Pomalý NB, vyskakovací okna...
Napsal: 07 bře 2015 12:19
Dobrý den, mám potíže s Lenovo G 575, přikládám log a děkuji za pomoc. :
Logfile of random's system information tool 1.10 (written by random/random)
Run by Homer at 2015-03-07 12:09:07
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 138 GB (57%) free of 244 GB
Total RAM: 1643 MB (27% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:10:59, on 7.3.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\HD01-V2.1V16.09\e620007d-bc94-4fe8-863e-4eae1df1cb9b.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Lenovo\Energy Management\Energy Management.exe
C:\Program Files\Lenovo\EnergyCut\utilty.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\System32\StikyNot.exe
C:\Users\Homer\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskmgr.exe
C:\Users\Homer\Desktop\RSIT.exe
C:\Program Files\trend micro\Homer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... nkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... kId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1ewenusDefaultPack/UP97_FRPage
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: 092950600ea001325d04029365df3cb90063831 - {11111111-1111-1111-1111-110611381131} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [Energy Management] C:\Program Files\Lenovo\Energy Management\Energy Management.exe
O4 - HKLM\..\Run: [EnergyUtility] C:\Program Files\Lenovo\EnergyCut\utilty.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [EnergyCut] C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\LUXEMA~1\MouseElf.EXE
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EPSON S22 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIGEE.EXE /FU "C:\Windows\TEMP\E_S190C.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Homer\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Homer\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - https://fpdownload.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Overwolf Updater Service (OverwolfUpdaterService) - Unknown owner - C:\Program Files\Overwolf\OverwolfUpdater.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 9861 bytes
======Scheduled tasks folder======
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-1.job - C:\Program Files\HD01-V2.1V16.09\HD01-V2.1V16.09-codedownloader.exe /rawdata=PfWc1PIGXrCCRe+9s6CZac+QUg5mu9AycbpLZA9BABi/GIJjiFG2O/+v5lrWr2ybNywj1I1ym2M9QXVa/0H1olKz2Pn3ni1nz83rKcER2E1L4bqZsHZ45equNiqO4DOCnBwTb+9p0vWU+IzuOuvLiKMwL1Xu6bZ4jGhBF/O5na4HoNxSpcjCb/Z52lPFJzxbz5+q5GEojqSPBo085wWHHt+8diF/JqRKaISflm83kCYHU2L40MlMwUSyACmu8ZkNZxKlQr02jjHyJzJHlkgboN9X0+HOT4dq3KqTsKCVvzit+8NBYAmxtcqFoG8SRydDmC3h3lMZ5VkbKZbZX13MNXBfCEHk+VoHl26fv4ctqApQo2nuHThhSJBRQZ5aICD3zq4lDfxAicCngFHQuAXnG4r4z4wAZLjndiwtoTE4CsIKd0MrjNRh5u1RQZFQEuSUfu59hrSlvqy2XtJK+cHKULKAl3pxoje5zfRYHVDdjxctoHg7towybqF6SxJqXN8RphxGLYS3vLV4x7YsYXPWwhLWT0z5OHFUffj5ht1VF6B7KPW0MiNd9BMdJP2tWjbJsGhQ9m54O2IBs/ZlaqKOrzsR1MwiuZ/9oHGxc5xGRzenSe2V40o4q5MOCc36CyAgXUwAK0Bj8eg3NVAIphX+O/WI2RJJmcn0QXEiC9lHtYNPRb5uJEXhBkw5Nmd52UtXoZjiS1m3xNfPyIUbVg5utTEh5th4DpnC6r5aGwmjKNZvb6SKP+/PDlqDqnNvAoQ+lwpWhXJCbXMtZCAzMPeOnencpLB5403nFvfOrfC3YDR9d8AoI0TJXi2Qq9/kSUophlglco07bTbgmFZlKitQSwwQIMyx6rZf3dPxnAkz+qeQSrptsrrL0XT+Sd0GJNh83wSVljy4j0SOMaU00lixw3KhYNXI2xsWOGhJRzofQzyv4uFBNFr85XUL6lhNalZrrrKOzsTKDRQB3gc6qKlpyU4/lO1oHPNSw4cGHoTvRGbQLqIJrc1vlztQ63P6ce7EGQINF38gDR55ARkh5YFScy1dZv6WXeWN7+eggIlizGNX1LZY3chBVpTHfthh3AXi7c0VgNic965K9qHP0EVFShZLK+LBB+n5qzf+8QHqshDpb2fp0hgUrSP9rgsjpm1phT4W59S0PM8L+ZYjZ5aOZPghixlRJQ1gd45XQ2F638U=
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-11.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-11.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-3.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-3.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-4.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-4.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-5.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-5.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-5_user.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-5.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-6.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-6.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-7.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-7.exe /rawdata=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
C:\Windows\tasks\d5c5394c-50d6-443b-beab-447fb518a978.job - C:\Program Files\HD01-V2.1V16.09\d5c5394c-50d6-443b-beab-447fb518a978.exe /agentregpath='HD01-V2.1V16.09' /appid=63831 /srcid='002128' /subid='0' /zdata='0' /bic=0467CBBF6ADC4A4EB885B70E3BEB5945IE /verifier=23c801e7a2269650bf6ad0966fb4e1bf /installerversion=1_35_09_03 /installationtime=1410856474 /statsdomain=http://stats.newclientonlinestorage.com /errorsdomain=http://errors.newclientonlinestorage.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newclientonlinestorage.com /runfrom='task' /externallog=''
C:\Windows\tasks\e620007d-bc94-4fe8-863e-4eae1df1cb9b.job - C:\Program Files\HD01-V2.1V16.09\e620007d-bc94-4fe8-863e-4eae1df1cb9b.exe 002128 0467CBBF6ADC4A4EB885B70E3BEB5945IE 63831 1410856474 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 HD01-V2.1V16.09
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611381131}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-02-11 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-09 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-29 266240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-02-11 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-29 266240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-08-10 336384]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-09-03 1877288]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2010-12-06 8943520]
"EnergyUtility"=C:\Program Files\Lenovo\EnergyCut\utilty.exe [2007-04-27 1581056]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"EnergyCut"=C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe [2007-03-09 1167360]
"mouseElf"=C:\PROGRA~1\LUXEMA~1\MouseElf.EXE [2005-03-01 184320]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-02-09 5227112]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-12-18 271744]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
"EPSON S22 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIGEE.EXE [2009-09-14 200704]
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-01-23 31087200]
"cz.seznam.software.autoupdate"=C:\Users\Homer\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Homer\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2009-07-14 354304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-07 12:09:09 ----D---- C:\Program Files\trend micro
2015-03-07 12:09:07 ----D---- C:\rsit
2015-03-03 20:54:31 ----A---- C:\Windows\system32\powertracker.dll
2015-03-03 20:54:30 ----A---- C:\Windows\system32\perftrack.dll
2015-03-03 20:54:27 ----A---- C:\Windows\system32\wdi.dll
2015-02-22 20:18:36 ----A---- C:\Windows\system32\FNTCACHE.DAT
2015-02-21 18:08:07 ----SHD---- C:\$RECYCLE.BIN
2015-02-21 17:26:15 ----D---- C:\Qoobox
2015-02-21 17:24:51 ----D---- C:\Windows\erdnt
2015-02-21 17:24:19 ----SD---- C:\32788R22FWJFW
2015-02-13 12:50:34 ----A---- C:\Windows\system32\jscript9diag.dll
2015-02-13 12:50:29 ----A---- C:\Windows\system32\jscript9.dll
2015-02-11 21:10:10 ----D---- C:\Program Files\Common Files\Java
2015-02-11 21:09:57 ----A---- C:\Windows\system32\javaws.exe
2015-02-11 21:09:17 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2015-02-11 21:09:17 ----A---- C:\Windows\system32\javaw.exe
2015-02-11 21:09:17 ----A---- C:\Windows\system32\java.exe
2015-02-11 17:34:01 ----D---- C:\Users\Homer\AppData\Roaming\.minecraft
2015-02-11 14:41:51 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 14:41:50 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-02-11 14:41:50 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-02-11 14:41:49 ----A---- C:\Windows\system32\iernonce.dll
2015-02-11 14:41:49 ----A---- C:\Windows\system32\ie4uinit.exe
2015-02-11 14:41:48 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 14:41:47 ----A---- C:\Windows\system32\urlmon.dll
2015-02-11 14:41:47 ----A---- C:\Windows\system32\iedkcs32.dll
2015-02-11 14:41:46 ----A---- C:\Windows\system32\jsproxy.dll
2015-02-11 14:41:45 ----A---- C:\Windows\system32\ieUnatt.exe
2015-02-11 14:41:44 ----A---- C:\Windows\system32\ieapfltr.dll
2015-02-11 14:41:44 ----A---- C:\Windows\system32\dxtmsft.dll
2015-02-11 14:41:43 ----A---- C:\Windows\system32\msfeeds.dll
2015-02-11 14:41:39 ----A---- C:\Windows\system32\msrating.dll
2015-02-11 14:41:39 ----A---- C:\Windows\system32\iesetup.dll
2015-02-11 14:41:37 ----A---- C:\Windows\system32\wininet.dll
2015-02-11 14:41:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 14:41:34 ----A---- C:\Windows\system32\dxtrans.dll
2015-02-11 14:41:33 ----A---- C:\Windows\system32\ieui.dll
2015-02-11 14:41:31 ----A---- C:\Windows\system32\ieframe.dll
2015-02-11 14:41:28 ----A---- C:\Windows\system32\mshtmled.dll
2015-02-11 14:41:27 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-02-11 14:41:25 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-02-11 14:41:24 ----A---- C:\Windows\system32\iertutil.dll
2015-02-11 14:41:21 ----A---- C:\Windows\system32\mshtml.dll
2015-02-11 14:41:18 ----A---- C:\Windows\system32\vbscript.dll
2015-02-11 14:34:50 ----A---- C:\Windows\system32\adtschema.dll
2015-02-11 14:34:48 ----A---- C:\Windows\system32\drivers\cng.sys
2015-02-11 14:34:46 ----A---- C:\Windows\system32\lsasrv.dll
2015-02-11 14:34:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-02-11 14:34:44 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-02-11 14:34:42 ----A---- C:\Windows\system32\lsass.exe
2015-02-11 14:34:42 ----A---- C:\Windows\system32\auditpol.exe
2015-02-11 14:34:41 ----A---- C:\Windows\system32\sspisrv.dll
2015-02-11 14:34:41 ----A---- C:\Windows\system32\sspicli.dll
2015-02-11 14:34:40 ----A---- C:\Windows\system32\secur32.dll
2015-02-11 14:34:40 ----A---- C:\Windows\system32\msobjs.dll
2015-02-11 14:34:39 ----A---- C:\Windows\system32\msaudite.dll
2015-02-11 14:33:16 ----A---- C:\Windows\system32\win32k.sys
2015-02-11 07:44:53 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-02-11 07:44:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-02-11 07:43:17 ----A---- C:\Windows\system32\mstscax.dll
2015-02-11 07:43:16 ----A---- C:\Windows\system32\aaclient.dll
2015-02-11 07:42:56 ----A---- C:\Windows\system32\oleaut32.dll
2015-02-11 07:42:50 ----A---- C:\Windows\system32\appraiser.dll
2015-02-11 07:42:49 ----A---- C:\Windows\system32\generaltel.dll
2015-02-11 07:42:48 ----A---- C:\Windows\system32\aeinv.dll
2015-02-11 07:42:47 ----A---- C:\Windows\system32\invagent.dll
2015-02-11 07:42:47 ----A---- C:\Windows\system32\devinv.dll
2015-02-11 07:42:47 ----A---- C:\Windows\system32\aitstatic.exe
2015-02-11 07:42:43 ----A---- C:\Windows\system32\aepdu.dll
2015-02-11 07:42:42 ----A---- C:\Windows\system32\aepic.dll
2015-02-11 07:42:28 ----A---- C:\Windows\system32\schannel.dll
2015-02-11 07:42:28 ----A---- C:\Windows\system32\kerberos.dll
2015-02-11 07:42:26 ----A---- C:\Windows\system32\msv1_0.dll
2015-02-11 07:42:25 ----A---- C:\Windows\system32\TSpkg.dll
2015-02-11 07:42:25 ----A---- C:\Windows\system32\ncrypt.dll
2015-02-11 07:42:24 ----A---- C:\Windows\system32\wdigest.dll
2015-02-11 07:42:20 ----A---- C:\Windows\system32\credssp.dll
2015-02-11 07:41:40 ----A---- C:\Windows\system32\crypt32.dll
2015-02-11 07:41:39 ----A---- C:\Windows\system32\wintrust.dll
2015-02-11 07:41:38 ----A---- C:\Windows\system32\cryptsvc.dll
2015-02-11 07:41:08 ----A---- C:\Windows\system32\scesrv.dll
2015-02-11 07:33:26 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-02-09 19:16:38 ----D---- C:\Windows\system32\vbox
2015-02-09 19:10:03 ----A---- C:\Windows\system32\aswBoot.exe
2015-02-09 19:09:57 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2015-03-07 12:09:40 ----D---- C:\Windows\Prefetch
2015-03-07 12:09:09 ----D---- C:\Program Files
2015-03-07 12:08:30 ----D---- C:\Windows\System32
2015-03-07 12:08:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-03-07 12:08:19 ----D---- C:\Windows\inf
2015-03-07 12:01:06 ----D---- C:\Windows\Temp
2015-03-07 11:55:33 ----D---- C:\Users\Homer\AppData\Roaming\Seznam.cz
2015-03-07 11:55:26 ----D---- C:\Windows\system32\config
2015-03-07 11:52:42 ----D---- C:\Users\Homer\AppData\Roaming\Skype
2015-03-06 00:16:46 ----SHD---- C:\System Volume Information
2015-03-04 18:12:28 ----D---- C:\Windows\Minidump
2015-03-04 18:12:22 ----D---- C:\Windows
2015-03-04 14:37:55 ----D---- C:\Windows\system32\Tasks
2015-03-04 03:22:47 ----SHD---- C:\Windows\Installer
2015-03-04 03:21:18 ----D---- C:\Windows\winsxs
2015-03-04 03:19:09 ----D---- C:\Windows\tracing
2015-02-24 03:23:36 ----N---- C:\Windows\system32\MpSigStub.exe
2015-02-22 09:17:33 ----D---- C:\Windows\system32\LogFiles
2015-02-21 19:49:11 ----D---- C:\Users\Homer\AppData\Roaming\BitTorrent
2015-02-21 19:48:30 ----D---- C:\Windows\debug
2015-02-21 17:26:21 ----D---- C:\Windows\system32\drivers
2015-02-21 16:33:43 ----D---- C:\ProgramData\Skype
2015-02-21 16:30:13 ----RD---- C:\Program Files\Skype
2015-02-15 09:24:38 ----D---- C:\Windows\rescache
2015-02-14 03:22:29 ----D---- C:\Windows\system32\en-US
2015-02-13 16:53:54 ----D---- C:\Windows\Microsoft.NET
2015-02-13 16:47:54 ----RSD---- C:\Windows\assembly
2015-02-12 17:51:38 ----D---- C:\Program Files\HD01-V2.1V16.09
2015-02-12 04:38:07 ----D---- C:\Windows\system32\catroot2
2015-02-12 04:31:35 ----D---- C:\Windows\system32\cs-CZ
2015-02-12 04:31:34 ----D---- C:\Windows\PolicyDefinitions
2015-02-12 04:31:32 ----SD---- C:\Windows\system32\CompatTel
2015-02-12 04:31:32 ----D---- C:\Windows\system32\appraiser
2015-02-12 04:31:23 ----D---- C:\Program Files\Internet Explorer
2015-02-12 04:11:42 ----D---- C:\Windows\system32\MRT
2015-02-12 03:20:46 ----A---- C:\Windows\system32\MRT.exe
2015-02-12 03:17:26 ----D---- C:\ProgramData\Microsoft Help
2015-02-12 03:17:25 ----A---- C:\Windows\win.ini
2015-02-11 21:10:10 ----D---- C:\Program Files\Common Files
2015-02-11 07:40:39 ----D---- C:\Windows\system32\catroot
2015-02-09 11:06:26 ----SD---- C:\Users\Homer\AppData\Roaming\Microsoft
2015-02-08 00:41:13 ----D---- C:\Windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2010-05-14 62592]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2010-05-14 24192]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-02-09 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-02-09 206248]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX86.sys [2010-01-15 32352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-02-09 81768]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-02-09 787800]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-02-09 423784]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-06-20 242240]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-02-09 24184]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-02-09 70384]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-02-09 91496]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-02-09 218192]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2007-04-09 11776]
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-08-09 7801344]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-08-09 245760]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2010-10-28 4245568]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2011-03-10 1282688]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2010-06-25 68208]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-09-03 1312560]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 dump_wmimmc;dump_wmimmc; \??\C:\Program Files\Zemi Interactive\4StoryUS\GameGuard\dump_wmimmc.sys []
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 genmcmnUSB;USB Scroll Mouse Driver; C:\Windows\system32\DRIVERS\gflmouhid.sys [2005-01-13 7168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RTSUVSTOR.sys [2010-09-30 218624]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-08-09 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-08-10 294400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-02-09 50344]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2013-11-11 1616208]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-10-11 375056]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-02-09 3192344]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-23 107912]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-01-02 315488]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-23 107912]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-01-12 102912]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-16 114288]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2013-05-20 5086240]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 OverwolfUpdaterService;Overwolf Updater Service; C:\Program Files\Overwolf\OverwolfUpdater.exe []
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Homer at 2015-03-07 12:09:07
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 138 GB (57%) free of 244 GB
Total RAM: 1643 MB (27% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:10:59, on 7.3.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\HD01-V2.1V16.09\e620007d-bc94-4fe8-863e-4eae1df1cb9b.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Lenovo\Energy Management\Energy Management.exe
C:\Program Files\Lenovo\EnergyCut\utilty.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\System32\StikyNot.exe
C:\Users\Homer\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskmgr.exe
C:\Users\Homer\Desktop\RSIT.exe
C:\Program Files\trend micro\Homer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... nkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... kId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1ewenusDefaultPack/UP97_FRPage
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: 092950600ea001325d04029365df3cb90063831 - {11111111-1111-1111-1111-110611381131} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [Energy Management] C:\Program Files\Lenovo\Energy Management\Energy Management.exe
O4 - HKLM\..\Run: [EnergyUtility] C:\Program Files\Lenovo\EnergyCut\utilty.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [EnergyCut] C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\LUXEMA~1\MouseElf.EXE
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EPSON S22 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIGEE.EXE /FU "C:\Windows\TEMP\E_S190C.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Homer\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Homer\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - https://fpdownload.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Overwolf Updater Service (OverwolfUpdaterService) - Unknown owner - C:\Program Files\Overwolf\OverwolfUpdater.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 9861 bytes
======Scheduled tasks folder======
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-1.job - C:\Program Files\HD01-V2.1V16.09\HD01-V2.1V16.09-codedownloader.exe /rawdata=PfWc1PIGXrCCRe+9s6CZac+QUg5mu9AycbpLZA9BABi/GIJjiFG2O/+v5lrWr2ybNywj1I1ym2M9QXVa/0H1olKz2Pn3ni1nz83rKcER2E1L4bqZsHZ45equNiqO4DOCnBwTb+9p0vWU+IzuOuvLiKMwL1Xu6bZ4jGhBF/O5na4HoNxSpcjCb/Z52lPFJzxbz5+q5GEojqSPBo085wWHHt+8diF/JqRKaISflm83kCYHU2L40MlMwUSyACmu8ZkNZxKlQr02jjHyJzJHlkgboN9X0+HOT4dq3KqTsKCVvzit+8NBYAmxtcqFoG8SRydDmC3h3lMZ5VkbKZbZX13MNXBfCEHk+VoHl26fv4ctqApQo2nuHThhSJBRQZ5aICD3zq4lDfxAicCngFHQuAXnG4r4z4wAZLjndiwtoTE4CsIKd0MrjNRh5u1RQZFQEuSUfu59hrSlvqy2XtJK+cHKULKAl3pxoje5zfRYHVDdjxctoHg7towybqF6SxJqXN8RphxGLYS3vLV4x7YsYXPWwhLWT0z5OHFUffj5ht1VF6B7KPW0MiNd9BMdJP2tWjbJsGhQ9m54O2IBs/ZlaqKOrzsR1MwiuZ/9oHGxc5xGRzenSe2V40o4q5MOCc36CyAgXUwAK0Bj8eg3NVAIphX+O/WI2RJJmcn0QXEiC9lHtYNPRb5uJEXhBkw5Nmd52UtXoZjiS1m3xNfPyIUbVg5utTEh5th4DpnC6r5aGwmjKNZvb6SKP+/PDlqDqnNvAoQ+lwpWhXJCbXMtZCAzMPeOnencpLB5403nFvfOrfC3YDR9d8AoI0TJXi2Qq9/kSUophlglco07bTbgmFZlKitQSwwQIMyx6rZf3dPxnAkz+qeQSrptsrrL0XT+Sd0GJNh83wSVljy4j0SOMaU00lixw3KhYNXI2xsWOGhJRzofQzyv4uFBNFr85XUL6lhNalZrrrKOzsTKDRQB3gc6qKlpyU4/lO1oHPNSw4cGHoTvRGbQLqIJrc1vlztQ63P6ce7EGQINF38gDR55ARkh5YFScy1dZv6WXeWN7+eggIlizGNX1LZY3chBVpTHfthh3AXi7c0VgNic965K9qHP0EVFShZLK+LBB+n5qzf+8QHqshDpb2fp0hgUrSP9rgsjpm1phT4W59S0PM8L+ZYjZ5aOZPghixlRJQ1gd45XQ2F638U=
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-11.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-11.exe /rawdata=t0mrFMplFZXpYT+Wk4XA5IRO2wnNbeGW6iONWyNReFIuuz2grQVU0plmTkbrcNbtTMZRBfLM4uqWgxMXWvUmPX4M7SGixmkdDO2YGp44nqtTLaEoEJnb7RCSyS0qdfcWqcEtSE3iHRYu2md4NwWKgzlcOZFlprXgHGeASfvJu2OYwsP2SexdaH8K30I+ju/9Eyf25P4x4f6MNttwX0iPzV0CPan3H9513PCul97qW/cQFGDLrcR9GGIlR3NfbtXpF/XzzW3ghCssEuur2MFHNZnax8+ZB/kTAKiRwhpQOrxqh1qtAlAght+8NLRaWkL5PlTZ6bWAuMU3Gg89kzd1zy51g073DTjintzLqW9semeruEOEPWqQj9rIe86EQgQXDMx4mJmCjx3Cbj6nqBIGMNAWK15chre60MKmJN0e9ZV8kQGnXrOkPyv45MJ2uFhaff1O1Ik1Us0WM6lOxJG8aAu7HhJyPiO9/9pPIxH9jTOJ3FeK/l5xbyClAimzZPuUWqugIgBhLlIcE4+K/Nt2LuC5iWVV3SkQWLz5/xSKo7R49cxR2qU6eDs/pAnLVsr8QXmNzP4tjKiJzD5tM4QSHI3NWUvSKlwMgdzGESK2QEvrAkjC11yNRjc7dzu1cscSqqT6nEvocxOuv2pF+dnlXeluH58qReJC67TTtVWTNMe77DWU/SICQPYfvqEH1pqwn3UPZA57O/+kN6y6m93eBx8U0hZ+2IQ7ta8YJVbt0JSJuTsc3bhIE/l6/nwy+TmGYRADN2dohwYbQhElWaHU1syWRKeVxZ7e7K/+hjowG7o9SOKOPhIIMzZF5p5Dxt/i4qQG0IMbsmSmozUW0dTKzgtFGXsS4DSr+thH7cIX9du/3djEACUPBcwP7pH7b/RHzXc8j4SSBIoDbU7lhsz1cmMbZ4Dnj8s7DOWLARTFaMg3rP9FZiOD3UReCdFnn2qx0m4CHGQ7j9THX6NFXalVUAdF4x7tgskQzg3XWllwcZHVJRYyFFnuCdBbE3CMsmSOU+H0aS4axrB4b/ZS65zmIy1crQSqAQklpto19KfKAPdyh66ZJ80JNpIw+PAbpdhi+NRLgKiwq8e/3HFy8viyBGb1t5Qq3Ec8CUq28aoI45p8Ha/AGOjPHY+fTZoE/zskCYIH2PsHqnTSTTtx7UuyBc6xzKUoyAdPPHMMwW+ul16XM8EWxc9yJd/oj51BIOLDs4seWgnzIKIrG4/TFQbKkB8ZZHoZJwyfg0dNLRhOLvGzKGQvh/hILc1TLh3lDypzJqa/omkDbcMjNr1xFzwKnLnvbUg44BGLKJr0HgVzyicX6+FICGuPllp9sjHR7TWUZSRQy0OIoLSrf0HdagPYOHWqTmWf1CH3n/pjDMZcIB5JcmoCx6Bz6uUxiZBJ8FGC3ECrOMwOIBeas664HV/eV1SGyjWrJWDBXpv4xyl5XqgT1XhvO31K78v8KqQAznvFLxSf1kQ9/n4ECV4bpmn31s86Wfu3patZs8RSwW19cQmVmPFlaG8AQx0PFMxXGXx1vODUCuRNxpq4qjXZOMpb55xGEHFM8GxqjU1ZTwZLnr4z1+h9TLKas7inhfGLQoZLPa6ZVtNmz/egDERuFJQtp8wpXIKCJDfVgT7Gfjgo4GKpz86auzMk30FagpfsiEbmlvCa0sz6NqXFDvckxnJPJZ+fQHWG2l9hfk+3iOSwFyx/vMp6ItdY93fjTERZ8tk7KQQDMmapTJJ7V98AUByFDAmpswStkD+3eEBaxz0gn8++fiORq8s/sSX/EznjI3V2NRPUsKzWFwuBai2PABwHoppSGmladjRGrcvVXRLkh8/Q2Bkjfe6aJIzLOHtwrJUncWvfHQ4GKQ4/nJHlbtK3tjMm1IDflK8tSEWgBPMLESMC5ozyLx+cEn5YrYl+Ed9+vfxMPvQj5q4l0jjWzNrwhY5LrJpNP0/IF69E+usyXebMaKNxyxJbX2P2dmkqS99CuukHl/cmmSOmKzuOU7JfJdzpSln4lvMqoK/iWMoO3VgNzSfnvNjTYwOkL57iHGOI
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-3.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-3.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-4.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-4.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-5.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-5.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-5_user.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-5.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-6.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-6.exe /rawdata=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
C:\Windows\tasks\70984ade-7870-47d4-bd74-cc4f415ee553-7.job - C:\Program Files\HD01-V2.1V16.09\70984ade-7870-47d4-bd74-cc4f415ee553-7.exe /rawdata=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
C:\Windows\tasks\d5c5394c-50d6-443b-beab-447fb518a978.job - C:\Program Files\HD01-V2.1V16.09\d5c5394c-50d6-443b-beab-447fb518a978.exe /agentregpath='HD01-V2.1V16.09' /appid=63831 /srcid='002128' /subid='0' /zdata='0' /bic=0467CBBF6ADC4A4EB885B70E3BEB5945IE /verifier=23c801e7a2269650bf6ad0966fb4e1bf /installerversion=1_35_09_03 /installationtime=1410856474 /statsdomain=http://stats.newclientonlinestorage.com /errorsdomain=http://errors.newclientonlinestorage.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newclientonlinestorage.com /runfrom='task' /externallog=''
C:\Windows\tasks\e620007d-bc94-4fe8-863e-4eae1df1cb9b.job - C:\Program Files\HD01-V2.1V16.09\e620007d-bc94-4fe8-863e-4eae1df1cb9b.exe 002128 0467CBBF6ADC4A4EB885B70E3BEB5945IE 63831 1410856474 93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 HD01-V2.1V16.09
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611381131}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-02-11 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-09 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-29 266240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-02-11 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-29 266240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-08-10 336384]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-09-03 1877288]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2010-12-06 8943520]
"EnergyUtility"=C:\Program Files\Lenovo\EnergyCut\utilty.exe [2007-04-27 1581056]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"EnergyCut"=C:\Program Files\Lenovo\EnergyCut\EnergyCut.exe [2007-03-09 1167360]
"mouseElf"=C:\PROGRA~1\LUXEMA~1\MouseElf.EXE [2005-03-01 184320]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe --auto-start []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-02-09 5227112]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-12-18 271744]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
"EPSON S22 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIGEE.EXE [2009-09-14 200704]
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-01-23 31087200]
"cz.seznam.software.autoupdate"=C:\Users\Homer\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Homer\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2009-07-14 354304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-07 12:09:09 ----D---- C:\Program Files\trend micro
2015-03-07 12:09:07 ----D---- C:\rsit
2015-03-03 20:54:31 ----A---- C:\Windows\system32\powertracker.dll
2015-03-03 20:54:30 ----A---- C:\Windows\system32\perftrack.dll
2015-03-03 20:54:27 ----A---- C:\Windows\system32\wdi.dll
2015-02-22 20:18:36 ----A---- C:\Windows\system32\FNTCACHE.DAT
2015-02-21 18:08:07 ----SHD---- C:\$RECYCLE.BIN
2015-02-21 17:26:15 ----D---- C:\Qoobox
2015-02-21 17:24:51 ----D---- C:\Windows\erdnt
2015-02-21 17:24:19 ----SD---- C:\32788R22FWJFW
2015-02-13 12:50:34 ----A---- C:\Windows\system32\jscript9diag.dll
2015-02-13 12:50:29 ----A---- C:\Windows\system32\jscript9.dll
2015-02-11 21:10:10 ----D---- C:\Program Files\Common Files\Java
2015-02-11 21:09:57 ----A---- C:\Windows\system32\javaws.exe
2015-02-11 21:09:17 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2015-02-11 21:09:17 ----A---- C:\Windows\system32\javaw.exe
2015-02-11 21:09:17 ----A---- C:\Windows\system32\java.exe
2015-02-11 17:34:01 ----D---- C:\Users\Homer\AppData\Roaming\.minecraft
2015-02-11 14:41:51 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 14:41:50 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-02-11 14:41:50 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-02-11 14:41:49 ----A---- C:\Windows\system32\iernonce.dll
2015-02-11 14:41:49 ----A---- C:\Windows\system32\ie4uinit.exe
2015-02-11 14:41:48 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 14:41:47 ----A---- C:\Windows\system32\urlmon.dll
2015-02-11 14:41:47 ----A---- C:\Windows\system32\iedkcs32.dll
2015-02-11 14:41:46 ----A---- C:\Windows\system32\jsproxy.dll
2015-02-11 14:41:45 ----A---- C:\Windows\system32\ieUnatt.exe
2015-02-11 14:41:44 ----A---- C:\Windows\system32\ieapfltr.dll
2015-02-11 14:41:44 ----A---- C:\Windows\system32\dxtmsft.dll
2015-02-11 14:41:43 ----A---- C:\Windows\system32\msfeeds.dll
2015-02-11 14:41:39 ----A---- C:\Windows\system32\msrating.dll
2015-02-11 14:41:39 ----A---- C:\Windows\system32\iesetup.dll
2015-02-11 14:41:37 ----A---- C:\Windows\system32\wininet.dll
2015-02-11 14:41:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 14:41:34 ----A---- C:\Windows\system32\dxtrans.dll
2015-02-11 14:41:33 ----A---- C:\Windows\system32\ieui.dll
2015-02-11 14:41:31 ----A---- C:\Windows\system32\ieframe.dll
2015-02-11 14:41:28 ----A---- C:\Windows\system32\mshtmled.dll
2015-02-11 14:41:27 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-02-11 14:41:25 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-02-11 14:41:24 ----A---- C:\Windows\system32\iertutil.dll
2015-02-11 14:41:21 ----A---- C:\Windows\system32\mshtml.dll
2015-02-11 14:41:18 ----A---- C:\Windows\system32\vbscript.dll
2015-02-11 14:34:50 ----A---- C:\Windows\system32\adtschema.dll
2015-02-11 14:34:48 ----A---- C:\Windows\system32\drivers\cng.sys
2015-02-11 14:34:46 ----A---- C:\Windows\system32\lsasrv.dll
2015-02-11 14:34:45 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-02-11 14:34:44 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-02-11 14:34:42 ----A---- C:\Windows\system32\lsass.exe
2015-02-11 14:34:42 ----A---- C:\Windows\system32\auditpol.exe
2015-02-11 14:34:41 ----A---- C:\Windows\system32\sspisrv.dll
2015-02-11 14:34:41 ----A---- C:\Windows\system32\sspicli.dll
2015-02-11 14:34:40 ----A---- C:\Windows\system32\secur32.dll
2015-02-11 14:34:40 ----A---- C:\Windows\system32\msobjs.dll
2015-02-11 14:34:39 ----A---- C:\Windows\system32\msaudite.dll
2015-02-11 14:33:16 ----A---- C:\Windows\system32\win32k.sys
2015-02-11 07:44:53 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-02-11 07:44:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-02-11 07:43:17 ----A---- C:\Windows\system32\mstscax.dll
2015-02-11 07:43:16 ----A---- C:\Windows\system32\aaclient.dll
2015-02-11 07:42:56 ----A---- C:\Windows\system32\oleaut32.dll
2015-02-11 07:42:50 ----A---- C:\Windows\system32\appraiser.dll
2015-02-11 07:42:49 ----A---- C:\Windows\system32\generaltel.dll
2015-02-11 07:42:48 ----A---- C:\Windows\system32\aeinv.dll
2015-02-11 07:42:47 ----A---- C:\Windows\system32\invagent.dll
2015-02-11 07:42:47 ----A---- C:\Windows\system32\devinv.dll
2015-02-11 07:42:47 ----A---- C:\Windows\system32\aitstatic.exe
2015-02-11 07:42:43 ----A---- C:\Windows\system32\aepdu.dll
2015-02-11 07:42:42 ----A---- C:\Windows\system32\aepic.dll
2015-02-11 07:42:28 ----A---- C:\Windows\system32\schannel.dll
2015-02-11 07:42:28 ----A---- C:\Windows\system32\kerberos.dll
2015-02-11 07:42:26 ----A---- C:\Windows\system32\msv1_0.dll
2015-02-11 07:42:25 ----A---- C:\Windows\system32\TSpkg.dll
2015-02-11 07:42:25 ----A---- C:\Windows\system32\ncrypt.dll
2015-02-11 07:42:24 ----A---- C:\Windows\system32\wdigest.dll
2015-02-11 07:42:20 ----A---- C:\Windows\system32\credssp.dll
2015-02-11 07:41:40 ----A---- C:\Windows\system32\crypt32.dll
2015-02-11 07:41:39 ----A---- C:\Windows\system32\wintrust.dll
2015-02-11 07:41:38 ----A---- C:\Windows\system32\cryptsvc.dll
2015-02-11 07:41:08 ----A---- C:\Windows\system32\scesrv.dll
2015-02-11 07:33:26 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-02-09 19:16:38 ----D---- C:\Windows\system32\vbox
2015-02-09 19:10:03 ----A---- C:\Windows\system32\aswBoot.exe
2015-02-09 19:09:57 ----A---- C:\Windows\avastSS.scr
======List of files/folders modified in the last 1 month======
2015-03-07 12:09:40 ----D---- C:\Windows\Prefetch
2015-03-07 12:09:09 ----D---- C:\Program Files
2015-03-07 12:08:30 ----D---- C:\Windows\System32
2015-03-07 12:08:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-03-07 12:08:19 ----D---- C:\Windows\inf
2015-03-07 12:01:06 ----D---- C:\Windows\Temp
2015-03-07 11:55:33 ----D---- C:\Users\Homer\AppData\Roaming\Seznam.cz
2015-03-07 11:55:26 ----D---- C:\Windows\system32\config
2015-03-07 11:52:42 ----D---- C:\Users\Homer\AppData\Roaming\Skype
2015-03-06 00:16:46 ----SHD---- C:\System Volume Information
2015-03-04 18:12:28 ----D---- C:\Windows\Minidump
2015-03-04 18:12:22 ----D---- C:\Windows
2015-03-04 14:37:55 ----D---- C:\Windows\system32\Tasks
2015-03-04 03:22:47 ----SHD---- C:\Windows\Installer
2015-03-04 03:21:18 ----D---- C:\Windows\winsxs
2015-03-04 03:19:09 ----D---- C:\Windows\tracing
2015-02-24 03:23:36 ----N---- C:\Windows\system32\MpSigStub.exe
2015-02-22 09:17:33 ----D---- C:\Windows\system32\LogFiles
2015-02-21 19:49:11 ----D---- C:\Users\Homer\AppData\Roaming\BitTorrent
2015-02-21 19:48:30 ----D---- C:\Windows\debug
2015-02-21 17:26:21 ----D---- C:\Windows\system32\drivers
2015-02-21 16:33:43 ----D---- C:\ProgramData\Skype
2015-02-21 16:30:13 ----RD---- C:\Program Files\Skype
2015-02-15 09:24:38 ----D---- C:\Windows\rescache
2015-02-14 03:22:29 ----D---- C:\Windows\system32\en-US
2015-02-13 16:53:54 ----D---- C:\Windows\Microsoft.NET
2015-02-13 16:47:54 ----RSD---- C:\Windows\assembly
2015-02-12 17:51:38 ----D---- C:\Program Files\HD01-V2.1V16.09
2015-02-12 04:38:07 ----D---- C:\Windows\system32\catroot2
2015-02-12 04:31:35 ----D---- C:\Windows\system32\cs-CZ
2015-02-12 04:31:34 ----D---- C:\Windows\PolicyDefinitions
2015-02-12 04:31:32 ----SD---- C:\Windows\system32\CompatTel
2015-02-12 04:31:32 ----D---- C:\Windows\system32\appraiser
2015-02-12 04:31:23 ----D---- C:\Program Files\Internet Explorer
2015-02-12 04:11:42 ----D---- C:\Windows\system32\MRT
2015-02-12 03:20:46 ----A---- C:\Windows\system32\MRT.exe
2015-02-12 03:17:26 ----D---- C:\ProgramData\Microsoft Help
2015-02-12 03:17:25 ----A---- C:\Windows\win.ini
2015-02-11 21:10:10 ----D---- C:\Program Files\Common Files
2015-02-11 07:40:39 ----D---- C:\Windows\system32\catroot
2015-02-09 11:06:26 ----SD---- C:\Users\Homer\AppData\Roaming\Microsoft
2015-02-08 00:41:13 ----D---- C:\Windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2010-05-14 62592]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2010-05-14 24192]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-02-09 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-02-09 206248]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX86.sys [2010-01-15 32352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-02-09 81768]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-02-09 787800]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-02-09 423784]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-06-20 242240]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-02-09 24184]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-02-09 70384]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-02-09 91496]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-02-09 218192]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2007-04-09 11776]
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-08-09 7801344]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-08-09 245760]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2010-10-28 4245568]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2011-03-10 1282688]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2010-06-25 68208]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-09-03 1312560]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-11-28 35968]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 dump_wmimmc;dump_wmimmc; \??\C:\Program Files\Zemi Interactive\4StoryUS\GameGuard\dump_wmimmc.sys []
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 genmcmnUSB;USB Scroll Mouse Driver; C:\Windows\system32\DRIVERS\gflmouhid.sys [2005-01-13 7168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RTSUVSTOR.sys [2010-09-30 218624]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
S3 wsvd;wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [2009-07-21 81704]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-08-09 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-08-10 294400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-02-09 50344]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2013-11-11 1616208]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-10-11 375056]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-02-09 3192344]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-23 107912]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-01-02 315488]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-23 107912]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-01-12 102912]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-16 114288]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2013-05-20 5086240]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 OverwolfUpdaterService;Overwolf Updater Service; C:\Program Files\Overwolf\OverwolfUpdater.exe []
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-06-22 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------