Reklamy v prohlížeči, pomalý počítač
Napsal: 17 dub 2015 20:07
Zdravím, potřebovala bych pomoci s podobným problémem jako tu někdo přede mnou řešil s vyskakovacími okny. Kdykoliv otevřu Chrome, je v rozšíření spuštěn Sale Plus a vyskakují mi informace od antiviru o zablokovaných stránkách, kam se snaží dostat, k tomu mám na všech stránkách navíc reklamní bannery, dokud jej v rozšíření neodstraním. Navíc je počítač mnohem pomalejší. Program Sale plus jsem odinstalovala, ale kdykoliv znovu otevřu prohlížeč, je aktivní. Jen SpyHunter něco našel a že toho bylo, ale bohužel mi to free verze neodstraní. Není to můj počítač, takže bych se toho potřebovala nějak šetrně zbavit
Logfile of random's system information tool 1.10 (written by random/random)
Run by Peet at 2015-04-17 21:05:11
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 20 GB (26%) free of 76 GB
Total RAM: 3037 MB (41% free)
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe"
C:\Windows\System32\alg.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Users\Peet\AppData\Local\Akamai\netsession_win.exe"
"C:/Users/Peet/AppData/Local/Akamai/netsession_win.exe" --client
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ASUS\Asus WebStorage\EeeStorageUploader.exe" @@ca1becf4-3abd-4a4f-b913-6940691d8f9a 6bbdf765-1480-489d-8567-efeb97eb74c0 Odeslat položku 635646997794669063
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe"
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2768.0.341272570\716972785" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,18,41 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.1892 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.39.1525401831\2013764764" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2768.49.1950100857\625765845" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.73.1725191076\1373576093" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.76.1671264195\722792493" /prefetch:673131151
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\trend micro\Peet.exe" /silentautolog
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.97.78789026\1270764663" /prefetch:673131151
C:\Windows\system32\AUDIODG.EXE 0x8cc
taskmgr.exe /3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.105.1297938078\490699292" /prefetch:673131151
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Peet\Desktop\Míša-práce\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DriverToolkit Autorun.job - C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe --autorun
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-23 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files (x86)\google\googletoolbar.dll [2011-11-20 745472]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-23 172968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files (x86)\google\googletoolbar.dll [2011-11-20 745472]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"EeeStorageBackup"=C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe [2009-08-25 947472]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-08 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-08 387608]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-08 365592]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-01 323584]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-07-30 617856]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-12 2918656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"Akamai NetSession Interface"=C:\Users\Peet\AppData\Local\Akamai\netsession_win.exe [2014-10-30 4673432]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-12-11 30877280]
"AdobeBridge"= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ADSMTray]
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe [2009-06-24 272952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2009-11-26 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-04 218408]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-09-11 2244608]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-08-20 170624]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
"NPSStartup"= []
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2014-06-04 2024800]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware (cleanup)"=C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [2015-03-17 54072]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
Metacafe.lnk - C:\Program Files (x86)\Metacafe\MetacafeAgent.exe
C:\Users\Peet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
ABF0.lnk - C:\ProgramData\{b5548447-4d6f-8fc9-b554-484474d6111d}\ABF0.exe
game-of-thrones-s05e03-farsi-persian-subtitle.lnk - C:\ProgramData\{65b3cac9-ee7c-5997-65b3-3cac9ee72b27}\game-of-thrones-s05e03-farsi-persian-subtitle.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-02 259584]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"HideSCAHealth"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-04-17 20:09:54 ----D---- C:\Program Files\trend micro
2015-04-17 20:09:52 ----D---- C:\rsit
2015-04-15 13:30:11 ----D---- C:\ProgramData\Malwarebytes
2015-04-15 08:49:02 ----A---- C:\autoexec.bat
2015-04-15 08:47:23 ----D---- C:\Program Files\Enigma Software Group
2015-04-15 08:32:19 ----D---- C:\AdwCleaner
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-15 00:10:47 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-15 00:10:47 ----A---- C:\Windows\system32\wuapp.exe
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wups.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-15 00:10:43 ----A---- C:\Windows\system32\appraiser.dll
2015-04-15 00:10:43 ----A---- C:\Windows\system32\acmigration.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\invagent.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\generaltel.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\devinv.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\aeinv.dll
2015-04-15 00:10:41 ----A---- C:\Windows\system32\aepic.dll
2015-04-15 00:10:41 ----A---- C:\Windows\system32\aepdu.dll
2015-04-15 00:10:33 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-15 00:10:32 ----A---- C:\Windows\system32\ntdll.dll
2015-04-15 00:10:31 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-04-15 00:10:30 ----A---- C:\Windows\system32\KernelBase.dll
2015-04-15 00:10:30 ----A---- C:\Windows\system32\kernel32.dll
2015-04-15 00:10:28 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-04-15 00:10:26 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-04-15 00:10:26 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-04-15 00:10:26 ----A---- C:\Windows\system32\wow64win.dll
2015-04-15 00:10:26 ----A---- C:\Windows\system32\schannel.dll
2015-04-15 00:10:25 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-04-15 00:10:25 ----A---- C:\Windows\system32\wow64.dll
2015-04-15 00:10:25 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-15 00:10:24 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-04-15 00:10:24 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-04-15 00:10:24 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\winsrv.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\wdigest.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\srcore.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\rstrui.exe
2015-04-15 00:10:24 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\kerberos.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-15 00:10:24 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-15 00:10:24 ----A---- C:\Windows\system32\conhost.exe
2015-04-15 00:10:23 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-04-15 00:10:23 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-04-15 00:10:23 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-15 00:10:23 ----A---- C:\Windows\system32\sspicli.dll
2015-04-15 00:10:23 ----A---- C:\Windows\system32\smss.exe
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-04-15 00:10:22 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\srclient.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\secur32.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\ntvdm64.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\lsass.exe
2015-04-15 00:10:22 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\credssp.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\auditpol.exe
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-15 00:10:21 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-04-15 00:10:21 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-04-15 00:10:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-04-15 00:10:21 ----A---- C:\Windows\system32\wow64cpu.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-15 00:10:18 ----A---- C:\Windows\SYSWOW64\user.exe
2015-04-15 00:10:18 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-04-15 00:10:18 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-04-15 00:10:18 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-15 00:10:17 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-04-15 00:10:17 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-04-15 00:10:17 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-04-15 00:10:17 ----A---- C:\Windows\system32\msobjs.dll
2015-04-15 00:10:17 ----A---- C:\Windows\system32\msaudite.dll
2015-04-15 00:10:17 ----A---- C:\Windows\system32\adtschema.dll
2015-04-15 00:10:06 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-15 00:10:06 ----A---- C:\Windows\system32\msxml3.dll
2015-04-15 00:10:05 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-15 00:10:05 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-15 00:10:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-15 00:10:04 ----A---- C:\Windows\system32\gdi32.dll
2015-04-15 00:10:04 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-15 00:10:03 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-04-15 00:10:03 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-04-15 00:10:03 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-04-15 00:10:03 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-15 00:10:03 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-15 00:10:02 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-04-15 00:10:02 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-04-15 00:10:01 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 00:10:01 ----A---- C:\Windows\system32\iernonce.dll
2015-04-15 00:10:00 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-04-15 00:09:58 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-04-15 00:09:58 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-04-15 00:09:58 ----A---- C:\Windows\system32\urlmon.dll
2015-04-15 00:09:58 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-04-15 00:09:57 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 00:09:56 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-04-15 00:09:56 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-04-15 00:09:56 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 00:09:56 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-15 00:09:56 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-15 00:09:55 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-04-15 00:09:55 ----A---- C:\Windows\system32\iesetup.dll
2015-04-15 00:09:54 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-15 00:09:53 ----A---- C:\Windows\system32\iertutil.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-04-15 00:09:52 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-15 00:09:51 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-15 00:09:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-04-15 00:09:49 ----A---- C:\Windows\system32\ieui.dll
2015-04-15 00:09:49 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-15 00:09:48 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-15 00:09:48 ----A---- C:\Windows\system32\ieframe.dll
2015-04-15 00:09:47 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-15 00:09:47 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-15 00:09:47 ----A---- C:\Windows\system32\jscript9.dll
2015-04-15 00:09:46 ----A---- C:\Windows\system32\wininet.dll
2015-04-15 00:09:46 ----A---- C:\Windows\system32\vbscript.dll
2015-04-15 00:09:45 ----A---- C:\Windows\system32\msrating.dll
2015-04-15 00:09:45 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-15 00:09:43 ----A---- C:\Windows\system32\mshtml.dll
2015-04-15 00:09:18 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-15 00:09:18 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-15 00:09:18 ----A---- C:\Windows\system32\clfs.sys
2015-04-13 17:26:11 ----D---- C:\ProgramData\jpeagcoeibocajbofipcninagikacfln
2015-04-13 17:26:10 ----D---- C:\ProgramData\14048911428037955116
2015-04-13 17:25:24 ----D---- C:\ProgramData\{b5548447-4d6f-8fc9-b554-484474d6111d}
2015-04-13 17:25:16 ----D---- C:\ProgramData\dmccnicolgdffdjaehjompehmllchfcn
2015-04-13 17:24:12 ----D---- C:\ProgramData\{65b3cac9-ee7c-5997-65b3-3cac9ee72b27}
2015-04-13 17:24:11 ----D---- C:\ProgramData\{5c8c806a-014a-f592-5c8c-c806a01401a8}
2015-04-08 23:14:21 ----D---- C:\ProgramData\ESET
2015-04-08 23:14:21 ----D---- C:\Program Files\ESET
2015-04-06 03:01:02 ----SD---- C:\Windows\SYSWOW64\GWX
2015-04-06 03:01:02 ----SD---- C:\Windows\system32\GWX
======List of files/folders modified in the last 1 month======
2015-04-17 21:05:12 ----D---- C:\Windows\Temp
2015-04-17 21:05:03 ----D---- C:\Windows\Prefetch
2015-04-17 20:13:18 ----D---- C:\Windows\system32\config
2015-04-17 20:09:54 ----RD---- C:\Program Files
2015-04-16 03:02:00 ----SHD---- C:\Windows\Installer
2015-04-16 03:02:00 ----D---- C:\ProgramData\Skype
2015-04-16 03:01:53 ----RD---- C:\Program Files (x86)\Skype
2015-04-16 03:01:52 ----D---- C:\Program Files (x86)\Common Files
2015-04-16 03:01:51 ----D---- C:\Windows\SysWOW64
2015-04-16 03:00:48 ----SHD---- C:\System Volume Information
2015-04-16 01:34:02 ----D---- C:\Windows\AppCompat
2015-04-15 22:15:30 ----RD---- C:\Program Files (x86)
2015-04-15 22:15:26 ----HD---- C:\ProgramData
2015-04-15 18:48:51 ----D---- C:\Windows\system32\drivers
2015-04-15 13:03:18 ----D---- C:\Users\Peet\AppData\Roaming\Skype
2015-04-15 12:56:53 ----D---- C:\Windows\System32
2015-04-15 12:56:53 ----D---- C:\Windows\inf
2015-04-15 12:56:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-15 11:32:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-04-15 10:38:49 ----D---- C:\Windows\system32\Tasks
2015-04-15 08:34:18 ----D---- C:\ProgramData\ICQ
2015-04-15 03:43:17 ----D---- C:\Windows\Microsoft.NET
2015-04-15 03:42:39 ----RSD---- C:\Windows\assembly
2015-04-15 03:33:01 ----D---- C:\Windows\winsxs
2015-04-15 03:29:30 ----SD---- C:\Windows\system32\CompatTel
2015-04-15 03:29:30 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-04-15 03:29:30 ----D---- C:\Windows\system32\cs-CZ
2015-04-15 03:29:30 ----D---- C:\Windows\PolicyDefinitions
2015-04-15 03:29:29 ----D---- C:\Windows\system32\appraiser
2015-04-15 03:29:29 ----D---- C:\Windows\AppPatch
2015-04-15 03:29:22 ----D---- C:\Windows\SYSWOW64\en-US
2015-04-15 03:29:22 ----D---- C:\Program Files\Internet Explorer
2015-04-15 03:29:21 ----D---- C:\Windows\system32\en-US
2015-04-15 03:29:19 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-15 03:11:49 ----D---- C:\ProgramData\Microsoft Help
2015-04-15 03:10:41 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-04-15 00:06:55 ----D---- C:\Windows\system32\catroot2
2015-04-08 23:14:56 ----D---- C:\Windows\system32\DriverStore
2015-04-06 03:01:15 ----D---- C:\Windows\Logs
2015-04-04 10:00:08 ----D---- C:\Windows\system32\NDF
2015-03-25 04:17:43 ----D---- C:\Windows\system32\wbem
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2009-11-26 35384]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-09-29 270912]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2010-02-24 191616]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-12-21 125296]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-07-09 140800]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-09-02 7369728]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2009-08-23 56320]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-07-09 1222144]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2009-09-19 127488]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2009-09-19 18944]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2009-09-19 161280]
S3 TFsExDisk;TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2011-01-12 810144]
R2 OberonGameConsoleService;Oberon Media Game Console service; C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe [2009-09-15 44312]
R3 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe [2014-03-11 247968]
S2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe [2014-03-11 193696]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-11 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15 268464]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2011-01-12 42360]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-11 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Peet at 2015-04-17 21:05:11
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 20 GB (26%) free of 76 GB
Total RAM: 3037 MB (41% free)
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe"
C:\Windows\System32\alg.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
C:\Windows\system32\wbem\wmiprvse.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Users\Peet\AppData\Local\Akamai\netsession_win.exe"
"C:/Users/Peet/AppData/Local/Akamai/netsession_win.exe" --client
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ASUS\Asus WebStorage\EeeStorageUploader.exe" @@ca1becf4-3abd-4a4f-b913-6940691d8f9a 6bbdf765-1480-489d-8567-efeb97eb74c0 Odeslat položku 635646997794669063
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe"
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2768.0.341272570\716972785" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,18,41 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x2a42 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.1892 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.39.1525401831\2013764764" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2768.49.1950100857\625765845" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.73.1725191076\1373576093" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.76.1671264195\722792493" /prefetch:673131151
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\trend micro\Peet.exe" /silentautolog
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.97.78789026\1270764663" /prefetch:673131151
C:\Windows\system32\AUDIODG.EXE 0x8cc
taskmgr.exe /3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChromeDashboard/Default/*ChromeSuggestions/Mixed/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Extension (public)/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/None/ExtensionUseSafeInstallation/Control/*GoogleNow/Enable/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/DevHQPAllowMatchInTLDAndSchemeR2_PostPeriod/*PasswordGeneration/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/*SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SafeBrowsingIncidentReportingService/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*ShowAppLauncherPromo/ShowPromoUntilDismissed/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_02/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_19/*UMA-Uniformity-Trial-50-Percent/group_01/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*UwSInterstitialStatus/On/*V8CacheOptions/default/*V8VerifyHeap/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Control/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=2768 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --disable-accelerated-video-decode --channel="2768.105.1297938078\490699292" /prefetch:673131151
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Peet\Desktop\Míša-práce\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DriverToolkit Autorun.job - C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe --autorun
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-23 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files (x86)\google\googletoolbar.dll [2011-11-20 745472]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-23 172968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files (x86)\google\googletoolbar.dll [2011-11-20 745472]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11 1431712]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"EeeStorageBackup"=C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe [2009-08-25 947472]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-08 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-08 387608]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-08 365592]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-01 323584]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-07-30 617856]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-12 2918656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"Akamai NetSession Interface"=C:\Users\Peet\AppData\Local\Akamai\netsession_win.exe [2014-10-30 4673432]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-12-11 30877280]
"AdobeBridge"= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ADSMTray]
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe [2009-06-24 272952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2009-11-26 3058304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-04 218408]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-09-11 2244608]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-08-20 170624]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
"NPSStartup"= []
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2014-06-04 2024800]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware (cleanup)"=C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [2015-03-17 54072]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
Metacafe.lnk - C:\Program Files (x86)\Metacafe\MetacafeAgent.exe
C:\Users\Peet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
ABF0.lnk - C:\ProgramData\{b5548447-4d6f-8fc9-b554-484474d6111d}\ABF0.exe
game-of-thrones-s05e03-farsi-persian-subtitle.lnk - C:\ProgramData\{65b3cac9-ee7c-5997-65b3-3cac9ee72b27}\game-of-thrones-s05e03-farsi-persian-subtitle.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-02 259584]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"HideSCAHealth"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-04-17 20:09:54 ----D---- C:\Program Files\trend micro
2015-04-17 20:09:52 ----D---- C:\rsit
2015-04-15 13:30:11 ----D---- C:\ProgramData\Malwarebytes
2015-04-15 08:49:02 ----A---- C:\autoexec.bat
2015-04-15 08:47:23 ----D---- C:\Program Files\Enigma Software Group
2015-04-15 08:32:19 ----D---- C:\AdwCleaner
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-15 00:10:47 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-15 00:10:47 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-15 00:10:47 ----A---- C:\Windows\system32\wuapp.exe
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wups2.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wups.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wudriver.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wucltux.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wuapi.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 00:10:46 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-15 00:10:43 ----A---- C:\Windows\system32\appraiser.dll
2015-04-15 00:10:43 ----A---- C:\Windows\system32\acmigration.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\invagent.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\generaltel.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\devinv.dll
2015-04-15 00:10:42 ----A---- C:\Windows\system32\aeinv.dll
2015-04-15 00:10:41 ----A---- C:\Windows\system32\aepic.dll
2015-04-15 00:10:41 ----A---- C:\Windows\system32\aepdu.dll
2015-04-15 00:10:33 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-15 00:10:32 ----A---- C:\Windows\system32\ntdll.dll
2015-04-15 00:10:31 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-04-15 00:10:30 ----A---- C:\Windows\system32\KernelBase.dll
2015-04-15 00:10:30 ----A---- C:\Windows\system32\kernel32.dll
2015-04-15 00:10:28 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-04-15 00:10:26 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-04-15 00:10:26 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-04-15 00:10:26 ----A---- C:\Windows\system32\wow64win.dll
2015-04-15 00:10:26 ----A---- C:\Windows\system32\schannel.dll
2015-04-15 00:10:25 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-04-15 00:10:25 ----A---- C:\Windows\system32\wow64.dll
2015-04-15 00:10:25 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-15 00:10:24 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-04-15 00:10:24 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-04-15 00:10:24 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\winsrv.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\wdigest.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\srcore.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\rstrui.exe
2015-04-15 00:10:24 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\kerberos.dll
2015-04-15 00:10:24 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-15 00:10:24 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-15 00:10:24 ----A---- C:\Windows\system32\conhost.exe
2015-04-15 00:10:23 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-04-15 00:10:23 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-04-15 00:10:23 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-15 00:10:23 ----A---- C:\Windows\system32\sspicli.dll
2015-04-15 00:10:23 ----A---- C:\Windows\system32\smss.exe
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-04-15 00:10:22 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-04-15 00:10:22 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\srclient.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\secur32.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\ntvdm64.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\lsass.exe
2015-04-15 00:10:22 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\credssp.dll
2015-04-15 00:10:22 ----A---- C:\Windows\system32\auditpol.exe
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-15 00:10:21 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-15 00:10:21 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-04-15 00:10:21 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-04-15 00:10:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-04-15 00:10:21 ----A---- C:\Windows\system32\wow64cpu.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-15 00:10:20 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-15 00:10:19 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-15 00:10:18 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-15 00:10:18 ----A---- C:\Windows\SYSWOW64\user.exe
2015-04-15 00:10:18 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-04-15 00:10:18 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-04-15 00:10:18 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-15 00:10:17 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-04-15 00:10:17 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-04-15 00:10:17 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-04-15 00:10:17 ----A---- C:\Windows\system32\msobjs.dll
2015-04-15 00:10:17 ----A---- C:\Windows\system32\msaudite.dll
2015-04-15 00:10:17 ----A---- C:\Windows\system32\adtschema.dll
2015-04-15 00:10:06 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-15 00:10:06 ----A---- C:\Windows\system32\msxml3.dll
2015-04-15 00:10:05 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-15 00:10:05 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-15 00:10:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-15 00:10:04 ----A---- C:\Windows\system32\gdi32.dll
2015-04-15 00:10:04 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-15 00:10:03 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-04-15 00:10:03 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-04-15 00:10:03 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-04-15 00:10:03 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-15 00:10:03 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-15 00:10:02 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-04-15 00:10:02 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-04-15 00:10:01 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-04-15 00:10:01 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 00:10:01 ----A---- C:\Windows\system32\iernonce.dll
2015-04-15 00:10:00 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-04-15 00:09:58 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-04-15 00:09:58 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-04-15 00:09:58 ----A---- C:\Windows\system32\urlmon.dll
2015-04-15 00:09:58 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-04-15 00:09:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-04-15 00:09:57 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 00:09:56 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-04-15 00:09:56 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-04-15 00:09:56 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 00:09:56 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-15 00:09:56 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-15 00:09:55 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-04-15 00:09:55 ----A---- C:\Windows\system32\iesetup.dll
2015-04-15 00:09:54 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-15 00:09:53 ----A---- C:\Windows\system32\iertutil.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-04-15 00:09:52 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-04-15 00:09:52 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-15 00:09:51 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-15 00:09:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-04-15 00:09:49 ----A---- C:\Windows\system32\ieui.dll
2015-04-15 00:09:49 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-15 00:09:48 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-15 00:09:48 ----A---- C:\Windows\system32\ieframe.dll
2015-04-15 00:09:47 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-15 00:09:47 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-15 00:09:47 ----A---- C:\Windows\system32\jscript9.dll
2015-04-15 00:09:46 ----A---- C:\Windows\system32\wininet.dll
2015-04-15 00:09:46 ----A---- C:\Windows\system32\vbscript.dll
2015-04-15 00:09:45 ----A---- C:\Windows\system32\msrating.dll
2015-04-15 00:09:45 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-15 00:09:43 ----A---- C:\Windows\system32\mshtml.dll
2015-04-15 00:09:18 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-15 00:09:18 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-15 00:09:18 ----A---- C:\Windows\system32\clfs.sys
2015-04-13 17:26:11 ----D---- C:\ProgramData\jpeagcoeibocajbofipcninagikacfln
2015-04-13 17:26:10 ----D---- C:\ProgramData\14048911428037955116
2015-04-13 17:25:24 ----D---- C:\ProgramData\{b5548447-4d6f-8fc9-b554-484474d6111d}
2015-04-13 17:25:16 ----D---- C:\ProgramData\dmccnicolgdffdjaehjompehmllchfcn
2015-04-13 17:24:12 ----D---- C:\ProgramData\{65b3cac9-ee7c-5997-65b3-3cac9ee72b27}
2015-04-13 17:24:11 ----D---- C:\ProgramData\{5c8c806a-014a-f592-5c8c-c806a01401a8}
2015-04-08 23:14:21 ----D---- C:\ProgramData\ESET
2015-04-08 23:14:21 ----D---- C:\Program Files\ESET
2015-04-06 03:01:02 ----SD---- C:\Windows\SYSWOW64\GWX
2015-04-06 03:01:02 ----SD---- C:\Windows\system32\GWX
======List of files/folders modified in the last 1 month======
2015-04-17 21:05:12 ----D---- C:\Windows\Temp
2015-04-17 21:05:03 ----D---- C:\Windows\Prefetch
2015-04-17 20:13:18 ----D---- C:\Windows\system32\config
2015-04-17 20:09:54 ----RD---- C:\Program Files
2015-04-16 03:02:00 ----SHD---- C:\Windows\Installer
2015-04-16 03:02:00 ----D---- C:\ProgramData\Skype
2015-04-16 03:01:53 ----RD---- C:\Program Files (x86)\Skype
2015-04-16 03:01:52 ----D---- C:\Program Files (x86)\Common Files
2015-04-16 03:01:51 ----D---- C:\Windows\SysWOW64
2015-04-16 03:00:48 ----SHD---- C:\System Volume Information
2015-04-16 01:34:02 ----D---- C:\Windows\AppCompat
2015-04-15 22:15:30 ----RD---- C:\Program Files (x86)
2015-04-15 22:15:26 ----HD---- C:\ProgramData
2015-04-15 18:48:51 ----D---- C:\Windows\system32\drivers
2015-04-15 13:03:18 ----D---- C:\Users\Peet\AppData\Roaming\Skype
2015-04-15 12:56:53 ----D---- C:\Windows\System32
2015-04-15 12:56:53 ----D---- C:\Windows\inf
2015-04-15 12:56:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-15 11:32:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-04-15 10:38:49 ----D---- C:\Windows\system32\Tasks
2015-04-15 08:34:18 ----D---- C:\ProgramData\ICQ
2015-04-15 03:43:17 ----D---- C:\Windows\Microsoft.NET
2015-04-15 03:42:39 ----RSD---- C:\Windows\assembly
2015-04-15 03:33:01 ----D---- C:\Windows\winsxs
2015-04-15 03:29:30 ----SD---- C:\Windows\system32\CompatTel
2015-04-15 03:29:30 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-04-15 03:29:30 ----D---- C:\Windows\system32\cs-CZ
2015-04-15 03:29:30 ----D---- C:\Windows\PolicyDefinitions
2015-04-15 03:29:29 ----D---- C:\Windows\system32\appraiser
2015-04-15 03:29:29 ----D---- C:\Windows\AppPatch
2015-04-15 03:29:22 ----D---- C:\Windows\SYSWOW64\en-US
2015-04-15 03:29:22 ----D---- C:\Program Files\Internet Explorer
2015-04-15 03:29:21 ----D---- C:\Windows\system32\en-US
2015-04-15 03:29:19 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-15 03:11:49 ----D---- C:\ProgramData\Microsoft Help
2015-04-15 03:10:41 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-04-15 00:06:55 ----D---- C:\Windows\system32\catroot2
2015-04-08 23:14:56 ----D---- C:\Windows\system32\DriverStore
2015-04-06 03:01:15 ----D---- C:\Windows\Logs
2015-04-04 10:00:08 ----D---- C:\Windows\system32\NDF
2015-03-25 04:17:43 ----D---- C:\Windows\system32\wbem
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2009-11-26 35384]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 408600]
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys [2009-06-18 15928]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-09-29 270912]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2010-02-24 191616]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-12-21 125296]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-07-09 140800]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-09-02 7369728]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys [2009-08-23 56320]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-07-09 1222144]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2009-09-19 127488]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2009-09-19 18944]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2009-09-19 161280]
S3 TFsExDisk;TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2011-01-12 810144]
R2 OberonGameConsoleService;Oberon Media Game Console service; C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe [2009-09-15 44312]
R3 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
R3 BBUpdate;BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe [2014-03-11 247968]
S2 BBSvc;BingBar Service; C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe [2014-03-11 193696]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-11 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15 268464]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2011-01-12 42360]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-11 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------