D---- C:\WINDOWS\Microsoft.NET
2015-02-16 23:40:03 ----D---- C:\ProgramData\Autodesk
2015-02-16 23:40:03 ----D---- C:\Program Files\Autodesk
2015-02-16 23:39:58 ----D---- C:\Program Files\Common Files\Autodesk Shared
2015-02-16 23:38:45 ----D---- C:\Users\Janek\AppData\Roaming\Autodesk
2015-02-16 23:37:37 ----SD---- C:\WINDOWS\Downloaded Program Files
2015-02-16 23:28:01 ----D---- C:\WINDOWS\SKB
2015-02-16 23:24:57 ----D---- C:\ProgramData\Wideblue installer
2015-02-16 23:24:57 ----D---- C:\Program Files (x86)\Windows Vista - 7 - 8 - 8.1 KMS Activator Ultimate 2014 v1.7
2015-02-16 23:12:32 ----D---- C:\Autodesk
2015-02-16 22:27:02 ----AD---- C:\ProgramData\Temp
2015-02-16 22:08:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-16 22:01:41 ----D---- C:\WINDOWS\WinSxS
2015-02-16 21:53:16 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-16 12:37:17 ----D---- C:\WINDOWS\rescache
2015-02-16 11:14:21 ----D---- C:\WINDOWS\system32\catroot
2015-02-16 10:46:21 ----D---- C:\WINDOWS\CbsTemp
2015-02-16 10:39:41 ----D---- C:\WINDOWS\debug
2015-02-16 09:39:16 ----D---- C:\WINDOWS\SoftwareDistribution
2015-02-16 08:48:32 ----D---- C:\Users\Janek\AppData\Roaming\DAEMON Tools Lite
2015-02-16 08:48:31 ----D---- C:\Program Files (x86)\Steam
2015-02-16 08:37:05 ----D---- C:\ProgramData\Origin
2015-02-16 08:35:28 ----D---- C:\Program Files (x86)\Origin
2015-02-16 00:29:32 ----SD---- C:\WINDOWS\system32\CompatTel
2015-02-16 00:29:28 ----D---- C:\WINDOWS\apppatch
2015-02-15 19:58:38 ----D---- C:\Users\Janek\AppData\Roaming\vlc
2015-02-11 10:11:42 ----D---- C:\WINDOWS\AppReadiness
2015-02-11 10:11:41 ----HD---- C:\Program Files\WindowsApps
2015-02-11 10:10:57 ----D---- C:\WINDOWS\system32\MRT
2015-02-11 10:02:50 ----A---- C:\WINDOWS\system32\MRT.exe
2015-02-07 20:52:33 ----SHD---- C:\$Recycle.Bin
2015-02-06 20:04:37 ----D---- C:\Program Files (x86)\Raptr
2015-02-03 20:31:19 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-01-30 10:27:22 ----D---- C:\WINDOWS\Logs
2015-01-24 11:35:22 ----RSD---- C:\WINDOWS\assembly
2015-01-23 00:37:54 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-01-23 00:37:53 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\cs-CZ
2015-01-23 00:37:51 ----D---- C:\Program Files\Windows Defender
2015-01-23 00:37:51 ----D---- C:\Program Files (x86)\Windows Defender
2015-01-23 00:37:48 ----D---- C:\WINDOWS\system32\en-US
2015-01-23 00:37:32 ----SD---- C:\ProgramData\Microsoft
2015-01-23 00:37:21 ----D---- C:\Program Files\Internet Explorer
2015-01-23 00:37:21 ----D---- C:\Program Files (x86)\Internet Explorer
2015-01-23 00:37:19 ----D---- C:\WINDOWS\PolicyDefinitions
2015-01-22 10:36:58 ----D---- C:\WINDOWS\system32\restore
2015-01-22 09:38:08 ----D---- C:\WINDOWS\system32\catroot2
2015-01-22 08:29:34 ----D---- C:\WINDOWS\system32\wdi
2015-01-21 23:16:07 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-01-21 23:09:11 ----D---- C:\ProgramData\AMD
2015-01-21 23:09:10 ----D---- C:\Program Files (x86)\Common Files
2015-01-21 23:08:32 ----D---- C:\Program Files (x86)\ATI Technologies
2015-01-21 23:08:18 ----D---- C:\Program Files\ATI Technologies
2015-01-21 23:04:33 ----D---- C:\Program Files\AMD
2015-01-21 23:01:04 ----D---- C:\AMD
2015-01-21 22:19:30 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-01-21 11:31:05 ----D---- C:\Program Files (x86)\War Thunder
2015-01-21 10:27:34 ----D---- C:\WINDOWS\system32\LogFiles
2015-01-21 07:39:30 ----D---- C:\WINDOWS\system32\NDF
2015-01-21 02:16:28 ----D---- C:\WINDOWS\Registration
2015-01-21 02:14:02 ----D---- C:\WINDOWS\system32\drivers\etc
2015-01-21 02:13:46 ----RSD---- C:\WINDOWS\Media
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\zh-Hant
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\zh-Hans
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ru
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ko
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ja
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\it
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\fr
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\es
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\de
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\cs
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\zh-Hant
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\zh-Hans
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\Sysprep
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ru
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\pt-BR
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ko
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ja
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\it
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\fr
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\es
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\de
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\cs
2015-01-21 01:58:32 ----RSD---- C:\WINDOWS\Fonts
2015-01-21 01:58:32 ----D---- C:\WINDOWS\ShellNew
2015-01-21 01:58:32 ----D---- C:\WINDOWS\Help
2015-01-21 01:58:31 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-01-21 01:58:30 ----D---- C:\WINDOWS\Tasks
2015-01-21 01:53:11 ----D---- C:\WINDOWS\SYSWOW64\xlive
2015-01-21 01:53:10 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-01-21 01:53:08 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-01-21 01:53:08 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-01-21 01:53:07 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-01-21 01:53:02 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-01-21 01:53:02 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-01-21 01:53:01 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-01-21 01:53:01 ----D---- C:\WINDOWS\SYSWOW64\DigitalPersona
2015-01-21 01:53:00 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-01-21 01:52:53 ----D---- C:\WINDOWS\system32\WCN
2015-01-21 01:52:52 ----D---- C:\WINDOWS\system32\spool
2015-01-21 01:52:37 ----D---- C:\WINDOWS\system32\oobe
2015-01-21 01:52:37 ----D---- C:\WINDOWS\system32\MUI
2015-01-21 01:52:36 ----D---- C:\WINDOWS\system32\IME
2015-01-21 01:52:35 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-01-21 01:50:08 ----D---- C:\WINDOWS\Speech
2015-01-21 01:49:53 ----D---- C:\WINDOWS\IME
2015-01-21 01:49:46 ----D---- C:\WINDOWS\DigitalLocker
2015-01-21 01:49:44 ----RD---- C:\Users
2015-01-21 01:49:42 ----D---- C:\ProgramData\PRICache
2015-01-21 01:49:27 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-01-21 01:49:27 ----D---- C:\Program Files (x86)\Windows Media Player
2015-01-21 01:49:23 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-01-21 01:49:17 ----SHD---- C:\Program Files\Windows Sidebar
2015-01-21 01:49:16 ----D---- C:\Program Files\Windows Media Player
2015-01-21 01:49:14 ----D---- C:\Program Files\HP
2015-01-21 01:49:14 ----D---- C:\Program Files\Common Files\microsoft shared
2015-01-21 01:49:14 ----D---- C:\Program Files\Common Files
2015-01-21 01:38:48 ----D---- C:\WINDOWS\system32\Recovery
2015-01-21 01:38:45 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-01-21 01:27:35 ----D---- C:\WINDOWS\twain_32
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-01-21 01:16:00 ----D---- C:\WINDOWS\system32\migration
2015-01-21 01:16:00 ----D---- C:\WINDOWS\system32\inetsrv
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-01-18 12:37:11 ----D---- C:\WINDOWS\AUInstallAgent

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem56.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 hpdskflt;@oem33.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-03-02 30520]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-01-02 641672]
R0 PinFile;PinFile; C:\WINDOWS\system32\DRIVERS\PinFile.sys [2013-03-18 49856]
R0 SDDisk2K;SDDisk2K; C:\WINDOWS\system32\DRIVERS\SDDisk2K.sys [2013-03-27 212672]
R0 SDDToki;SDDToki; C:\WINDOWS\system32\DRIVERS\SDDToki.sys [2013-01-07 131928]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2014-11-24 131608]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2014-11-24 28600]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 dtsoftbus01;@oem32.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2015-01-21 283064]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2014-11-24 119272]
R3 Accelerometer;@oem33.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-03-02 43320]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 BtAudioBusSrv;@oem18.inf,%SvcDesc%;Ralink Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-19 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-12-05 49632]
R3 clwcsm;@oem25.inf,%clwcsm.DeviceDesc%;CyberLink Webcam Sharing Manager 4.2; C:\WINDOWS\system32\DRIVERS\clwcsm.sys [2013-02-19 42944]
R3 HpqKbFiltr;@oem12.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2013-01-28 26504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-10-01 3828152]
R3 IntcDAud;@oem13.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-12-13 342528]
R3 iwdbus;@oem53.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-08-01 27032]
R3 MEIx64;@oem46.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-12 62784]
R3 netr28x;@oem42.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 rtbth;@oem39.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@oem14.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-02-26 772680]
R3 SPUVCbv;@oem22.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2013-02-22 1446904]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-02-04 544768]
R3 SynTP;@oem30.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 DAMDrv;DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv64.sys [2013-02-18 65752]
S3 intaud_WaveExtensible;@oem52.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-08-01 38296]
S3 mvusbews;@oem38.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 20480]
S3 RSP2STOR;@oem4.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2013-01-23 288328]
S3 RTSPER;Realtek PCIe CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2013-02-01 448072]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2013-01-11 28400]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2013-01-11 32496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-11-21 244736]
R2 ANSYS, Inc. License Manager;ANSYS, Inc. License Manager; C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe [2012-09-24 5457920]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-11-24 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-11-24 431920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2014-11-21 38792]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2015-01-19 182520]
R2 BBDemon;Backbone Service; C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe [2004-05-08 49214]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2013-01-31 1626872]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\PROGRAM FILES\MICROSOFT OFFICE 15\CLIENTX64\OFFICECLICKTORUN.EXE [2014-11-12 2449592]
R2 DpHost;DigitalPersona Ověřovací služba; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2013-03-12 491320]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HPFSService;HP File Sanitizer; c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2013-03-06 1730776]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2013-01-31 553248]
R2 HPSIService;HP SI Service; C:\windows\system32\HPSIsvc.exe [2010-11-24 127800]
R2 hpsrv;@oem33.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-03-02 43320]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-02 15496]
R2 IBM Platform MPI SMPID;IBM Platform MPI Remote Launch; C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe [2013-02-25 368640]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-10-01 319376]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-07-27 636952]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-10-22 130592]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-10-22 166432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-10-22 278560]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2013-02-07 1135752]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2009-07-24 189728]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-02-04 332800]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-10-22 365600]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-02-12 3165232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2013-01-10 138752]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-01-23 1006424]
S2 CD-adapco_License_server;CD-adapco_License_server; C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe [2013-06-04 6137168]
S2 gupdate1cf991c87a8257e;Služba Google Update (gupdate1cf991c87a8257e); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-06 116648]
S2 lmadmin;lmadmin; C:\Program Files (x86)\FLEXnet Publisher License Server Manager\lmadmin.exe [2009-06-05 6087944]
S2 ProtectMonitor;Protect Monitor; C:\Program Files (x86)\PCData\StartHelp.exe [2014-02-24 90633]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service; C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2011-09-27 89160]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-10-01 281488]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-03-04 556856]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-10-03 1432400]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-01-23 1044816]
S3 gupdatem1cf991c87acea31;Služba Google Update (gupdatem1cf991c87acea31); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-06 116648]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2012-12-19 357816]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-18 114288]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-02-16 1910128]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Remote Solver for Flow Simulation 2012;Remote Solver for Flow Simulation 2012; C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe [2011-08-17 109624]
S3 SolidWorks Licensing Service;SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [2014-01-23 79360]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-05-29 543424]

-----------------EOF-----------------

Re: Sekání všeho

Napsal: 17 úno 2015 20:39
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Sekání všeho

Napsal: 17 úno 2015 21:17
od Mortva
Tady je log co mě to vyhodilo:
# AdwCleaner v4.110 - Logfile created 17/02/2015 at 21:05:17
# Updated 05/02/2015 by Xplode
# Database : 2015-02-14.2 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Janek - B05-430B
# Running from : C:\Users\Janek\Desktop\adwcleaner_4.110.exe
# Option : Cleaning

***** [ Services ] *****

[#] Service Deleted : ProtectMonitor

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\PC Optimizer Pro
Folder Deleted : C:\ProgramData\Wideblue installer
Folder Deleted : C:\ProgramData\584b843777ec48b0
Folder Deleted : C:\Program Files (x86)\DownLite
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\SimilarSites
Folder Deleted : C:\Program Files (x86)\SpeedItup Free
Folder Deleted : C:\Program Files (x86)\YourFileDownloader Updater
Folder Deleted : C:\Users\Administrator\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\Janek\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Janek\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Janek\AppData\Local\torch
Folder Deleted : C:\Users\Janek\AppData\Roaming\BabSolution
Folder Deleted : C:\Users\Janek\AppData\Roaming\DownLite
Folder Deleted : C:\Users\Janek\AppData\Roaming\goforfiles
Folder Deleted : C:\Users\Janek\AppData\Roaming\YourFileDownloader
Folder Deleted : C:\Users\Janek\AppData\Roaming\Notificatoin
Folder Deleted : C:\Users\Janek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Folder Deleted : C:\Users\Janek\Documents\Mobogenie
Folder Deleted : C:\Users\Janek\Documents\Optimizer Pro
Folder Deleted : C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
Folder Deleted : C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
Folder Deleted : C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
Folder Deleted : C:\Users\Janek\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
Folder Deleted : C:\Users\Janek\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\enjoemabaocchobfphojdgijjckfiken
File Deleted : C:\Users\Janek\daemonprocess.txt
File Deleted : C:\Users\Janek\AppData\Roaming\LiveSupport.exe_log.txt
File Deleted : C:\Users\Janek\AppData\Roaming\regsvr32.exe_log.txt

***** [ Scheduled tasks ] *****

Task Deleted : DTReg
Task Deleted : GoforFilesUpdate
Task Deleted : Optimizer Pro Schedule
Task Deleted : YourFile DownloaderUpdate
Task Deleted : RunAsStdUser Task

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
Key Deleted : HKCU\Software\Classes\pokki
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{37EB75F2-7392-4DBE-B5AD-147EC6D7BF5F}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0BDDE35F-64F7-49C3-99B2-404E899C49F7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{24236608-609C-42C5-B13C-A8A3EC921850}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{28B1A706-4B97-4EB1-8B32-125042685AD9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4BDFD19F-93D7-49CE-B554-5C215FDC0136}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7307CF0F-7173-4FBF-8649-B149916DD322}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80A5E38C-5F6B-485F-BD97-0B5BE991FAD5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9544D727-A26F-4D57-AF38-4496088640EA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC4C30BF-7D5F-4EAB-9C2A-454178F079AA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BC6F9C26-93EA-4C6D-A4A7-C1FA333B4BBE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E975527B-ABE7-40B3-B5C1-385016913E3B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EFA4B5B1-6C76-4B20-BCDB-D41A93E79053}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E6772887-C1E1-405E-94BB-D8760A1CF8DF}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0BDDE35F-64F7-49C3-99B2-404E899C49F7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{24236608-609C-42C5-B13C-A8A3EC921850}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{28B1A706-4B97-4EB1-8B32-125042685AD9}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4BDFD19F-93D7-49CE-B554-5C215FDC0136}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7307CF0F-7173-4FBF-8649-B149916DD322}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{80A5E38C-5F6B-485F-BD97-0B5BE991FAD5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9544D727-A26F-4D57-AF38-4496088640EA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC4C30BF-7D5F-4EAB-9C2A-454178F079AA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BC6F9C26-93EA-4C6D-A4A7-C1FA333B4BBE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E975527B-ABE7-40B3-B5C1-385016913E3B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA4B5B1-6C76-4B20-BCDB-D41A93E79053}
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\Headlight
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\pc optimizer pro
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\DownLite
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\GoforFiles
Key Deleted : HKLM\SOFTWARE\YourFileDownloader
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
Key Deleted : [x64] HKLM\SOFTWARE\pc optimizer pro
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - (x86)\SW_BOO~1\ASSIST~2.DLL

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v33.1.1 (x86 cs)


-\\ Google Chrome v35.0.1916.153

[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.buenosearch.com/?q={searchTerms}&ba ... 2&tsp=5211
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://slirsredirect.search.aol.com/slirs_hxxp/sredir?sredir=2685&query={searchTerms}&invocationType=tb50ffwinampie7
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://slirsredirect.search.aol.com/slirs_hxxp/sredir?sredir=2685&query={searchTerms}&invocationType=tb50ffwinampie7
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.daemon-search.com/search?q={searchTerms}
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.softonic.pl/s/{searchTerms}
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : ncffjdbbodifgldkcbhmiiljfcnbgjab

-\\ Comodo Dragon v

[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.buenosearch.com/?q={searchTerms}&ba ... 2&tsp=5211
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://slirsredirect.search.aol.com/slirs_hxxp/sredir?sredir=2685&query={searchTerms}&invocationType=tb50ffwinampie7
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://slirsredirect.search.aol.com/slirs_hxxp/sredir?sredir=2685&query={searchTerms}&invocationType=tb50ffwinampie7
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.daemon-search.com/search?q={searchTerms}
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.softonic.pl/s/{searchTerms}

-\\ Chrome Canary v

[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.buenosearch.com/?q={searchTerms}&ba ... 2&tsp=5211
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://slirsredirect.search.aol.com/slirs_hxxp/sredir?sredir=2685&query={searchTerms}&invocationType=tb50ffwinampie7
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://slirsredirect.search.aol.com/slirs_hxxp/sredir?sredir=2685&query={searchTerms}&invocationType=tb50ffwinampie7
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.daemon-search.com/search?q={searchTerms}
[C:\Users\Janek\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.softonic.pl/s/{searchTerms}

*************************

AdwCleaner[R0].txt - [9983 bytes] - [17/02/2015 20:57:19]
AdwCleaner[R1].txt - [10040 bytes] - [17/02/2015 21:02:37]
AdwCleaner[S0].txt - [11505 bytes] - [17/02/2015 21:05:17]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11565 bytes] ##########

Re: Sekání všeho

Napsal: 17 úno 2015 21:34
od Rudy
Dejte nový log RSIT.

Re: Sekání všeho

Napsal: 17 úno 2015 21:40
od Mortva
Tady je :
emLogfile of random's system information tool 1.10 (written by random/random)
Run by Janek at 2015-02-17 21:39:28
Microsoft Windows 8.1
System drive C: has 220 GB (23%) free of 938 GB
Total RAM: 8043 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:39:35, on 17. 2. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe
C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\PROGRA~2\Raptr\raptr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\PROGRA~2\Raptr\raptr_im.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\syswow64\wwahost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Janek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [CLWCSM] "c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe"
O4 - HKLM\..\Run: [File Sanitizer] c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [YouCam Mirage] "c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr\raptrstub.exe" --startup
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [Spotify] "C:\Users\Janek\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\RunOnce: [Autodesk® AutoCAD® 2015] C:\Autodesk\AutoCAD_2015_Czech_Win_32-64bit_R1_wi_cs-CZ\Setup.exe /url "http://edutrial.autodesk.com/SWDLDNET4/ ... _Setup.exe" /SN 900-46834949 /PK 001G1 /student /akamai /skipEULA /auth authparam /sid SESSION_ID
O4 - Startup: Automatické vypnutí počítače.lnk = ?
O4 - Startup: Dropbox.lnk = Janek\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: SolidWorks Nástroj pro stahování na pozadí.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\windows\SysWow64\skype4com.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: ANSYS, Inc. License Manager - ANSYS, Inc. - C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: CD-adapco_License_server - Flexera Software, Inc. - C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe
O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systemes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DigitalPersona Ověřovací služba (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate1cf991c87a8257e) (gupdate1cf991c87a8257e) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem1cf991c87acea31) (gupdatem1cf991c87acea31) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP HotSpot 1.0 Service (HotSpotSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\windows\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem33.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IBM Platform MPI Remote Launch (IBM Platform MPI SMPID) - Unknown owner - C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: lmadmin - Unknown owner - C:\Program Files (x86)\FLEXnet Publisher License Server Manager\lmadmin.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Remote Solver for Flow Simulation 2012 - Mentor Graphics Corporation - C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 18322 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
atieclxx
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe" -nodaemon -k runservice
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_monitor.exe" -monitor 1988 -service -nodaemon -restart_port_timeout 15
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\lmgrd.exe" -c "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.dat" -l "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.log" -z2
ansyslmd.exe -T B05-430b 11.9 -1 -c "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.dat" --lmgrd_start 54e39ff5 -l "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.log"
"C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe" -service
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\PROGRAM FILES\MICROSOFT OFFICE 15\CLIENTX64\OFFICECLICKTORUN.EXE" /service
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
dashost.exe {2f76944f-e2ab-4a56-aab598a4e69f6393}
"c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
C:\windows\system32\HPSIsvc.exe
"C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe"
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\vcsFPService.exe
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskhostex.exe
taskeng.exe {3B07B676-6ECC-4A59-9E79-69155CED8D1E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_000007e0
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
igfxTray.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
"C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe" /launch_from 0
"C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe"
"C:\WINDOWS\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[S0].txt
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6096.0.1990824783\802171997" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,15 --gpu-vendor-id=0x8086 --gpu-device-id=0x0156 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3958 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderNoUse/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="6096.5.1861612865\393704637" /prefetch:673131151
raptr_im.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6096.7.689484724\1840995949" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderNoUse/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="6096.8.675147017\234900401" /prefetch:673131151
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"C:\Program Files (x86)\VideoLAN\VLC\vlc.exe"

explorer.exe
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderNoUse/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="6096.11.737581336\2017229286" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderNoUse/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="6096.18.504561584\1042324146" /prefetch:673131151
"C:\WINDOWS\syswow64\wwahost.exe" -ServerName:App.wwa
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderNoUse/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Default/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="6096.19.675415387\964143259" /prefetch:673131151
"C:\Users\Janek\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Janek\AppData\Roaming\Mozilla\Firefox\Profiles\wg7ko70v.default-1411845238384

prefs.js - "keyword.URL" - "https://www.google.com/search/?trackid=sp-006"
prefs.js - "browser.startup.homepage" - "https://www.google.com/?trackid=sp-006"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@t.garena.com/garenatalk]
"Description"=Garena Talk Plugin
"Path"=C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\digitalpersona.com/ChromeDPAgent]
"Description"=
"Path"=c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\ChromeExt\components\npChromeDPAgent.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL


C:\Users\Janek\AppData\Roaming\Mozilla\Firefox\Profiles\wg7ko70v.default-1411845238384\searchplugins\
google-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-11-04 218784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-02-21 553384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-11-12 2334928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-02-21 210856]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2013-03-06 107736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-21 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-21 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2014-10-01 448912]
"Autodesk Sync"=C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [2012-02-05 415680]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30 2804976]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-02-04 1702912]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2014-05-29 1754816]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-06-05 24474752]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2015-02-16 3619160]
"Spotify"=C:\Users\Janek\AppData\Roaming\Spotify\Spotify.exe [2014-12-13 6737976]
"Spotify Web Helper"=C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-12-13 1676344]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Autodesk® AutoCAD® 2015"=C:\Autodesk\AutoCAD_2015_Czech_Win_32-64bit_R1_wi_cs-CZ\Setup.exe [2013-11-25 980872]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-10 56568]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2013-02-07 683656]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2013-01-31 337184]
""= []
"CLWCSM"=c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe [2013-02-20 249096]
"File Sanitizer"=c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2013-03-06 13685464]
"YouCam Mirage"=c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2013-02-01 136488]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2013-02-01 167488]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-11-21 111136]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-11-21 493088]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"Raptr"=C:\Program Files (x86)\Raptr\raptrstub.exe [2015-01-30 55568]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2015-01-19 126712]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-11-24 702768]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SolidWorks Nástroj pro stahování na pozadí.lnk - C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe

C:\Users\Janek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Automatické vypnutí počítače.lnk - C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe
Dropbox.lnk - C:\Users\Janek\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Program Files "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
""=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe:*:Enabled:star-ccm+"
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe:*:Enabled:starccmw"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe:*:Enabled:cdlmd.exe"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe:*:Enabled:lmadmin.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe:*:Enabled:starccm+8.04.007"
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe:*:Enabled:starccmw8.04.007"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe:*:Enabled:cdlmd.exe"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe:*:Enabled:lmadmin.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpid.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpid.exe:LocalSubNet:Enabled:mpid.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpirun.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpirun.exe:LocalSubNet:Enabled:mpirun.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpidiag.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpidiag.exe:LocalSubNet:Enabled:mpidiag.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpisrvutil.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpisrvutil.exe:LocalSubNet:Enabled:mpisrvutil.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2015-02-17 20:55:28 ----D---- C:\AdwCleaner
2015-02-17 20:00:32 ----D---- C:\Program Files\trend micro
2015-02-17 20:00:31 ----D---- C:\rsit
2015-02-17 19:37:19 ----D---- C:\Users\Janek\AppData\Roaming\Avira
2015-02-17 19:36:30 ----A---- C:\WINDOWS\system32\drivers\avnetflt.sys
2015-02-17 19:32:32 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2015-02-17 19:32:32 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2015-02-17 19:32:31 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2015-02-17 19:30:54 ----D---- C:\ProgramData\Avira
2015-02-17 19:30:54 ----D---- C:\Program Files (x86)\Avira
2015-02-17 19:18:03 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2015-02-16 08:27:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-02-16 08:27:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-02-11 09:32:53 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-02-11 09:32:50 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-02-11 09:32:25 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-02-11 09:32:25 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-02-11 09:32:24 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-02-11 09:32:23 ----A---- C:\WINDOWS\system32\invagent.dll
2015-02-11 09:32:23 ----A---- C:\WINDOWS\system32\devinv.dll
2015-02-11 09:32:13 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-02-11 09:32:01 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-02-11 06:06:51 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-02-11 06:06:51 ----A---- C:\WINDOWS\system32\schannel.dll
2015-02-11 06:06:50 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-02-11 06:06:50 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-02-11 06:06:49 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-02-11 06:06:48 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\wow64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-02-11 06:06:46 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-02-11 06:06:46 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-11 06:06:43 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\certcli.dll
2015-02-11 06:06:22 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-02-11 06:06:21 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-02-11 06:06:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-02-11 06:06:18 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\wininet.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-02-11 06:06:13 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-02-11 06:06:13 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-02-11 06:06:12 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-02-11 06:06:12 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-02-11 06:06:10 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-02-11 06:06:10 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-02-11 06:06:09 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-02-11 06:06:09 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-02-11 06:06:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-02-11 06:06:06 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-02-11 06:06:06 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-02-11 06:06:05 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-02-11 06:06:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-02-11 06:06:02 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-02-11 06:06:02 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-02-11 06:05:59 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-02-11 06:05:52 ----A---- C:\WINDOWS\system32\win32k.sys
2015-01-30 14:24:38 ----D---- C:\Users\Janek\AppData\Roaming\AMD
2015-01-23 00:37:32 ----D---- C:\WINDOWS\system32\appraiser
2015-01-22 09:40:50 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-01-22 09:40:50 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-01-22 09:40:48 ----A---- C:\WINDOWS\system32\aepic.dll
2015-01-22 09:40:44 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-01-22 09:40:44 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-01-22 09:40:37 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-01-22 09:40:37 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-01-22 09:40:36 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-01-22 09:40:36 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-01-22 09:40:36 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-01-22 09:40:32 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-01-22 09:40:32 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-01-22 09:29:26 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-01-22 09:26:44 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-01-22 09:26:43 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-22 09:26:43 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-01-22 09:22:55 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-01-22 09:22:55 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-01-22 09:21:51 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2015-01-22 09:21:50 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2015-01-22 09:14:04 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-01-22 09:14:04 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-01-22 09:13:38 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-01-22 09:13:36 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-01-22 09:12:28 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-01-22 09:12:28 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-01-22 09:12:27 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-01-22 09:12:27 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-01-22 09:09:49 ----A---- C:\WINDOWS\system32\wer.dll
2015-01-22 09:09:48 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-01-22 09:09:48 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\ci.dll
2015-01-22 09:09:46 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-01-22 09:09:46 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-22 09:06:07 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-01-22 09:06:06 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-01-22 01:28:09 ----D---- C:\WINDOWS\Minidump
2015-01-21 23:25:56 ----D---- C:\ProgramData\ATI
2015-01-21 23:19:33 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-01-21 23:09:10 ----D---- C:\Program Files (x86)\AMD AVT
2015-01-21 23:08:32 ----D---- C:\Program Files (x86)\AMD
2015-01-21 12:10:14 ----D---- C:\Program Files\Steam
2015-01-21 11:34:08 ----D---- C:\Program Files (x86)\Dark Souls II
2015-01-21 07:43:48 ----D---- C:\Users\Janek\AppData\Roaming\Identities
2015-01-21 07:43:00 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-01-21 02:15:54 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-01-21 01:35:33 ----SD---- C:\Users\Janek\AppData\Roaming\Microsoft
2015-01-21 01:31:06 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-01-21 01:27:21 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-01-21 01:27:01 ----D---- C:\Program Files\Synaptics
2015-01-21 01:26:55 ----D---- C:\WINDOWS\system32\SRSLabs
2015-01-21 01:26:47 ----D---- C:\Program Files (x86)\Intel
2015-01-21 01:24:55 ----D---- C:\WINDOWS\Prefetch
2015-01-21 01:22:20 ----SHD---- C:\Recovery
2015-01-21 01:22:08 ----DC---- C:\WINDOWS\Panther
2015-01-21 01:16:01 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-01-21 01:16:01 ----D---- C:\Program Files (x86)\MSBuild
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-01-21 01:16:00 ----D---- C:\Program Files\Reference Assemblies
2015-01-21 01:16:00 ----D---- C:\Program Files\MSBuild
2015-01-21 01:16:00 ----D---- C:\inetpub
2015-01-21 01:15:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-01-21 01:15:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-01-21 01:15:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-01-21 01:15:00 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-01-20 17:04:19 ----D---- C:\Users\Janek\AppData\Roaming\DarkSoulsII

======List of files/folders modified in the last 1 month======

2015-02-17 21:39:34 ----D---- C:\WINDOWS\Temp
2015-02-17 21:31:20 ----SHD---- C:\WINDOWS\Installer
2015-02-17 21:31:16 ----D---- C:\WINDOWS\system32\config
2015-02-17 21:17:04 ----D---- C:\Users\Janek\AppData\Roaming\Raptr
2015-02-17 21:15:31 ----D---- C:\Users\Janek\AppData\Roaming\Spotify
2015-02-17 21:14:12 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-02-17 21:12:39 ----D---- C:\ProgramData\PDFC
2015-02-17 21:12:39 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-02-17 21:10:59 ----D---- C:\Windows
2015-02-17 21:10:21 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-02-17 21:09:37 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-02-17 21:06:46 ----D---- C:\WINDOWS\system32\Tasks
2015-02-17 21:06:02 ----RD---- C:\Program Files (x86)
2015-02-17 21:05:22 ----HD---- C:\ProgramData
2015-02-17 21:02:16 ----D---- C:\WINDOWS\system32\sru
2015-02-17 20:57:15 ----D---- C:\Users\Janek\AppData\Roaming\vlc
2015-02-17 20:39:11 ----D---- C:\Program Files (x86)\Common Files
2015-02-17 20:38:16 ----SHD---- C:\System Volume Information
2015-02-17 20:33:53 ----D---- C:\Program Files (x86)\Assassins Creed IV Black Flag
2015-02-17 20:00:32 ----RD---- C:\Program Files
2015-02-17 19:54:12 ----D---- C:\KOLEJNET_DC
2015-02-17 19:39:38 ----D---- C:\WINDOWS\SysWOW64
2015-02-17 19:36:30 ----D---- C:\WINDOWS\system32\drivers
2015-02-17 19:30:48 ----D---- C:\ProgramData\Package Cache
2015-02-17 19:20:56 ----D---- C:\ProgramData\AVAST Software
2015-02-17 19:19:07 ----D---- C:\WINDOWS\System32
2015-02-17 19:18:54 ----D---- C:\WINDOWS\system32\DriverStore
2015-02-17 19:18:54 ----D---- C:\WINDOWS\Inf
2015-02-17 09:49:17 ----D---- C:\WINDOWS\Microsoft.NET
2015-02-16 23:40:03 ----D---- C:\ProgramData\Autodesk
2015-02-16 23:40:03 ----D---- C:\Program Files\Autodesk
2015-02-16 23:39:58 ----D---- C:\Program Files\Common Files\Autodesk Shared
2015-02-16 23:38:45 ----D---- C:\Users\Janek\AppData\Roaming\Autodesk
2015-02-16 23:37:37 ----SD---- C:\WINDOWS\Downloaded Program Files
2015-02-16 23:28:01 ----D---- C:\WINDOWS\SKB
2015-02-16 23:24:57 ----D---- C:\Program Files (x86)\Windows Vista - 7 - 8 - 8.1 KMS Activator Ultimate 2014 v1.7
2015-02-16 23:12:32 ----D---- C:\Autodesk
2015-02-16 22:27:02 ----AD---- C:\ProgramData\Temp
2015-02-16 22:08:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-16 22:01:41 ----D---- C:\WINDOWS\WinSxS
2015-02-16 21:53:16 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-16 12:37:17 ----D---- C:\WINDOWS\rescache
2015-02-16 11:14:21 ----D---- C:\WINDOWS\system32\catroot
2015-02-16 10:46:21 ----D---- C:\WINDOWS\CbsTemp
2015-02-16 10:39:41 ----D---- C:\WINDOWS\debug
2015-02-16 09:39:16 ----D---- C:\WINDOWS\SoftwareDistribution
2015-02-16 08:48:32 ----D---- C:\Users\Janek\AppData\Roaming\DAEMON Tools Lite
2015-02-16 08:48:31 ----D---- C:\Program Files (x86)\Steam
2015-02-16 08:37:05 ----D---- C:\ProgramData\Origin
2015-02-16 08:35:28 ----D---- C:\Program Files (x86)\Origin
2015-02-16 00:29:32 ----SD---- C:\WINDOWS\system32\CompatTel
2015-02-16 00:29:28 ----D---- C:\WINDOWS\apppatch
2015-02-11 10:11:42 ----D---- C:\WINDOWS\AppReadiness
2015-02-11 10:11:41 ----HD---- C:\Program Files\WindowsApps
2015-02-11 10:10:57 ----D---- C:\WINDOWS\system32\MRT
2015-02-11 10:02:50 ----A---- C:\WINDOWS\system32\MRT.exe
2015-02-07 20:52:33 ----SHD---- C:\$Recycle.Bin
2015-02-06 20:04:37 ----D---- C:\Program Files (x86)\Raptr
2015-02-03 20:31:19 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-01-30 10:27:22 ----D---- C:\WINDOWS\Logs
2015-01-24 11:35:22 ----RSD---- C:\WINDOWS\assembly
2015-01-23 00:37:54 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-01-23 00:37:53 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\cs-CZ
2015-01-23 00:37:51 ----D---- C:\Program Files\Windows Defender
2015-01-23 00:37:51 ----D---- C:\Program Files (x86)\Windows Defender
2015-01-23 00:37:48 ----D---- C:\WINDOWS\system32\en-US
2015-01-23 00:37:32 ----SD---- C:\ProgramData\Microsoft
2015-01-23 00:37:21 ----D---- C:\Program Files\Internet Explorer
2015-01-23 00:37:21 ----D---- C:\Program Files (x86)\Internet Explorer
2015-01-23 00:37:19 ----D---- C:\WINDOWS\PolicyDefinitions
2015-01-22 10:36:58 ----D---- C:\WINDOWS\system32\restore
2015-01-22 09:38:08 ----D---- C:\WINDOWS\system32\catroot2
2015-01-22 08:29:34 ----D---- C:\WINDOWS\system32\wdi
2015-01-21 23:16:07 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-01-21 23:09:11 ----D---- C:\ProgramData\AMD
2015-01-21 23:08:32 ----D---- C:\Program Files (x86)\ATI Technologies
2015-01-21 23:08:18 ----D---- C:\Program Files\ATI Technologies
2015-01-21 23:04:33 ----D---- C:\Program Files\AMD
2015-01-21 23:01:04 ----D---- C:\AMD
2015-01-21 22:19:30 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-01-21 11:31:05 ----D---- C:\Program Files (x86)\War Thunder
2015-01-21 10:27:34 ----D---- C:\WINDOWS\system32\LogFiles
2015-01-21 07:39:30 ----D---- C:\WINDOWS\system32\NDF
2015-01-21 02:16:28 ----D---- C:\WINDOWS\Registration
2015-01-21 02:14:02 ----D---- C:\WINDOWS\system32\drivers\etc
2015-01-21 02:13:46 ----RSD---- C:\WINDOWS\Media
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\zh-Hant
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\zh-Hans
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ru
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ko
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ja
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\it
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\fr
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\es
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\de
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\cs
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\zh-Hant
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\zh-Hans
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\Sysprep
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ru
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\pt-BR
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ko
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ja
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\it
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\fr
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\es
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\de
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\cs
2015-01-21 01:58:32 ----RSD---- C:\WINDOWS\Fonts
2015-01-21 01:58:32 ----D---- C:\WINDOWS\ShellNew
2015-01-21 01:58:32 ----D---- C:\WINDOWS\Help
2015-01-21 01:58:31 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-01-21 01:58:30 ----D---- C:\WINDOWS\Tasks
2015-01-21 01:53:11 ----D---- C:\WINDOWS\SYSWOW64\xlive
2015-01-21 01:53:10 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-01-21 01:53:08 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-01-21 01:53:08 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-01-21 01:53:07 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-01-21 01:53:02 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-01-21 01:53:02 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-01-21 01:53:01 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-01-21 01:53:01 ----D---- C:\WINDOWS\SYSWOW64\DigitalPersona
2015-01-21 01:53:00 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-01-21 01:52:53 ----D---- C:\WINDOWS\system32\WCN
2015-01-21 01:52:52 ----D---- C:\WINDOWS\system32\spool
2015-01-21 01:52:37 ----D---- C:\WINDOWS\system32\oobe
2015-01-21 01:52:37 ----D---- C:\WINDOWS\system32\MUI
2015-01-21 01:52:36 ----D---- C:\WINDOWS\system32\IME
2015-01-21 01:52:35 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-01-21 01:50:08 ----D---- C:\WINDOWS\Speech
2015-01-21 01:49:53 ----D---- C:\WINDOWS\IME
2015-01-21 01:49:46 ----D---- C:\WINDOWS\DigitalLocker
2015-01-21 01:49:44 ----RD---- C:\Users
2015-01-21 01:49:42 ----D---- C:\ProgramData\PRICache
2015-01-21 01:49:27 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-01-21 01:49:27 ----D---- C:\Program Files (x86)\Windows Media Player
2015-01-21 01:49:23 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-01-21 01:49:17 ----SHD---- C:\Program Files\Windows Sidebar
2015-01-21 01:49:16 ----D---- C:\Program Files\Windows Media Player
2015-01-21 01:49:14 ----D---- C:\Program Files\HP
2015-01-21 01:49:14 ----D---- C:\Program Files\Common Files\microsoft shared
2015-01-21 01:49:14 ----D---- C:\Program Files\Common Files
2015-01-21 01:38:48 ----D---- C:\WINDOWS\system32\Recovery
2015-01-21 01:38:45 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-01-21 01:27:35 ----D---- C:\WINDOWS\twain_32
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-01-21 01:16:00 ----D---- C:\WINDOWS\system32\migration
2015-01-21 01:16:00 ----D---- C:\WINDOWS\system32\inetsrv
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-01-18 12:37:11 ----D---- C:\WINDOWS\AUInstallAgent

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem56.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 hpdskflt;@oem33.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-03-02 30520]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-01-02 641672]
R0 PinFile;PinFile; C:\WINDOWS\system32\DRIVERS\PinFile.sys [2013-03-18 49856]
R0 SDDisk2K;SDDisk2K; C:\WINDOWS\system32\DRIVERS\SDDisk2K.sys [2013-03-27 212672]
R0 SDDToki;SDDToki; C:\WINDOWS\system32\DRIVERS\SDDToki.sys [2013-01-07 131928]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2014-11-24 131608]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2014-11-24 28600]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 dtsoftbus01;@oem32.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2015-01-21 283064]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2014-11-24 119272]
R3 Accelerometer;@oem33.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-03-02 43320]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 BtAudioBusSrv;@oem18.inf,%SvcDesc%;Ralink Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-19 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-12-05 49632]
R3 clwcsm;@oem25.inf,%clwcsm.DeviceDesc%;CyberLink Webcam Sharing Manager 4.2; C:\WINDOWS\system32\DRIVERS\clwcsm.sys [2013-02-19 42944]
R3 HpqKbFiltr;@oem12.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2013-01-28 26504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-10-01 3828152]
R3 IntcDAud;@oem13.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-12-13 342528]
R3 iwdbus;@oem53.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-08-01 27032]
R3 MEIx64;@oem46.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-12 62784]
R3 netr28x;@oem42.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 rtbth;@oem39.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@oem14.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-02-26 772680]
R3 SPUVCbv;@oem22.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2013-02-22 1446904]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-02-04 544768]
R3 SynTP;@oem30.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 DAMDrv;DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv64.sys [2013-02-18 65752]
S3 intaud_WaveExtensible;@oem52.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-08-01 38296]
S3 mvusbews;@oem38.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 20480]
S3 RSP2STOR;@oem4.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2013-01-23 288328]
S3 RTSPER;Realtek PCIe CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2013-02-01 448072]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2013-01-11 28400]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2013-01-11 32496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-11-21 244736]
R2 ANSYS, Inc. License Manager;ANSYS, Inc. License Manager; C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe [2012-09-24 5457920]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-11-24 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-11-24 431920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2014-11-21 38792]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2015-01-19 182520]
R2 BBDemon;Backbone Service; C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe [2004-05-08 49214]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2013-01-31 1626872]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\PROGRAM FILES\MICROSOFT OFFICE 15\CLIENTX64\OFFICECLICKTORUN.EXE [2014-11-12 2449592]
R2 DpHost;DigitalPersona Ověřovací služba; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2013-03-12 491320]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HPFSService;HP File Sanitizer; c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2013-03-06 1730776]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2013-01-31 553248]
R2 HPSIService;HP SI Service; C:\windows\system32\HPSIsvc.exe [2010-11-24 127800]
R2 hpsrv;@oem33.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-03-02 43320]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-02 15496]
R2 IBM Platform MPI SMPID;IBM Platform MPI Remote Launch; C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe [2013-02-25 368640]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-10-01 319376]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-07-27 636952]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-10-22 130592]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-10-22 166432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-10-22 278560]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2013-02-07 1135752]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2009-07-24 189728]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-02-04 332800]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-10-22 365600]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-02-12 3165232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2013-01-10 138752]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-01-23 1006424]
S2 CD-adapco_License_server;CD-adapco_License_server; C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe [2013-06-04 6137168]
S2 gupdate1cf991c87a8257e;Služba Google Update (gupdate1cf991c87a8257e); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-06 116648]
S2 lmadmin;lmadmin; C:\Program Files (x86)\FLEXnet Publisher License Server Manager\lmadmin.exe [2009-06-05 6087944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service; C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2011-09-27 89160]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-10-01 281488]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-03-04 556856]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-10-03 1432400]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-01-23 1044816]
S3 gupdatem1cf991c87acea31;Služba Google Update (gupdatem1cf991c87acea31); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-06 116648]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2012-12-19 357816]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-18 114288]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-02-16 1910128]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Remote Solver for Flow Simulation 2012;Remote Solver for Flow Simulation 2012; C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe [2011-08-17 109624]
S3 SolidWorks Licensing Service;SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [2014-01-23 79360]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-05-29 543424]

-----------------EOF-----------------

Re: Sekání všeho

Napsal: 17 úno 2015 22:16
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
C:\Program Files (x86)\Windows Vista - 7 - 8 - 8.1 KMS Activator Ultimate 2014 v1.7

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Re: Sekání všeho

Napsal: 17 úno 2015 22:55
od Mortva
Nový log :
Logfile of random's system information tool 1.10 (written by random/random)
Run by Janek at 2015-02-17 22:54:38
Microsoft Windows 8.1
System drive C: has 221 GB (24%) free of 938 GB
Total RAM: 8043 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:54:47, on 17. 2. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\PROGRA~2\Raptr\raptr.exe
C:\PROGRA~2\Raptr\raptr_im.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Janek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [CLWCSM] "c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe"
O4 - HKLM\..\Run: [File Sanitizer] c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [YouCam Mirage] "c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Raptr] "C:\Program Files (x86)\Raptr\raptrstub.exe" --startup
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [Spotify] "C:\Users\Janek\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKCU\..\RunOnce: [Autodesk® AutoCAD® 2015] C:\Autodesk\AutoCAD_2015_Czech_Win_32-64bit_R1_wi_cs-CZ\Setup.exe /url "http://edutrial.autodesk.com/SWDLDNET4/ ... _Setup.exe" /SN 900-46834949 /PK 001G1 /student /akamai /skipEULA /auth authparam /sid SESSION_ID
O4 - Startup: Automatické vypnutí počítače.lnk = ?
O4 - Startup: Dropbox.lnk = Janek\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: SolidWorks Nástroj pro stahování na pozadí.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\windows\SysWow64\skype4com.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: ANSYS, Inc. License Manager - ANSYS, Inc. - C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: CD-adapco_License_server - Flexera Software, Inc. - C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe
O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systemes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DigitalPersona Ověřovací služba (DpHost) - DigitalPersona, Inc. - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate1cf991c87a8257e) (gupdate1cf991c87a8257e) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem1cf991c87acea31) (gupdatem1cf991c87acea31) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP HotSpot 1.0 Service (HotSpotSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\windows\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem33.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IBM Platform MPI Remote Launch (IBM Platform MPI SMPID) - Unknown owner - C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: lmadmin - Unknown owner - C:\Program Files (x86)\FLEXnet Publisher License Server Manager\lmadmin.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Remote Solver for Flow Simulation 2012 - Mentor Graphics Corporation - C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 17706 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k GPSvcGroup
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService

C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe" -nodaemon -k runservice
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_monitor.exe" -monitor 2024 -service -nodaemon -restart_port_timeout 15
"C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\lmgrd.exe" -c "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.dat" -l "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.log" -z2
ansyslmd.exe -T B05-430b 11.9 -1 -c "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.dat" --lmgrd_start 54e3b6b9 -l "C:\Program Files\ANSYS Inc\Shared Files\Licensing\license.log"
"C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe" -service
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\PROGRAM FILES\MICROSOFT OFFICE 15\CLIENTX64\OFFICECLICKTORUN.EXE" /service
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
dashost.exe {93fbb87b-0e2a-419e-aa408438926945ea}
"c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
C:\windows\system32\HPSIsvc.exe
"C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe"
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\vcsFPService.exe
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
taskhostex.exe
taskeng.exe {2A339E2D-F482-4CF9-8449-3334684C9E6F}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_000007f8
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe" /launch_from 0
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe"
"C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
raptr_im.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5664.0.1572831571\647551499" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,15 --gpu-vendor-id=0x8086 --gpu-device-id=0x0156 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3958 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5664.5.1054113845\191640659" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5664.7.410997652\1609602492" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5664.10.72370977\2086916388" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5664.11.1060889317\2113563697" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=BrowserBlacklist/Enabled/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Freud/ExtensionInstallVerification/Bootstrap/GoogleNow/Enable/PasswordGeneration/Enabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SRTPromptFieldTrial/On/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/group_01/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_64/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/WebRTC-IPv6Default/Enabled/ --renderer-print-preview --enable-pinch --enable-threaded-compositing --enable-delegated-renderer --enable-software-compositing --channel="5664.12.1299512201\1883561752" /prefetch:673131151
"C:\Users\Janek\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Janek\AppData\Roaming\Mozilla\Firefox\Profiles\wg7ko70v.default-1411845238384

prefs.js - "keyword.URL" - "https://www.google.com/search/?trackid=sp-006"
prefs.js - "browser.startup.homepage" - "https://www.google.com/?trackid=sp-006"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@t.garena.com/garenatalk]
"Description"=Garena Talk Plugin
"Path"=C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\digitalpersona.com/ChromeDPAgent]
"Description"=
"Path"=c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\ChromeExt\components\npChromeDPAgent.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL


C:\Users\Janek\AppData\Roaming\Mozilla\Firefox\Profiles\wg7ko70v.default-1411845238384\searchplugins\
google-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-11-04 218784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-02-21 553384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-11-12 2334928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-02-21 210856]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2013-03-06 107736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-21 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-21 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2014-10-01 448912]
"Autodesk Sync"=C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [2012-02-05 415680]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30 2804976]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-02-04 1702912]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2014-05-29 1754816]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-06-05 24474752]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2015-02-16 3619160]
"Spotify"=C:\Users\Janek\AppData\Roaming\Spotify\Spotify.exe [2014-12-13 6737976]
"Spotify Web Helper"=C:\Users\Janek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-12-13 1676344]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Autodesk® AutoCAD® 2015"=C:\Autodesk\AutoCAD_2015_Czech_Win_32-64bit_R1_wi_cs-CZ\Setup.exe [2013-11-25 980872]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-10 56568]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2013-02-07 683656]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2013-01-31 337184]
""= []
"CLWCSM"=c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe [2013-02-20 249096]
"File Sanitizer"=c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2013-03-06 13685464]
"YouCam Mirage"=c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2013-02-01 136488]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2013-02-01 167488]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-11-21 111136]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-11-21 493088]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"Raptr"=C:\Program Files (x86)\Raptr\raptrstub.exe [2015-01-30 55568]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2015-01-19 126712]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-11-24 702768]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SolidWorks Nástroj pro stahování na pozadí.lnk - C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe

C:\Users\Janek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Automatické vypnutí počítače.lnk - C:\Program Files (x86)\Automatické vypnutí počítače\avp.exe
Dropbox.lnk - C:\Users\Janek\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Program Files "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
""=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe:*:Enabled:star-ccm+"
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe:*:Enabled:starccmw"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe:*:Enabled:cdlmd.exe"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe:*:Enabled:lmadmin.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\win64\intel12.1\star-ccm+.exe:*:Enabled:starccm+8.04.007"
"C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe"="C:\Program Files\CD-adapco\STAR-CCM+8.04.007\starccmw.exe:*:Enabled:starccmw8.04.007"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\cdlmd.exe:*:Enabled:cdlmd.exe"
"C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe"="C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe:*:Enabled:lmadmin.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpid.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpid.exe:LocalSubNet:Enabled:mpid.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpirun.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpirun.exe:LocalSubNet:Enabled:mpirun.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpidiag.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpidiag.exe:LocalSubNet:Enabled:mpidiag.exe"
"C:\Program Files (x86)\IBM\Platform-MPI\bin\mpisrvutil.exe"="C:\Program Files (x86)\IBM\Platform-MPI\bin\mpisrvutil.exe:LocalSubNet:Enabled:mpisrvutil.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2015-02-17 22:43:58 ----D---- C:\_OTM
2015-02-17 20:55:28 ----D---- C:\AdwCleaner
2015-02-17 20:00:32 ----D---- C:\Program Files\trend micro
2015-02-17 20:00:31 ----D---- C:\rsit
2015-02-17 19:37:19 ----D---- C:\Users\Janek\AppData\Roaming\Avira
2015-02-17 19:36:30 ----A---- C:\WINDOWS\system32\drivers\avnetflt.sys
2015-02-17 19:32:32 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2015-02-17 19:32:32 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2015-02-17 19:32:31 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2015-02-17 19:30:54 ----D---- C:\ProgramData\Avira
2015-02-17 19:30:54 ----D---- C:\Program Files (x86)\Avira
2015-02-17 19:18:03 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2015-02-16 08:27:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-02-16 08:27:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-02-11 09:32:53 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-02-11 09:32:50 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-02-11 09:32:25 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-02-11 09:32:25 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-02-11 09:32:24 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-02-11 09:32:23 ----A---- C:\WINDOWS\system32\invagent.dll
2015-02-11 09:32:23 ----A---- C:\WINDOWS\system32\devinv.dll
2015-02-11 09:32:13 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-02-11 09:32:01 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-02-11 06:06:51 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-02-11 06:06:51 ----A---- C:\WINDOWS\system32\schannel.dll
2015-02-11 06:06:50 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-02-11 06:06:50 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-02-11 06:06:49 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-02-11 06:06:48 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\wow64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-02-11 06:06:48 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-02-11 06:06:47 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-02-11 06:06:46 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-02-11 06:06:46 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-11 06:06:43 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-02-11 06:06:43 ----A---- C:\WINDOWS\system32\certcli.dll
2015-02-11 06:06:22 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-02-11 06:06:21 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-02-11 06:06:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-02-11 06:06:18 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\wininet.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-02-11 06:06:15 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-02-11 06:06:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-02-11 06:06:13 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-02-11 06:06:13 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-02-11 06:06:12 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-02-11 06:06:12 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-02-11 06:06:10 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-02-11 06:06:10 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-02-11 06:06:09 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-02-11 06:06:09 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-02-11 06:06:07 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-02-11 06:06:07 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-02-11 06:06:06 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-02-11 06:06:06 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-02-11 06:06:05 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-02-11 06:06:05 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-02-11 06:06:02 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-02-11 06:06:02 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-02-11 06:05:59 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-02-11 06:05:52 ----A---- C:\WINDOWS\system32\win32k.sys
2015-01-30 14:24:38 ----D---- C:\Users\Janek\AppData\Roaming\AMD
2015-01-23 00:37:32 ----D---- C:\WINDOWS\system32\appraiser
2015-01-22 09:40:50 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-01-22 09:40:50 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-01-22 09:40:48 ----A---- C:\WINDOWS\system32\aepic.dll
2015-01-22 09:40:44 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-01-22 09:40:44 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-01-22 09:40:37 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-01-22 09:40:37 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-01-22 09:40:36 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-01-22 09:40:36 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-01-22 09:40:36 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-01-22 09:40:32 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-01-22 09:40:32 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-01-22 09:37:44 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-01-22 09:29:26 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-01-22 09:26:44 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-01-22 09:26:43 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-22 09:26:43 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-01-22 09:22:55 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-01-22 09:22:55 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-01-22 09:21:51 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2015-01-22 09:21:50 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2015-01-22 09:14:04 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-01-22 09:14:04 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-01-22 09:13:38 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-01-22 09:13:36 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-01-22 09:12:28 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-01-22 09:12:28 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-01-22 09:12:27 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-01-22 09:12:27 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-01-22 09:09:49 ----A---- C:\WINDOWS\system32\wer.dll
2015-01-22 09:09:48 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-01-22 09:09:48 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-01-22 09:09:47 ----A---- C:\WINDOWS\system32\ci.dll
2015-01-22 09:09:46 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-01-22 09:09:46 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-22 09:06:07 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-01-22 09:06:06 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-01-22 01:28:09 ----D---- C:\WINDOWS\Minidump
2015-01-21 23:25:56 ----D---- C:\ProgramData\ATI
2015-01-21 23:19:33 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-01-21 23:09:10 ----D---- C:\Program Files (x86)\AMD AVT
2015-01-21 23:08:32 ----D---- C:\Program Files (x86)\AMD
2015-01-21 12:10:14 ----D---- C:\Program Files\Steam
2015-01-21 11:34:08 ----D---- C:\Program Files (x86)\Dark Souls II
2015-01-21 07:43:48 ----D---- C:\Users\Janek\AppData\Roaming\Identities
2015-01-21 07:43:00 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-01-21 02:15:54 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-01-21 01:35:33 ----SD---- C:\Users\Janek\AppData\Roaming\Microsoft
2015-01-21 01:31:06 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-01-21 01:27:21 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-01-21 01:27:01 ----D---- C:\Program Files\Synaptics
2015-01-21 01:26:55 ----D---- C:\WINDOWS\system32\SRSLabs
2015-01-21 01:26:47 ----D---- C:\Program Files (x86)\Intel
2015-01-21 01:24:55 ----D---- C:\WINDOWS\Prefetch
2015-01-21 01:22:20 ----SHD---- C:\Recovery
2015-01-21 01:22:08 ----DC---- C:\WINDOWS\Panther
2015-01-21 01:16:01 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-01-21 01:16:01 ----D---- C:\Program Files (x86)\MSBuild
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-01-21 01:16:00 ----D---- C:\Program Files\Reference Assemblies
2015-01-21 01:16:00 ----D---- C:\Program Files\MSBuild
2015-01-21 01:16:00 ----D---- C:\inetpub
2015-01-21 01:15:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-01-21 01:15:04 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-01-21 01:15:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-01-21 01:15:00 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-01-20 17:04:19 ----D---- C:\Users\Janek\AppData\Roaming\DarkSoulsII

======List of files/folders modified in the last 1 month======

2015-02-17 22:54:43 ----D---- C:\WINDOWS\Temp
2015-02-17 22:53:10 ----D---- C:\Users\Janek\AppData\Roaming\Raptr
2015-02-17 22:51:48 ----D---- C:\Users\Janek\AppData\Roaming\Spotify
2015-02-17 22:50:39 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-02-17 22:49:48 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-02-17 22:48:40 ----D---- C:\ProgramData\PDFC
2015-02-17 22:48:09 ----D---- C:\Windows
2015-02-17 22:47:30 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-02-17 22:46:46 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-02-17 22:43:59 ----RD---- C:\Program Files (x86)
2015-02-17 22:43:59 ----D---- C:\WINDOWS\Tasks
2015-02-17 22:40:26 ----D---- C:\WINDOWS\system32\sru
2015-02-17 21:51:48 ----D---- C:\Users\Janek\AppData\Roaming\vlc
2015-02-17 21:50:08 ----SHD---- C:\WINDOWS\Installer
2015-02-17 21:33:20 ----D---- C:\WINDOWS\system32\config
2015-02-17 21:06:46 ----D---- C:\WINDOWS\system32\Tasks
2015-02-17 21:05:22 ----HD---- C:\ProgramData
2015-02-17 20:39:11 ----D---- C:\Program Files (x86)\Common Files
2015-02-17 20:38:16 ----SHD---- C:\System Volume Information
2015-02-17 20:33:53 ----D---- C:\Program Files (x86)\Assassins Creed IV Black Flag
2015-02-17 20:00:32 ----RD---- C:\Program Files
2015-02-17 19:54:12 ----D---- C:\KOLEJNET_DC
2015-02-17 19:39:38 ----D---- C:\WINDOWS\SysWOW64
2015-02-17 19:36:30 ----D---- C:\WINDOWS\system32\drivers
2015-02-17 19:30:48 ----D---- C:\ProgramData\Package Cache
2015-02-17 19:20:56 ----D---- C:\ProgramData\AVAST Software
2015-02-17 19:19:07 ----D---- C:\WINDOWS\System32
2015-02-17 19:18:54 ----D---- C:\WINDOWS\system32\DriverStore
2015-02-17 19:18:54 ----D---- C:\WINDOWS\Inf
2015-02-17 09:49:17 ----D---- C:\WINDOWS\Microsoft.NET
2015-02-16 23:40:03 ----D---- C:\ProgramData\Autodesk
2015-02-16 23:40:03 ----D---- C:\Program Files\Autodesk
2015-02-16 23:39:58 ----D---- C:\Program Files\Common Files\Autodesk Shared
2015-02-16 23:38:45 ----D---- C:\Users\Janek\AppData\Roaming\Autodesk
2015-02-16 23:37:37 ----SD---- C:\WINDOWS\Downloaded Program Files
2015-02-16 23:28:01 ----D---- C:\WINDOWS\SKB
2015-02-16 23:12:32 ----D---- C:\Autodesk
2015-02-16 22:27:02 ----AD---- C:\ProgramData\Temp
2015-02-16 22:08:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-16 22:01:41 ----D---- C:\WINDOWS\WinSxS
2015-02-16 21:53:16 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-16 12:37:17 ----D---- C:\WINDOWS\rescache
2015-02-16 11:14:21 ----D---- C:\WINDOWS\system32\catroot
2015-02-16 10:46:21 ----D---- C:\WINDOWS\CbsTemp
2015-02-16 10:39:41 ----D---- C:\WINDOWS\debug
2015-02-16 09:39:16 ----D---- C:\WINDOWS\SoftwareDistribution
2015-02-16 08:48:32 ----D---- C:\Users\Janek\AppData\Roaming\DAEMON Tools Lite
2015-02-16 08:48:31 ----D---- C:\Program Files (x86)\Steam
2015-02-16 08:37:05 ----D---- C:\ProgramData\Origin
2015-02-16 08:35:28 ----D---- C:\Program Files (x86)\Origin
2015-02-16 00:29:32 ----SD---- C:\WINDOWS\system32\CompatTel
2015-02-16 00:29:28 ----D---- C:\WINDOWS\apppatch
2015-02-11 10:11:42 ----D---- C:\WINDOWS\AppReadiness
2015-02-11 10:11:41 ----HD---- C:\Program Files\WindowsApps
2015-02-11 10:10:57 ----D---- C:\WINDOWS\system32\MRT
2015-02-11 10:02:50 ----A---- C:\WINDOWS\system32\MRT.exe
2015-02-07 20:52:33 ----SHD---- C:\$Recycle.Bin
2015-02-06 20:04:37 ----D---- C:\Program Files (x86)\Raptr
2015-02-03 20:31:19 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-01-30 10:27:22 ----D---- C:\WINDOWS\Logs
2015-01-24 11:35:22 ----RSD---- C:\WINDOWS\assembly
2015-01-23 00:37:54 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-01-23 00:37:53 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-01-23 00:37:53 ----D---- C:\WINDOWS\system32\cs-CZ
2015-01-23 00:37:51 ----D---- C:\Program Files\Windows Defender
2015-01-23 00:37:51 ----D---- C:\Program Files (x86)\Windows Defender
2015-01-23 00:37:48 ----D---- C:\WINDOWS\system32\en-US
2015-01-23 00:37:32 ----SD---- C:\ProgramData\Microsoft
2015-01-23 00:37:21 ----D---- C:\Program Files\Internet Explorer
2015-01-23 00:37:21 ----D---- C:\Program Files (x86)\Internet Explorer
2015-01-23 00:37:19 ----D---- C:\WINDOWS\PolicyDefinitions
2015-01-22 10:36:58 ----D---- C:\WINDOWS\system32\restore
2015-01-22 09:38:08 ----D---- C:\WINDOWS\system32\catroot2
2015-01-22 08:29:34 ----D---- C:\WINDOWS\system32\wdi
2015-01-21 23:16:07 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-01-21 23:09:11 ----D---- C:\ProgramData\AMD
2015-01-21 23:08:32 ----D---- C:\Program Files (x86)\ATI Technologies
2015-01-21 23:08:18 ----D---- C:\Program Files\ATI Technologies
2015-01-21 23:04:33 ----D---- C:\Program Files\AMD
2015-01-21 23:01:04 ----D---- C:\AMD
2015-01-21 22:19:30 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-01-21 11:31:05 ----D---- C:\Program Files (x86)\War Thunder
2015-01-21 10:27:34 ----D---- C:\WINDOWS\system32\LogFiles
2015-01-21 07:39:30 ----D---- C:\WINDOWS\system32\NDF
2015-01-21 02:16:28 ----D---- C:\WINDOWS\Registration
2015-01-21 02:14:02 ----D---- C:\WINDOWS\system32\drivers\etc
2015-01-21 02:13:46 ----RSD---- C:\WINDOWS\Media
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\zh-Hant
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\zh-Hans
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ru
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ko
2015-01-21 01:58:35 ----D---- C:\WINDOWS\SYSWOW64\ja
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\it
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\fr
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\es
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\de
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\cs
2015-01-21 01:58:34 ----D---- C:\WINDOWS\SYSWOW64\bitstreams
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\zh-Hant
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\zh-Hans
2015-01-21 01:58:34 ----D---- C:\WINDOWS\system32\Sysprep
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ru
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\pt-BR
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ko
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\ja
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\it
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\fr
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\es
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\de
2015-01-21 01:58:33 ----D---- C:\WINDOWS\system32\cs
2015-01-21 01:58:32 ----RSD---- C:\WINDOWS\Fonts
2015-01-21 01:58:32 ----D---- C:\WINDOWS\ShellNew
2015-01-21 01:58:32 ----D---- C:\WINDOWS\Help
2015-01-21 01:58:31 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-01-21 01:53:11 ----D---- C:\WINDOWS\SYSWOW64\xlive
2015-01-21 01:53:10 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-01-21 01:53:09 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-01-21 01:53:08 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-01-21 01:53:08 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-01-21 01:53:07 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-01-21 01:53:02 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-01-21 01:53:02 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-01-21 01:53:01 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-01-21 01:53:01 ----D---- C:\WINDOWS\SYSWOW64\DigitalPersona
2015-01-21 01:53:00 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-01-21 01:52:53 ----D---- C:\WINDOWS\system32\WCN
2015-01-21 01:52:52 ----D---- C:\WINDOWS\system32\spool
2015-01-21 01:52:37 ----D---- C:\WINDOWS\system32\oobe
2015-01-21 01:52:37 ----D---- C:\WINDOWS\system32\MUI
2015-01-21 01:52:36 ----D---- C:\WINDOWS\system32\IME
2015-01-21 01:52:35 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-01-21 01:50:08 ----D---- C:\WINDOWS\Speech
2015-01-21 01:49:53 ----D---- C:\WINDOWS\IME
2015-01-21 01:49:46 ----D---- C:\WINDOWS\DigitalLocker
2015-01-21 01:49:44 ----RD---- C:\Users
2015-01-21 01:49:42 ----D---- C:\ProgramData\PRICache
2015-01-21 01:49:27 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-01-21 01:49:27 ----D---- C:\Program Files (x86)\Windows Media Player
2015-01-21 01:49:23 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-01-21 01:49:17 ----SHD---- C:\Program Files\Windows Sidebar
2015-01-21 01:49:16 ----D---- C:\Program Files\Windows Media Player
2015-01-21 01:49:14 ----D---- C:\Program Files\HP
2015-01-21 01:49:14 ----D---- C:\Program Files\Common Files\microsoft shared
2015-01-21 01:49:14 ----D---- C:\Program Files\Common Files
2015-01-21 01:38:48 ----D---- C:\WINDOWS\system32\Recovery
2015-01-21 01:38:45 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-01-21 01:27:35 ----D---- C:\WINDOWS\twain_32
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-01-21 01:16:00 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-01-21 01:16:00 ----D---- C:\WINDOWS\system32\migration
2015-01-21 01:16:00 ----D---- C:\WINDOWS\system32\inetsrv
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-01-21 01:15:56 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-01-21 01:15:55 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-01-18 12:37:11 ----D---- C:\WINDOWS\AUInstallAgent

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem56.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 hpdskflt;@oem33.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-03-02 30520]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-01-02 641672]
R0 PinFile;PinFile; C:\WINDOWS\system32\DRIVERS\PinFile.sys [2013-03-18 49856]
R0 SDDisk2K;SDDisk2K; C:\WINDOWS\system32\DRIVERS\SDDisk2K.sys [2013-03-27 212672]
R0 SDDToki;SDDToki; C:\WINDOWS\system32\DRIVERS\SDDToki.sys [2013-01-07 131928]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2014-11-24 131608]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2014-11-24 28600]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 dtsoftbus01;@oem32.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2015-01-21 283064]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2014-11-24 119272]
R3 Accelerometer;@oem33.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-03-02 43320]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 BtAudioBusSrv;@oem18.inf,%SvcDesc%;Ralink Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-19 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-12-05 49632]
R3 clwcsm;@oem25.inf,%clwcsm.DeviceDesc%;CyberLink Webcam Sharing Manager 4.2; C:\WINDOWS\system32\DRIVERS\clwcsm.sys [2013-02-19 42944]
R3 HpqKbFiltr;@oem12.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2013-01-28 26504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-10-01 3828152]
R3 IntcDAud;@oem13.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-12-13 342528]
R3 iwdbus;@oem53.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-08-01 27032]
R3 MEIx64;@oem46.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-12 62784]
R3 netr28x;@oem42.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 rtbth;@oem39.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@oem14.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-02-26 772680]
R3 SPUVCbv;@oem22.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2013-02-22 1446904]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-02-04 544768]
R3 SynTP;@oem30.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 DAMDrv;DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv64.sys [2013-02-18 65752]
S3 intaud_WaveExtensible;@oem52.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-08-01 38296]
S3 mvusbews;@oem38.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 20480]
S3 RSP2STOR;@oem4.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2013-01-23 288328]
S3 RTSPER;Realtek PCIe CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2013-02-01 448072]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2013-01-11 28400]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2013-01-11 32496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-11-21 244736]
R2 ANSYS, Inc. License Manager;ANSYS, Inc. License Manager; C:\Program Files\ANSYS Inc\Shared Files\Licensing\winx64\ansysli_server.exe [2012-09-24 5457920]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-11-24 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-11-24 431920]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2014-11-21 38792]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-01-31 19232]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2015-01-19 182520]
R2 BBDemon;Backbone Service; C:\Program Files (x86)\Dassault Systemes\B14\intel_a\code\bin\CATSysDemon.exe [2004-05-08 49214]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2013-01-31 1626872]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\PROGRAM FILES\MICROSOFT OFFICE 15\CLIENTX64\OFFICECLICKTORUN.EXE [2014-11-12 2449592]
R2 DpHost;DigitalPersona Ověřovací služba; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2013-03-12 491320]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HPFSService;HP File Sanitizer; c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2013-03-06 1730776]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2013-01-31 553248]
R2 HPSIService;HP SI Service; C:\windows\system32\HPSIsvc.exe [2010-11-24 127800]
R2 hpsrv;@oem33.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-03-02 43320]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-02 15496]
R2 IBM Platform MPI SMPID;IBM Platform MPI Remote Launch; C:\Program Files (x86)\IBM\Platform-MPI\sbin\PCMPIWin32Service.exe [2013-02-25 368640]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-10-01 319376]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-07-27 636952]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-10-22 130592]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-10-22 166432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-10-22 278560]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2013-02-07 1135752]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2009-07-24 189728]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2013-02-04 332800]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-10-22 365600]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-02-12 3165232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2013-01-10 138752]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-01-23 1006424]
S2 CD-adapco_License_server;CD-adapco_License_server; C:\Program Files\CD-adapco\FLEXlm\11_9_1_0\bin\lmadmin.exe [2013-06-04 6137168]
S2 gupdate1cf991c87a8257e;Služba Google Update (gupdate1cf991c87a8257e); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-06 116648]
S2 lmadmin;lmadmin; C:\Program Files (x86)\FLEXnet Publisher License Server Manager\lmadmin.exe [2009-06-05 6087944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service; C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2011-09-27 89160]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-10-01 281488]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-03-04 556856]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-10-03 1432400]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-01-23 1044816]
S3 gupdatem1cf991c87acea31;Služba Google Update (gupdatem1cf991c87acea31); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-06 116648]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2012-12-19 357816]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-18 114288]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-02-16 1910128]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Remote Solver for Flow Simulation 2012;Remote Solver for Flow Simulation 2012; C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe [2011-08-17 109624]
S3 SolidWorks Licensing Service;SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [2014-01-23 79360]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-05-29 543424]

-----------------EOF-----------------

Re: Sekání všeho

Napsal: 18 úno 2015 17:43
od Rudy
Dvouklikem na soubor C:\Program Files\trend micro\Janek.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.