Logfile of random's system information tool 1.10 (written by random/random)
Run by Pajiss at 2015-05-24 19:00:48
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 12 GB (12%) free of 100 GB
Total RAM: 2047 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:01:00, on 24.5.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17801)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AMD\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe
C:\Users\Pajiss\AppData\Local\Akamai\netsession_win.exe
C:\Users\Pajiss\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\AMD\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe
C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Windows\system32\wuauclt.exe
D:\Program Files (x86)\Steam\Steam.exe
D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\cmd.exe
C:\Windows\system32\conhost.exe
C:\Users\Pajiss\AppData\Roaming\QuickScan\chromeqs.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Pajiss\Downloads\RSIT.exe
C:\Program Files\trend micro\Pajiss.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hp&ts=142 ... 4_4099913D
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... nkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hp&ts=142 ... 4_4099913D
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.key-find.com/web/?type=ds&ts ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... 4_4099913D
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll
O2 - BHO: cb53b500f3e90131a6091fb939dcadf40061915 - {11111111-1111-1111-1111-110611191115} - C:\Program Files\Senses\Senses-bho.dll
O2 - BHO: 68671f62832e4803b34065d441f9a2210065123 - {11111111-1111-1111-1111-110611511123} - C:\Program Files\iWebar\iWebar-bho.dll
O2 - BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files\XTab\SupTab.dll
O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - C:\Program Files\XTab\SupTab.dll
O2 - BHO: ArcPluginIEBHO - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - D:\Program Files (x86)\mmorpg\Arc\Plugins\ArcPluginIE.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: YTAHelperBHO - {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} - C:\ProgramData\YTAHelper\YTAHelper.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
O4 - HKLM\..\Run: [NCUpdateHelper] C:\Program Files\NCWest\NCLauncher\NCUpdateHelper.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [GoobzoYouTubeAccelerator] "C:\Program Files\YouTube Accelerator\YouTubeAccelerator.exe" /startup
O4 - HKCU\..\Run: [Advanced SystemCare 8] "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Pajiss\AppData\Local\Akamai\netsession_win.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) - IObit - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Arc Service (ArcService) - Perfect World Entertainment Inc - D:\Program Files (x86)\mmorpg\Arc\ArcService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: IHProtect Service - XTab system - C:\Program Files\XTab\ProtectService.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - Windows SysTool - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\PROGRA~1\YOUTUB~1\YouTubeAcceleratorService.exe
--
End of file - 8511 bytes
======Scheduled tasks folder======
C:\Windows\tasks\9c284963-be7d-4208-838d-1a83630cd92b-1.job - C:\Program Files\Senses\Senses-codedownloader.exe /rawdata=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
C:\Windows\tasks\9c284963-be7d-4208-838d-1a83630cd92b-11.job - C:\Program Files\Senses\9c284963-be7d-4208-838d-1a83630cd92b-11.exe /rawdata=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
C:\Windows\tasks\9c284963-be7d-4208-838d-1a83630cd92b-3.job - C:\Program Files\Senses\9c284963-be7d-4208-838d-1a83630cd92b-3.exe /rawdata=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
C:\Windows\tasks\9c284963-be7d-4208-838d-1a83630cd92b-4.job - C:\Program Files\Senses\9c284963-be7d-4208-838d-1a83630cd92b-4.exe /rawdata=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
C:\Windows\tasks\9c284963-be7d-4208-838d-1a83630cd92b-5.job - C:\Program Files\Senses\9c284963-be7d-4208-838d-1a83630cd92b-5.exe /rawdata=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
C:\Windows\tasks\9c284963-be7d-4208-838d-1a83630cd92b-5_user.job - C:\Program Files\Senses\9c284963-be7d-4208-838d-1a83630cd92b-5.exe /rawdata=vKozacn/5TyEU/cmmaUU4/rmEh6DyzmH6O2MRaTQ1t93CSPuIO1QPyyurobqNZUBkYEPCW3LD/E4scTMK9b/qzQRMx2r1OSKJA8YCmHotibAOw/P1I/hkzDzWBnI8k1gHl52g0jjpJDCPT6KMEN0LABBQTzBEacnN6wfq2upQm4lsd6vagcwczERIeY9NDKQSdnnavPBPsMuuUiBis2aUxkKtFaVnut02cq49ecm1iUhSWZXgo+IroRaLfVno0zzlRT/r3lBp6n/5bWBPOyMoyem96i7abn34otDnV/f1lqhx8sBenHde2raBR6e+3syiSHrZmQLSxnXwBsbTToNzmbMum0noPgM9rjRbJZUKbi883dLF/KH19O2wgpApr4Q17CcvkmNg+Ft8OxOqgZjDzJQVCo5PFUkgqmTuFqpVYEbAXs4viH7C0n4CFlvHC53yke5jIcEcpdOigxodWNw61amptlOOX6ctTUaQayhu1lJhhaWuDgzITPSTtuAo3Tml5h6Xt2/vle3ClaudZsF4j+ykWuTfDkG4zvosR9prpMbV1ObWXlkOJ+5dg+OJ/X6fRmY5jf9nnT2qkaeSODYaPNtf/1N61uB5Uv6wYYT0dlwQyyiLhKohxTcZ7wDwD1BZgLd2Vl9oCe42vaOEHGHBuCcuLx+8GyX9T3LnhmI0Ao0Y02MXSAvZoD/g+ta8VF8JNQBiJdxjp37cZvImgEgpOsljrqhT1wQNFmFJte2g3wJ2JyySTwZ7/J69PqIwd0Xqz5/SW9w4ZT3pM2faMEU7fuQcvyd5TSCW9PdUfCW8T/2AQJOMHfkb/1MNxvyTdO0eNfThRsX16xQEcvGbSphXBPnRokzkdOubv/UFwXlzeUmXxn4xpNMvRGrOs326YNoGnYr1oEUShKwYCLgrmYQipjssvysY+B4T6lgU48gmysfrlCcfm6IsxuZf+W/7Eqs+waNHP7ApAQ6hugf7wuMJqE5OGuDDZAf3ko2gd7P3FDjlgfY81xjaiYxzjBbleMNl5fSL6rOwehT4Qe4D2H92Xd1VZ0e1udLHDERGl6Utb6B5josM2fiQhnrKZWBm0ZJxZbgz415L0zPE6TQdG0g0GxXmS3tfDBDvOYfnVtyEmtSfDmNXdlRZgD9XV9d2LrsSXw1sSqschVf6AoKjk3ukXpuBykoIOpFZNNdkFD2nIw=
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DriverToolkit Autorun.job - C:\Program Files\DriverToolkit\DriverToolkit.exe --autorun
C:\Windows\tasks\e11dc693-c9cc-43ef-bb54-353b88700ac1-1.job - C:\Program Files\iWebar\iWebar-codedownloader.exe /rawdata=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
C:\Windows\tasks\e11dc693-c9cc-43ef-bb54-353b88700ac1-11.job - C:\Program Files\iWebar\e11dc693-c9cc-43ef-bb54-353b88700ac1-11.exe /rawdata=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
C:\Windows\tasks\e11dc693-c9cc-43ef-bb54-353b88700ac1-4.job - C:\Program Files\iWebar\e11dc693-c9cc-43ef-bb54-353b88700ac1-4.exe /rawdata=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
C:\Windows\tasks\e11dc693-c9cc-43ef-bb54-353b88700ac1-5.job - C:\Program Files\iWebar\e11dc693-c9cc-43ef-bb54-353b88700ac1-5.exe /rawdata=iuVrs3TgZIqEHGijfjx0QMrXWF54Sh+xXX793DApcIxuCFsu8lKxugh1EzKXG2Z/vnoywvdZRbjGiESFUboJv/3On+HcZ7C4sGgALcBzRS5ean+eYQv/Qfb3ax5UbeF0Y82diZ9aCbCH7Z3rJkRN6iDCVsFkVBVEF1Ii7+wewSwlsd6vagcwczERIeY9NDKQSdnnavPBPsMuuUiBis2aUxkKtFaVnut02cq49ecm1iUhSWZXgo+IroRaLfVno0zzlRT/r3lBp6n/5bWBPOyMoyem96i7abn34otDnV/f1lqhx8sBenHde2raBR6e+3syiSHrZmQLSxnXwBsbTToNzmbMum0noPgM9rjRbJZUKbi883dLF/KH19O2wgpApr4Q17CcvkmNg+Ft8OxOqgZjDzJQVCo5PFUkgqmTuFqpVYEbAXs4viH7C0n4CFlvHC53yke5jIcEcpdOigxodWNw61amptlOOX6ctTUaQayhu1lJhhaWuDgzITPSTtuAo3TmjAqWCIxKLsf+Bdlr6nkgAp/VtrUArQTeyr8ByWKP0MzrRv0J2Iva4kBPmfUboIvnsxX5dt6zjW/2qW64XhEilICm35/dXuvlKGobNwwUP1BmO92mSPqjTMcbC4uDSaKSBoxFkptdSauRI7+LDjwyO4NZqGJqQj4Y3vO0HLY6zww0Y02MXSAvZoD/g+ta8VF8JNQBiJdxjp37cZvImgEgpOsljrqhT1wQNFmFJte2g3wJ2JyySTwZ7/J69PqIwd0Xqz5/SW9w4ZT3pM2faMEU7fuQcvyd5TSCW9PdUfCW8T/2AQJOMHfkb/1MNxvyTdO0eNfThRsX16xQEcvGbSphXBPnRokzkdOubv/UFwXlzeUmXxn4xpNMvRGrOs326YNoGnYr1oEUShKwYCLgrmYQipjssvysY+B4T6lgU48gmysfrlCcfm6IsxuZf+W/7Eqs+waNHP7ApAQ6hugf7wuMJqE5OGuDDZAf3ko2gd7P3FDjlgfY81xjaiYxzjBbleMNtTI0WRps9WrkZPLmsNFk3WeiQaZIeAd8H+okya/x4kmV8LOoBWV3qMzV1NuRYLMBp6rtdG9SmyR3kYTaeKZd3qeRYs1E+3kocfcivQeF3dBEQhrDN47b7JIepBNkI46aCGmBjqvkmOjmxpZ4xBXSzMVYwk/QfBkQd4ZiapVKNEg=
C:\Windows\tasks\e11dc693-c9cc-43ef-bb54-353b88700ac1-5_user.job - C:\Program Files\iWebar\e11dc693-c9cc-43ef-bb54-353b88700ac1-5.exe /rawdata=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
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineCore1d04159ae6e7e20.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2015-01-18 752960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191115}]
Senses - C:\Program Files\Senses\Senses-bho.dll [2014-11-03 667552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611511123}]
iWebar - C:\Program Files\iWebar\iWebar-bho.dll [2014-11-03 667552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
IETabPage Class - C:\Program Files\XTab\SupTab.dll [2015-05-20 538240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]
LuckyTab Class - C:\Program Files\XTab\SupTab.dll [2015-05-20 538240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84BFE29A-8139-402a-B2A4-C23AE9E1A75F}]
ArcPluginIEBHO Class - D:\Program Files (x86)\mmorpg\Arc\Plugins\ArcPluginIE.dll [2015-05-07 125448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2014-12-15 419176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Surfing Protection - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2014-10-17 669984]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}]
YTAHelper - C:\ProgramData\YTAHelper\YTAHelper.dll [2014-06-15 434024]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-10-01 5088456]
"StartCCC"=C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe [2014-11-20 748232]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2015-01-18 12111576]
"NCUpdateHelper"=C:\Program Files\NCWest\NCLauncher\NCUpdateHelper.exe [2015-03-29 526240]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=D:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"GoobzoYouTubeAccelerator"=C:\Program Files\YouTube Accelerator\YouTubeAccelerator.exe [2014-11-03 2227048]
"Advanced SystemCare 8"=C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe [2014-11-07 2425632]
"Akamai NetSession Interface"=C:\Users\Pajiss\AppData\Local\Akamai\netsession_win.exe [2014-10-29 4673432]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-05-24 19:00:49 ----D---- C:\Program Files\trend micro
2015-05-24 19:00:48 ----D---- C:\rsit
2015-05-24 18:58:59 ----D---- C:\Users\Pajiss\AppData\Roaming\QuickScan
2015-05-24 14:48:51 ----A---- C:\Windows\system32\drivers\stream.sys
2015-05-23 14:32:48 ----D---- C:\ProgramData\IDM
2015-05-23 14:32:35 ----D---- C:\Users\Pajiss\AppData\Roaming\IDM
2015-05-20 19:37:27 ----D---- C:\Users\Pajiss\AppData\Roaming\Picexa Viewer
2015-05-20 19:37:27 ----D---- C:\Program Files\Picexa
2015-05-14 23:10:13 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-14 22:44:45 ----A---- C:\Windows\system32\schannel.dll
2015-05-14 22:44:45 ----A---- C:\Windows\system32\certcli.dll
2015-05-14 22:44:34 ----A---- C:\Windows\system32\invagent.dll
2015-05-14 22:44:34 ----A---- C:\Windows\system32\generaltel.dll
2015-05-14 22:44:34 ----A---- C:\Windows\system32\appraiser.dll
2015-05-14 22:44:34 ----A---- C:\Windows\system32\aeinv.dll
2015-05-14 22:44:34 ----A---- C:\Windows\system32\acmigration.dll
2015-05-14 22:44:33 ----A---- C:\Windows\system32\devinv.dll
2015-05-14 22:44:33 ----A---- C:\Windows\system32\aepic.dll
2015-05-14 22:44:33 ----A---- C:\Windows\system32\aepdu.dll
2015-05-14 22:44:28 ----A---- C:\Windows\system32\win32k.sys
2015-05-14 22:44:28 ----A---- C:\Windows\system32\FntCache.dll
2015-05-14 22:44:28 ----A---- C:\Windows\system32\DWrite.dll
2015-05-14 22:44:26 ----A---- C:\Windows\system32\services.exe
2015-05-14 22:44:25 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-14 22:44:25 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-05-14 22:44:25 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-05-14 22:44:24 ----A---- C:\Windows\system32\urlmon.dll
2015-05-14 22:44:24 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-14 22:44:24 ----A---- C:\Windows\system32\iernonce.dll
2015-05-14 22:44:24 ----A---- C:\Windows\system32\iedkcs32.dll
2015-05-14 22:44:24 ----A---- C:\Windows\system32\ie4uinit.exe
2015-05-14 22:44:23 ----A---- C:\Windows\system32\msfeeds.dll
2015-05-14 22:44:23 ----A---- C:\Windows\system32\jsproxy.dll
2015-05-14 22:44:23 ----A---- C:\Windows\system32\jscript9diag.dll
2015-05-14 22:44:23 ----A---- C:\Windows\system32\ieUnatt.exe
2015-05-14 22:44:23 ----A---- C:\Windows\system32\ieapfltr.dll
2015-05-14 22:44:23 ----A---- C:\Windows\system32\dxtmsft.dll
2015-05-14 22:44:22 ----A---- C:\Windows\system32\msrating.dll
2015-05-14 22:44:22 ----A---- C:\Windows\system32\iesetup.dll
2015-05-14 22:44:21 ----A---- C:\Windows\system32\wininet.dll
2015-05-14 22:44:21 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-05-14 22:44:21 ----A---- C:\Windows\system32\dxtrans.dll
2015-05-14 22:44:20 ----A---- C:\Windows\system32\ieui.dll
2015-05-14 22:44:20 ----A---- C:\Windows\system32\ieframe.dll
2015-05-14 22:44:19 ----A---- C:\Windows\system32\mshtmled.dll
2015-05-14 22:44:18 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-05-14 22:44:18 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-05-14 22:44:18 ----A---- C:\Windows\system32\iertutil.dll
2015-05-14 22:44:17 ----A---- C:\Windows\system32\mshtml.dll
2015-05-14 22:44:16 ----A---- C:\Windows\system32\vbscript.dll
2015-05-14 22:44:16 ----A---- C:\Windows\system32\jscript9.dll
2015-05-14 22:44:16 ----A---- C:\Windows\system32\jscript.dll
2015-05-14 22:41:05 ----A---- C:\Windows\system32\InkEd.dll
2015-05-14 22:41:04 ----A---- C:\Windows\system32\jnwmon.dll
2015-05-11 02:34:37 ----A---- C:\Windows\system32\unrar.dll
2015-05-11 02:34:37 ----A---- C:\Windows\system32\bassmod.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\UtcResources.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\sspisrv.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\sspicli.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\srclient.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\secur32.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\rstrui.exe
2015-05-09 20:26:03 ----A---- C:\Windows\system32\msobjs.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\msaudite.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\lsass.exe
2015-05-09 20:26:03 ----A---- C:\Windows\system32\lsasrv.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-05-09 20:26:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-05-09 20:26:03 ----A---- C:\Windows\system32\diagtrack.dll
2015-05-09 20:26:03 ----A---- C:\Windows\system32\auditpol.exe
2015-05-09 20:26:03 ----A---- C:\Windows\system32\adtschema.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\wdigest.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\typeperf.exe
2015-05-09 20:26:02 ----A---- C:\Windows\system32\TSpkg.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\tracerpt.exe
2015-05-09 20:26:02 ----A---- C:\Windows\system32\srcore.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\smss.exe
2015-05-09 20:26:02 ----A---- C:\Windows\system32\sechost.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\relog.exe
2015-05-09 20:26:02 ----A---- C:\Windows\system32\msv1_0.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\logman.exe
2015-05-09 20:26:02 ----A---- C:\Windows\system32\diskperf.exe
2015-05-09 20:26:02 ----A---- C:\Windows\system32\credssp.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\apisetschema.dll
2015-05-09 20:26:02 ----A---- C:\Windows\system32\advapi32.dll
2015-05-09 20:26:01 ----A---- C:\Windows\system32\tdh.dll
2015-05-09 20:26:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-05-09 20:26:01 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-05-09 20:26:01 ----A---- C:\Windows\system32\ntdll.dll
2015-05-09 20:26:01 ----A---- C:\Windows\system32\ncrypt.dll
2015-05-09 20:26:01 ----A---- C:\Windows\system32\kerberos.dll
2015-05-09 20:26:01 ----A---- C:\Windows\system32\csrsrv.dll
2015-05-09 20:25:05 ----A---- C:\Windows\system32\poqexec.exe
2015-05-09 20:24:43 ----A---- C:\Windows\system32\shimeng.dll
2015-05-09 20:24:43 ----A---- C:\Windows\system32\sdbinst.exe
2015-05-09 20:24:43 ----A---- C:\Windows\system32\apphelp.dll
2015-05-09 20:24:43 ----A---- C:\Windows\system32\aelupsvc.dll
2015-05-08 21:11:12 ----ASH---- C:\pagefile.sys
2015-04-25 09:22:46 ----A---- C:\Windows\system32\dwmcore.dll
2015-04-25 09:22:46 ----A---- C:\Windows\system32\dwmapi.dll
2015-04-25 09:21:55 ----A---- C:\Windows\system32\wpdshext.dll
2015-04-25 09:18:30 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-25 09:18:30 ----A---- C:\Windows\system32\msxml3.dll
2015-04-25 09:18:17 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-25 09:18:17 ----A---- C:\Windows\system32\clfs.sys
2015-04-25 09:15:38 ----A---- C:\Windows\system32\gdi32.dll
2015-04-25 09:15:30 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wups2.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wups.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wudriver.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wucltux.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wuapp.exe
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wuapi.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-25 09:13:30 ----A---- C:\Windows\system32\WinSetupUI.dll
======List of files/folders modified in the last 1 month======
2015-05-24 19:01:00 ----D---- C:\Windows\Prefetch
2015-05-24 19:00:51 ----D---- C:\Windows\Temp
2015-05-24 19:00:49 ----RD---- C:\Program Files
2015-05-24 18:48:40 ----AD---- C:\ProgramData\TEMP
2015-05-24 18:27:58 ----D---- C:\Program Files\Common Files\Steam
2015-05-24 14:59:07 ----D---- C:\Windows\system32\config
2015-05-24 14:48:53 ----D---- C:\Windows\system32\drivers
2015-05-24 14:48:51 ----D---- C:\Windows\winsxs
2015-05-24 14:48:50 ----D---- C:\Windows\system32\catroot2
2015-05-24 14:48:40 ----SHD---- C:\System Volume Information
2015-05-24 14:48:11 ----D---- C:\Windows\inf
2015-05-24 14:48:11 ----D---- C:\Windows
2015-05-23 14:32:48 ----HD---- C:\ProgramData
2015-05-22 20:29:56 ----D---- C:\ProgramData\ProductData
2015-05-20 19:33:50 ----D---- C:\Windows\system32\en-US
2015-05-20 19:33:49 ----D---- C:\Windows\system32\cs-CZ
2015-05-20 19:33:33 ----D---- C:\Program Files\XTab
2015-05-20 19:32:22 ----D---- C:\ProgramData\WindowsMangerProtect
2015-05-20 14:43:35 ----D---- C:\Windows\system32\Tasks
2015-05-20 14:43:35 ----D---- C:\Program Files\Opera
2015-05-20 02:49:35 ----D---- C:\Users\Pajiss\AppData\Roaming\Might & Magic Heroes VI
2015-05-18 09:10:44 ----D---- C:\Windows\SoftwareDistribution
2015-05-18 09:09:03 ----D---- C:\Windows\debug
2015-05-17 20:12:43 ----D---- C:\Windows\System32
2015-05-17 20:12:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-05-17 19:48:05 ----SHD---- C:\Windows\Installer
2015-05-17 19:43:34 ----D---- C:\Windows\Tasks
2015-05-17 11:29:35 ----D---- C:\Windows\system32\NDF
2015-05-15 06:07:46 ----D---- C:\Windows\rescache
2015-05-15 05:39:10 ----D---- C:\Windows\Microsoft.NET
2015-05-15 05:37:50 ----RSD---- C:\Windows\assembly
2015-05-15 00:11:31 ----D---- C:\Windows\AppCompat
2015-05-15 00:06:08 ----SD---- C:\Windows\system32\CompatTel
2015-05-15 00:06:08 ----D---- C:\Windows\system32\wbem
2015-05-15 00:06:08 ----D---- C:\Windows\system32\appraiser
2015-05-15 00:06:08 ----D---- C:\Windows\AppPatch
2015-05-15 00:06:08 ----D---- C:\Program Files\Internet Explorer
2015-05-14 23:10:07 ----D---- C:\Windows\system32\MRT
2015-05-14 22:49:59 ----D---- C:\Program Files\Windows Journal
2015-05-09 19:07:59 ----D---- C:\AC-DC - Discography 1974-2009 Mp3 320 kbps
2015-04-30 10:07:46 ----A---- C:\Windows\system32\MRT.exe
2015-04-25 21:20:26 ----D---- C:\Windows\system32\AdvancedInstallers
2015-04-25 21:20:19 ----D---- C:\Windows\system32\DriverStore
2015-04-25 21:20:19 ----D---- C:\Windows\system32\drivers\UMDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-11-03 243128]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2014-10-10 191928]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2014-10-10 135296]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2015-01-18 23840]
R2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\AMD\ATI.ACE\Fuel\i386\AODDriver2.sys [2014-02-11 50400]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2014-10-10 123424]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 16955392]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 472576]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2014-06-21 77824]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2015-01-18 3343832]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NVNET;NVIDIA nForce 10/100/1000 Mbps Ethernet ; C:\Windows\system32\DRIVERS\nvmf6232.sys [2015-01-18 296936]
S2 SPDRIVER_1.38.0.1432;SPDRIVER_1.38.0.1432; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1432\jsdrv.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2015-01-18 14848]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys []
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2015-01-18 49664]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usbser;USB Serial emulation modem driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 28160]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUSB;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 AdvancedSystemCareService8;Advanced SystemCare Service 8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [2014-11-04 815392]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-11-21 212992]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [2014-11-20 276992]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2014-10-01 1349576]
R2 IHProtect Service;IHProtect Service; C:\Program Files\XTab\ProtectService.exe [2015-05-20 157824]
R2 WindowsMangerProtect;WindowsMangerProtect Service; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [2015-05-20 602112]
R2 YouTubeAcceleratorService;YouTubeAcceleratorService; C:\PROGRA~1\YOUTUB~1\YouTubeAcceleratorService.exe [2014-11-03 1510248]
R3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2015-05-15 837824]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-05 116648]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2014-11-04 2630432]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-14 268464]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 ArcService;Arc Service; D:\Program Files (x86)\mmorpg\Arc\ArcService.exe [2015-05-07 88584]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-05 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-04-21 102912]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu
Zdravim 
Je tento OS legalni? Opravdu neni bezne, ze by si bezny domaci uzivatel kupoval nejvyssi licenci, ktera zacina na 5.000 Kc s funkcemi, ktere nevyuzije, misto obycejne licence Home Premium, ktera stoji polovic 
A licence na ESET je radne zakoupena?




Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.