Neustále objevující se malware
Napsal: 12 čer 2015 00:01
Zdar, asi tak půl roku nazpátek jsem se rozhodl si přeinstalovat windows, že by to mohlo po pár letech trochu urychlit compa, no moc to nepomohlo.
Dva měsíce na to už jsem řešil, že se mi všechny prohlížeče přenastavili na nějaký vyhledávač, smazat to normálně nešlo, řešil jsem to přes nějaký prográmky.
Dále jsem pak odstraňoval i nějaké bary a další blbost. Měsíc nazpátek jsem opět měl ten samý problem, přenastavené prohlížeče, bary, blbosti nainstalované. Vše se mi vesele nainstalovalo samo uprostřed hraní, aniž bych 14 dní před tim něco instaloval.
Vždycky jsem se toho nějak zbavil.
Dneska opět se mi nainstalovali nějaké blbosti a já prostě nevim kde se mi to tam furt bere. Nejsem včerejší. Neklikám slepě na next. Všechno si čtu, dávám vlastní instalace, abych viděl co se mi dostane do počítače.
Něco jsem odstranil. Youtube accelerator všechny pokyny k odinstalaci ignoruje a shopper-pro mi hlásí, že nemůže se odinstalovat, když probíhá jiná instalace.
Nejradši bych to přeinstaloval jenže se mi to teďka zrovna vůbec nehodí, proto bych poprosil o pomoc.
Log z RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mermeoth at 2015-06-12 00:46:31
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 75 GB (21%) free of 365 GB
Total RAM: 3957 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:46:38, on 12.6.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\SysWOW64\DllHost.exe
C:\Users\Mermeoth\AppData\Local\Temp\nsw94F0.tmp\setup.exe
C:\Program Files (x86)\ShopperPro\updater.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Mermeoth.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [GoobzoYouTubeAccelerator] "C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KoopPdfService - Unknown owner - C:\Program Files (x86)\Kooperativa\Services\KoopPDFServer.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Util Swift Record - Unknown owner - C:\Program Files (x86)\Swift Record\bin\utilSwiftRecord.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe
--
End of file - 8271 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Kooperativa\Services\KoopPDFServer.exe"
"C:\Program Files\Common Files\ShopperPro\spbiu.exe" /service
C:\Windows\system32\svchost.exe -k imgsvc
C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm
"taskhost.exe"
taskeng.exe {626819D3-AB80-4CF8-B384-31145E4790F4}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
ngservice.exe pipeserver
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"C:\Program Files\AVAST Software\Avast\ng\ngtool.exe" avast repair
\??\C:\Windows\system32\conhost.exe "-518931390-1177102250-651924012-1757689672-2082849027664912724-1449884936-1938282888
C:\Windows\SysWOW64\DllHost.exe /Processid:{FCC74B77-EC3E-4DD8-A80B-008A702075A9}
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Users\Mermeoth\AppData\Local\Temp\nsw94F0.tmp\setup.exe" /S
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\ShopperPro\updater.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6108.0.764109764\2100661441" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,21,44 --gpu-vendor-id=0x1002 --gpu-device-id=0x68c1 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Disabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/Unused_9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_90/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=6108 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="6108.5.1757905457\187332437" /prefetch:673131151
taskmgr.exe /2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6108.9.1591068396\1164688792" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
"C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe" --comment NgBase --startvm 7202992b-3e36-40e4-abbf-ccacaa107c01
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey A30145A3-FCA9-601F-98F8-E8065732A6E4 -Reinvoke
"D:\CD\Pro čištění compa\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
=========Mozilla firefox=========
ProfilePath - C:\Users\Mermeoth\AppData\Roaming\Mozilla\Firefox\Profiles\m2qgcji3.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.188 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.188 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\Mermeoth\AppData\Roaming\Mozilla\Firefox\Profiles\m2qgcji3.default\extensions\
{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
C:\Users\Mermeoth\AppData\Roaming\Mozilla\Firefox\Profiles\m2qgcji3.default\searchplugins\
google-avast.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-01-22 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2015-06-09 529840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-01-22 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2015-06-09 444336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"GoobzoYouTubeAccelerator"=C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe [2015-06-12 2226120]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe [2015-06-09 3225088]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Mermeoth^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Kooperativa - PDF Server.lnk]
C:\PROGRA~1\KOOPER~1\KoopPxBN\KOOPPD~1.EXE [2015-06-04 1608192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Mermeoth^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk]
C:\Program Files\HP\HP Deskjet 1050 J410 series\bin\HPStatusBL.dll [2012-10-02 5699176]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-03-30 5227648]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe [2015-06-09 3225088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-12 00:46:32 ----D---- C:\Program Files\trend micro
2015-06-12 00:46:31 ----D---- C:\rsit
2015-06-12 00:17:43 ----D---- C:\Program Files\Common Files\ShopperPro
2015-06-12 00:16:36 ----D---- C:\ProgramData\ShopperPro
2015-06-12 00:16:02 ----D---- C:\Program Files (x86)\ShopperPro
2015-06-12 00:14:28 ----D---- C:\Program Files (x86)\Swift Record
2015-06-12 00:11:18 ----D---- C:\Program Files (x86)\YouTube Accelerator
2015-06-12 00:09:45 ----D---- C:\Program Files (x86)\Seznam.cz
2015-06-12 00:09:04 ----D---- C:\Users\Mermeoth\AppData\Roaming\Seznam.cz
2015-06-11 23:20:10 ----D---- C:\ProgramData\Package Cache
2015-06-11 21:43:05 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-06-11 21:43:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2015-06-11 21:43:05 ----A---- C:\Windows\system32\XAudio2_7.dll
2015-06-11 21:43:05 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2015-06-11 21:43:03 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2015-06-11 21:43:03 ----A---- C:\Windows\system32\xactengine3_7.dll
2015-06-11 21:43:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2015-06-11 21:43:02 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2015-06-11 21:43:01 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2015-06-11 21:43:01 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-06-11 21:43:01 ----A---- C:\Windows\system32\d3dcsx_43.dll
2015-06-11 21:43:00 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2015-06-11 21:43:00 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-06-11 21:42:59 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-06-11 21:42:58 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2015-06-11 21:42:58 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2015-06-11 21:42:58 ----A---- C:\Windows\system32\XAudio2_6.dll
2015-06-11 21:42:58 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2015-06-11 21:42:55 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2015-06-11 21:42:55 ----A---- C:\Windows\system32\xactengine3_6.dll
2015-06-11 21:42:54 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2015-06-11 21:42:04 ----HD---- C:\Windows\msdownld.tmp
2015-06-11 21:41:58 ----D---- C:\Windows\SYSWOW64\directx
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\mss32.dll
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\IEShims.dll
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\binkw32.dll
2015-06-11 21:01:09 ----D---- C:\Windows\system32\MRT
2015-06-11 21:01:01 ----A---- C:\Windows\system32\MRT.exe
2015-06-10 10:10:59 ----A---- C:\Windows\system32\wmp.dll
2015-06-10 10:10:58 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-10 10:10:57 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-10 10:10:57 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-10 10:10:57 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-10 10:10:57 ----A---- C:\Windows\system32\spwmp.dll
2015-06-10 10:10:57 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-10 10:10:56 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-10 10:10:45 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-10 10:10:44 ----A---- C:\Windows\system32\kerberos.dll
2015-06-10 10:10:43 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-10 10:10:43 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-10 10:10:41 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-10 10:10:41 ----A---- C:\Windows\system32\kernel32.dll
2015-06-10 10:10:40 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-10 10:10:40 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-10 10:10:40 ----A---- C:\Windows\system32\advapi32.dll
2015-06-10 10:10:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-10 10:10:38 ----A---- C:\Windows\system32\wow64.dll
2015-06-10 10:10:38 ----A---- C:\Windows\system32\ntdll.dll
2015-06-10 10:10:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-10 10:10:38 ----A---- C:\Windows\system32\conhost.exe
2015-06-10 10:10:37 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-10 10:10:37 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-10 10:10:37 ----A---- C:\Windows\system32\winsrv.dll
2015-06-10 10:10:37 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-10 10:10:37 ----A---- C:\Windows\system32\srcore.dll
2015-06-10 10:10:37 ----A---- C:\Windows\system32\rstrui.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\wdigest.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\typeperf.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\tdh.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\sspicli.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\srclient.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\smss.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\schannel.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\sechost.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\relog.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\lsass.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\logman.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-10 10:10:36 ----A---- C:\Windows\system32\auditpol.exe
2015-06-10 10:10:35 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-10 10:10:35 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-10 10:10:35 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\secur32.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\diskperf.exe
2015-06-10 10:10:35 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\credssp.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-10 10:10:34 ----A---- C:\Windows\system32\wow64win.dll
2015-06-10 10:10:34 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-10 10:10:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-10 10:10:32 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-10 10:10:32 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-10 10:10:32 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-10 10:10:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-10 10:10:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-10 10:10:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-10 10:10:30 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-10 10:10:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-10 10:10:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-10 10:10:30 ----A---- C:\Windows\system32\msaudite.dll
2015-06-10 10:10:11 ----A---- C:\Windows\system32\win32k.sys
2015-06-10 10:10:10 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-10 10:10:10 ----A---- C:\Windows\system32\comctl32.dll
2015-06-10 10:10:09 ----A---- C:\Windows\system32\drivers\stream.sys
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-10 10:06:06 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-10 10:06:06 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-10 10:06:06 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-10 10:06:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-10 10:06:05 ----A---- C:\Windows\system32\iernonce.dll
2015-06-10 10:06:04 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-10 10:06:03 ----A---- C:\Windows\system32\urlmon.dll
2015-06-10 10:06:03 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-10 10:06:03 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-10 10:06:02 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-10 10:06:02 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-10 10:06:02 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-10 10:06:01 ----A---- C:\Windows\system32\iesetup.dll
2015-06-10 10:06:00 ----A---- C:\Windows\system32\iertutil.dll
2015-06-10 10:06:00 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-10 10:05:59 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-10 10:05:59 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-10 10:05:59 ----A---- C:\Windows\system32\vbscript.dll
2015-06-10 10:05:58 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-10 10:05:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-10 10:05:58 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-10 10:05:58 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-10 10:05:58 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-10 10:05:57 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-10 10:05:57 ----A---- C:\Windows\system32\ieui.dll
2015-06-10 10:05:57 ----A---- C:\Windows\system32\ieframe.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\wininet.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\jscript9.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\jscript.dll
2015-06-10 10:05:55 ----A---- C:\Windows\system32\msrating.dll
2015-06-10 10:05:55 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-10 10:05:54 ----A---- C:\Windows\system32\mshtml.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\invagent.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\generaltel.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\devinv.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\appraiser.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\aepic.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\aepdu.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\aeinv.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\acmigration.dll
2015-06-03 10:19:10 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-05-26 09:16:37 ----SHD---- C:\found.000
2015-05-22 17:36:44 ----D---- C:\Program Files\HP
2015-05-22 17:17:04 ----D---- C:\Program Files\CCleaner
2015-05-21 02:34:39 ----D---- C:\Windows\Migration
2015-05-20 20:20:14 ----D---- C:\AdwCleaner
2015-05-20 16:45:31 ----D---- C:\Program Files (x86)\Enigma Software Group
2015-05-20 16:44:26 ----D---- C:\Windows\AF54923662584AC6A0435B5B89C6EB61.TMP
2015-05-20 15:05:59 ----A---- C:\autoexec.bat
2015-05-13 18:26:17 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 18:26:17 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 12:52:13 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-05-13 12:52:13 ----A---- C:\Windows\system32\certcli.dll
2015-05-13 12:51:28 ----A---- C:\Windows\system32\services.exe
2015-05-13 12:49:57 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-05-13 12:49:57 ----A---- C:\Windows\system32\FntCache.dll
2015-05-13 12:49:57 ----A---- C:\Windows\system32\DWrite.dll
2015-05-13 12:49:29 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-05-13 12:49:29 ----A---- C:\Windows\system32\InkEd.dll
2015-05-13 12:49:27 ----A---- C:\Windows\system32\jnwmon.dll
2015-05-13 12:49:19 ----A---- C:\Windows\system32\wpdshext.dll
2015-05-13 12:49:18 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-05-13 12:49:11 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-05-13 12:49:11 ----A---- C:\Windows\system32\poqexec.exe
2015-05-13 12:49:05 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-05-13 12:49:05 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2015-05-13 12:49:05 ----A---- C:\Windows\system32\sdbinst.exe
2015-05-13 12:49:05 ----A---- C:\Windows\system32\apphelp.dll
2015-05-13 12:49:05 ----A---- C:\Windows\system32\aelupsvc.dll
2015-05-13 12:49:04 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2015-05-13 12:49:04 ----A---- C:\Windows\system32\shimeng.dll
======List of files/folders modified in the last 1 month======
2015-06-12 00:46:33 ----D---- C:\Windows\Temp
2015-06-12 00:46:32 ----RD---- C:\Program Files
2015-06-12 00:43:58 ----D---- C:\Windows\System32
2015-06-12 00:37:14 ----AD---- C:\ProgramData\TEMP
2015-06-12 00:35:56 ----D---- C:\Windows\system32\config
2015-06-12 00:34:32 ----SHD---- C:\System Volume Information
2015-06-12 00:30:35 ----D---- C:\Windows\system32\drivers
2015-06-12 00:29:00 ----HD---- C:\ProgramData
2015-06-12 00:20:27 ----D---- C:\Windows\system32\Tasks
2015-06-12 00:17:43 ----D---- C:\Program Files\Common Files
2015-06-12 00:16:02 ----RD---- C:\Program Files (x86)
2015-06-12 00:11:25 ----D---- C:\Windows\SysWOW64
2015-06-12 00:01:22 ----D---- C:\Program Files (x86)\torrent
2015-06-11 23:30:14 ----SHD---- C:\Windows\Installer
2015-06-11 21:42:04 ----D---- C:\Windows
2015-06-11 21:22:20 ----D---- C:\Windows\Microsoft.NET
2015-06-11 21:16:17 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-06-11 21:16:04 ----D---- C:\Windows\inf
2015-06-11 21:15:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-06-11 21:11:51 ----SD---- C:\ProgramData\Microsoft
2015-06-11 21:08:57 ----D---- C:\Windows\system32\DriverStore
2015-06-11 21:01:09 ----D---- C:\Windows\debug
2015-06-11 20:54:23 ----D---- C:\Kamil Záloha
2015-06-11 20:53:46 ----D---- C:\Windows\Logs
2015-06-11 15:35:26 ----D---- C:\Games
2015-06-10 19:39:13 ----D---- C:\Windows\rescache
2015-06-10 14:50:34 ----D---- C:\Windows\winsxs
2015-06-10 14:47:58 ----D---- C:\Program Files\Windows Media Player
2015-06-10 14:47:58 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-10 14:47:56 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-10 14:47:54 ----D---- C:\Windows\system32\en-US
2015-06-10 14:47:53 ----D---- C:\Windows\AppPatch
2015-06-10 14:47:50 ----D---- C:\Program Files\Internet Explorer
2015-06-10 14:47:49 ----D---- C:\Windows\PolicyDefinitions
2015-06-10 14:47:47 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-10 10:08:13 ----D---- C:\Windows\system32\catroot2
2015-06-09 13:16:09 ----D---- C:\Program Files (x86)\Heroes of the Storm
2015-06-08 01:37:57 ----D---- C:\Users\Mermeoth\AppData\Roaming\TS3Client
2015-06-07 20:35:15 ----D---- C:\Program Files (x86)\Battle.net
2015-06-05 11:08:50 ----SD---- C:\Windows\system32\CompatTel
2015-06-05 11:08:50 ----D---- C:\Windows\system32\appraiser
2015-06-05 08:47:20 ----D---- C:\Windows\system32\wdi
2015-06-04 10:10:36 ----D---- C:\Windows\Prefetch
2015-06-03 20:14:26 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-05-26 19:49:21 ----D---- C:\Users\Mermeoth\AppData\Roaming\DAEMON Tools Lite
2015-05-22 17:21:07 ----D---- C:\Windows\system32\catroot
2015-05-22 17:18:44 ----D---- C:\Windows\Panther
2015-05-22 17:10:10 ----RSD---- C:\Windows\assembly
2015-05-22 16:48:02 ----RSD---- C:\Windows\Fonts
2015-05-22 16:48:01 ----D---- C:\Program Files (x86)\HP
2015-05-21 09:29:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-05-21 02:34:39 ----SD---- C:\Windows\SYSWOW64\GWX
2015-05-21 02:34:39 ----SD---- C:\Windows\system32\GWX
2015-05-20 20:33:34 ----D---- C:\Windows\Tasks
2015-05-20 20:30:53 ----SD---- C:\Users\Mermeoth\AppData\Roaming\Microsoft
2015-05-20 20:30:27 ----D---- C:\Windows\SYSWOW64\drivers
2015-05-20 16:44:21 ----D---- C:\Program Files (x86)\Common Files
2015-05-20 15:05:59 ----D---- C:\Windows\system32\drivers\etc
2015-05-13 20:28:01 ----D---- C:\Program Files\Windows Journal
2015-05-13 20:27:57 ----D---- C:\Windows\system32\AdvancedInstallers
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-01-22 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-01-22 267632]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-01-22 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-01-22 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-01-22 436624]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2015-01-21 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-01-22 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-01-22 87912]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-01-22 116728]
R2 SPDRIVER_1.42.1.1965;SPDRIVER_1.42.1.1965; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.sys [2015-06-09 52384]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-01-22 271752]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 4273880]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2011-05-09 425000]
R3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys [2015-06-09 41624]
S3 cpuz137;cpuz137; \??\C:\Program Files (x86)\CPUID\PC Wizard 2013\pcwiz_x64.sys [2014-02-17 26856]
S3 esgiguard;esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2015-06-12 16152]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-05-01 81088]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-01-22 50344]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 KoopPdfService;KoopPdfService; C:\Program Files (x86)\Kooperativa\Services\KoopPDFServer.exe [2015-02-03 2454016]
R2 SPBIUpd;ShopperPro Update; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2015-06-09 2346416]
R2 YouTubeAcceleratorService;YouTubeAcceleratorService; C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe [2015-06-12 1509320]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-01-22 4012248]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-21 107912]
S2 Util Swift Record;Util Swift Record; C:\Program Files (x86)\Swift Record\bin\utilSwiftRecord.exe []
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-21 107912]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-06-03 148080]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-01-23 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Dva měsíce na to už jsem řešil, že se mi všechny prohlížeče přenastavili na nějaký vyhledávač, smazat to normálně nešlo, řešil jsem to přes nějaký prográmky.
Dále jsem pak odstraňoval i nějaké bary a další blbost. Měsíc nazpátek jsem opět měl ten samý problem, přenastavené prohlížeče, bary, blbosti nainstalované. Vše se mi vesele nainstalovalo samo uprostřed hraní, aniž bych 14 dní před tim něco instaloval.
Vždycky jsem se toho nějak zbavil.
Dneska opět se mi nainstalovali nějaké blbosti a já prostě nevim kde se mi to tam furt bere. Nejsem včerejší. Neklikám slepě na next. Všechno si čtu, dávám vlastní instalace, abych viděl co se mi dostane do počítače.
Něco jsem odstranil. Youtube accelerator všechny pokyny k odinstalaci ignoruje a shopper-pro mi hlásí, že nemůže se odinstalovat, když probíhá jiná instalace.
Nejradši bych to přeinstaloval jenže se mi to teďka zrovna vůbec nehodí, proto bych poprosil o pomoc.
Log z RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Mermeoth at 2015-06-12 00:46:31
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 75 GB (21%) free of 365 GB
Total RAM: 3957 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:46:38, on 12.6.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\SysWOW64\DllHost.exe
C:\Users\Mermeoth\AppData\Local\Temp\nsw94F0.tmp\setup.exe
C:\Program Files (x86)\ShopperPro\updater.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Mermeoth.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [GoobzoYouTubeAccelerator] "C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KoopPdfService - Unknown owner - C:\Program Files (x86)\Kooperativa\Services\KoopPDFServer.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Util Swift Record - Unknown owner - C:\Program Files (x86)\Swift Record\bin\utilSwiftRecord.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe
--
End of file - 8271 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Kooperativa\Services\KoopPDFServer.exe"
"C:\Program Files\Common Files\ShopperPro\spbiu.exe" /service
C:\Windows\system32\svchost.exe -k imgsvc
C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm
"taskhost.exe"
taskeng.exe {626819D3-AB80-4CF8-B384-31145E4790F4}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
ngservice.exe pipeserver
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"C:\Program Files\AVAST Software\Avast\ng\ngtool.exe" avast repair
\??\C:\Windows\system32\conhost.exe "-518931390-1177102250-651924012-1757689672-2082849027664912724-1449884936-1938282888
C:\Windows\SysWOW64\DllHost.exe /Processid:{FCC74B77-EC3E-4DD8-A80B-008A702075A9}
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Users\Mermeoth\AppData\Local\Temp\nsw94F0.tmp\setup.exe" /S
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\ShopperPro\updater.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6108.0.764109764\2100661441" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,21,44 --gpu-vendor-id=0x1002 --gpu-device-id=0x68c1 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.501.1003.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Disabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/Unused_9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_90/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=6108 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="6108.5.1757905457\187332437" /prefetch:673131151
taskmgr.exe /2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6108.9.1591068396\1164688792" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
"C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe" --comment NgBase --startvm 7202992b-3e36-40e4-abbf-ccacaa107c01
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey A30145A3-FCA9-601F-98F8-E8065732A6E4 -Reinvoke
"D:\CD\Pro čištění compa\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
=========Mozilla firefox=========
ProfilePath - C:\Users\Mermeoth\AppData\Roaming\Mozilla\Firefox\Profiles\m2qgcji3.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.188 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.188 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\Mermeoth\AppData\Roaming\Mozilla\Firefox\Profiles\m2qgcji3.default\extensions\
{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
C:\Users\Mermeoth\AppData\Roaming\Mozilla\Firefox\Profiles\m2qgcji3.default\searchplugins\
google-avast.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-01-22 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2015-06-09 529840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-01-22 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2015-06-09 444336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"GoobzoYouTubeAccelerator"=C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe [2015-06-12 2226120]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe [2015-06-09 3225088]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Mermeoth^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Kooperativa - PDF Server.lnk]
C:\PROGRA~1\KOOPER~1\KoopPxBN\KOOPPD~1.EXE [2015-06-04 1608192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Mermeoth^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Monitor Ink Alerts - HP Deskjet 1050 J410 series.lnk]
C:\Program Files\HP\HP Deskjet 1050 J410 series\bin\HPStatusBL.dll [2012-10-02 5699176]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-03-30 5227648]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.exe [2015-06-09 3225088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-12 00:46:32 ----D---- C:\Program Files\trend micro
2015-06-12 00:46:31 ----D---- C:\rsit
2015-06-12 00:17:43 ----D---- C:\Program Files\Common Files\ShopperPro
2015-06-12 00:16:36 ----D---- C:\ProgramData\ShopperPro
2015-06-12 00:16:02 ----D---- C:\Program Files (x86)\ShopperPro
2015-06-12 00:14:28 ----D---- C:\Program Files (x86)\Swift Record
2015-06-12 00:11:18 ----D---- C:\Program Files (x86)\YouTube Accelerator
2015-06-12 00:09:45 ----D---- C:\Program Files (x86)\Seznam.cz
2015-06-12 00:09:04 ----D---- C:\Users\Mermeoth\AppData\Roaming\Seznam.cz
2015-06-11 23:20:10 ----D---- C:\ProgramData\Package Cache
2015-06-11 21:43:05 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-06-11 21:43:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2015-06-11 21:43:05 ----A---- C:\Windows\system32\XAudio2_7.dll
2015-06-11 21:43:05 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2015-06-11 21:43:03 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2015-06-11 21:43:03 ----A---- C:\Windows\system32\xactengine3_7.dll
2015-06-11 21:43:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2015-06-11 21:43:02 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2015-06-11 21:43:01 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2015-06-11 21:43:01 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-06-11 21:43:01 ----A---- C:\Windows\system32\d3dcsx_43.dll
2015-06-11 21:43:00 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2015-06-11 21:43:00 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-06-11 21:42:59 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-06-11 21:42:58 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2015-06-11 21:42:58 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2015-06-11 21:42:58 ----A---- C:\Windows\system32\XAudio2_6.dll
2015-06-11 21:42:58 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2015-06-11 21:42:55 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2015-06-11 21:42:55 ----A---- C:\Windows\system32\xactengine3_6.dll
2015-06-11 21:42:54 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2015-06-11 21:42:04 ----HD---- C:\Windows\msdownld.tmp
2015-06-11 21:41:58 ----D---- C:\Windows\SYSWOW64\directx
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\msvcr80.dll
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\mss32.dll
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\IEShims.dll
2015-06-11 21:40:48 ----A---- C:\Windows\SYSWOW64\binkw32.dll
2015-06-11 21:01:09 ----D---- C:\Windows\system32\MRT
2015-06-11 21:01:01 ----A---- C:\Windows\system32\MRT.exe
2015-06-10 10:10:59 ----A---- C:\Windows\system32\wmp.dll
2015-06-10 10:10:58 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-10 10:10:57 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-10 10:10:57 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-10 10:10:57 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-10 10:10:57 ----A---- C:\Windows\system32\spwmp.dll
2015-06-10 10:10:57 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-10 10:10:56 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-10 10:10:45 ----A---- C:\Windows\system32\diagtrack.dll
2015-06-10 10:10:44 ----A---- C:\Windows\system32\kerberos.dll
2015-06-10 10:10:43 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-06-10 10:10:43 ----A---- C:\Windows\system32\KernelBase.dll
2015-06-10 10:10:41 ----A---- C:\Windows\system32\lsasrv.dll
2015-06-10 10:10:41 ----A---- C:\Windows\system32\kernel32.dll
2015-06-10 10:10:40 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-06-10 10:10:40 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-06-10 10:10:40 ----A---- C:\Windows\system32\advapi32.dll
2015-06-10 10:10:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-06-10 10:10:38 ----A---- C:\Windows\system32\wow64.dll
2015-06-10 10:10:38 ----A---- C:\Windows\system32\ntdll.dll
2015-06-10 10:10:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-06-10 10:10:38 ----A---- C:\Windows\system32\conhost.exe
2015-06-10 10:10:37 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-06-10 10:10:37 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-06-10 10:10:37 ----A---- C:\Windows\system32\winsrv.dll
2015-06-10 10:10:37 ----A---- C:\Windows\system32\tracerpt.exe
2015-06-10 10:10:37 ----A---- C:\Windows\system32\srcore.dll
2015-06-10 10:10:37 ----A---- C:\Windows\system32\rstrui.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-06-10 10:10:36 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\wdigest.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\typeperf.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\TSpkg.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\tdh.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\sspicli.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\srclient.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\smss.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\schannel.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\sechost.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\relog.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\ncrypt.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\msv1_0.dll
2015-06-10 10:10:36 ----A---- C:\Windows\system32\lsass.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\logman.exe
2015-06-10 10:10:36 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-06-10 10:10:36 ----A---- C:\Windows\system32\auditpol.exe
2015-06-10 10:10:35 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-06-10 10:10:35 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-06-10 10:10:35 ----A---- C:\Windows\system32\sspisrv.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\secur32.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\ntvdm64.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\diskperf.exe
2015-06-10 10:10:35 ----A---- C:\Windows\system32\csrsrv.dll
2015-06-10 10:10:35 ----A---- C:\Windows\system32\credssp.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-10 10:10:34 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-06-10 10:10:34 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-06-10 10:10:34 ----A---- C:\Windows\system32\wow64win.dll
2015-06-10 10:10:34 ----A---- C:\Windows\system32\wow64cpu.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-10 10:10:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-10 10:10:32 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-10 10:10:32 ----A---- C:\Windows\SYSWOW64\user.exe
2015-06-10 10:10:32 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-06-10 10:10:32 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-06-10 10:10:32 ----A---- C:\Windows\system32\apisetschema.dll
2015-06-10 10:10:31 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-06-10 10:10:31 ----A---- C:\Windows\system32\adtschema.dll
2015-06-10 10:10:30 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-06-10 10:10:30 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-06-10 10:10:30 ----A---- C:\Windows\system32\UtcResources.dll
2015-06-10 10:10:30 ----A---- C:\Windows\system32\msobjs.dll
2015-06-10 10:10:30 ----A---- C:\Windows\system32\msaudite.dll
2015-06-10 10:10:11 ----A---- C:\Windows\system32\win32k.sys
2015-06-10 10:10:10 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-06-10 10:10:10 ----A---- C:\Windows\system32\comctl32.dll
2015-06-10 10:10:09 ----A---- C:\Windows\system32\drivers\stream.sys
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-10 10:06:06 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-10 10:06:06 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-10 10:06:06 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-10 10:06:06 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-10 10:06:05 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-10 10:06:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-10 10:06:05 ----A---- C:\Windows\system32\iernonce.dll
2015-06-10 10:06:04 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-10 10:06:03 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-10 10:06:03 ----A---- C:\Windows\system32\urlmon.dll
2015-06-10 10:06:03 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-10 10:06:03 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-10 10:06:02 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-10 10:06:02 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-10 10:06:02 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-10 10:06:02 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-10 10:06:01 ----A---- C:\Windows\system32\iesetup.dll
2015-06-10 10:06:00 ----A---- C:\Windows\system32\iertutil.dll
2015-06-10 10:06:00 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-10 10:05:59 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-10 10:05:59 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-10 10:05:59 ----A---- C:\Windows\system32\vbscript.dll
2015-06-10 10:05:58 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-10 10:05:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-10 10:05:58 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-10 10:05:58 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-10 10:05:58 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-10 10:05:57 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-10 10:05:57 ----A---- C:\Windows\system32\ieui.dll
2015-06-10 10:05:57 ----A---- C:\Windows\system32\ieframe.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\wininet.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\jscript9.dll
2015-06-10 10:05:56 ----A---- C:\Windows\system32\jscript.dll
2015-06-10 10:05:55 ----A---- C:\Windows\system32\msrating.dll
2015-06-10 10:05:55 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-10 10:05:54 ----A---- C:\Windows\system32\mshtml.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\invagent.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\generaltel.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\devinv.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\appraiser.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\aepic.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\aepdu.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\aeinv.dll
2015-06-05 09:03:44 ----A---- C:\Windows\system32\acmigration.dll
2015-06-03 10:19:10 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-05-26 09:16:37 ----SHD---- C:\found.000
2015-05-22 17:36:44 ----D---- C:\Program Files\HP
2015-05-22 17:17:04 ----D---- C:\Program Files\CCleaner
2015-05-21 02:34:39 ----D---- C:\Windows\Migration
2015-05-20 20:20:14 ----D---- C:\AdwCleaner
2015-05-20 16:45:31 ----D---- C:\Program Files (x86)\Enigma Software Group
2015-05-20 16:44:26 ----D---- C:\Windows\AF54923662584AC6A0435B5B89C6EB61.TMP
2015-05-20 15:05:59 ----A---- C:\autoexec.bat
2015-05-13 18:26:17 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 18:26:17 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 12:52:13 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-05-13 12:52:13 ----A---- C:\Windows\system32\certcli.dll
2015-05-13 12:51:28 ----A---- C:\Windows\system32\services.exe
2015-05-13 12:49:57 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-05-13 12:49:57 ----A---- C:\Windows\system32\FntCache.dll
2015-05-13 12:49:57 ----A---- C:\Windows\system32\DWrite.dll
2015-05-13 12:49:29 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-05-13 12:49:29 ----A---- C:\Windows\system32\InkEd.dll
2015-05-13 12:49:27 ----A---- C:\Windows\system32\jnwmon.dll
2015-05-13 12:49:19 ----A---- C:\Windows\system32\wpdshext.dll
2015-05-13 12:49:18 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-05-13 12:49:11 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-05-13 12:49:11 ----A---- C:\Windows\system32\poqexec.exe
2015-05-13 12:49:05 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-05-13 12:49:05 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2015-05-13 12:49:05 ----A---- C:\Windows\system32\sdbinst.exe
2015-05-13 12:49:05 ----A---- C:\Windows\system32\apphelp.dll
2015-05-13 12:49:05 ----A---- C:\Windows\system32\aelupsvc.dll
2015-05-13 12:49:04 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2015-05-13 12:49:04 ----A---- C:\Windows\system32\shimeng.dll
======List of files/folders modified in the last 1 month======
2015-06-12 00:46:33 ----D---- C:\Windows\Temp
2015-06-12 00:46:32 ----RD---- C:\Program Files
2015-06-12 00:43:58 ----D---- C:\Windows\System32
2015-06-12 00:37:14 ----AD---- C:\ProgramData\TEMP
2015-06-12 00:35:56 ----D---- C:\Windows\system32\config
2015-06-12 00:34:32 ----SHD---- C:\System Volume Information
2015-06-12 00:30:35 ----D---- C:\Windows\system32\drivers
2015-06-12 00:29:00 ----HD---- C:\ProgramData
2015-06-12 00:20:27 ----D---- C:\Windows\system32\Tasks
2015-06-12 00:17:43 ----D---- C:\Program Files\Common Files
2015-06-12 00:16:02 ----RD---- C:\Program Files (x86)
2015-06-12 00:11:25 ----D---- C:\Windows\SysWOW64
2015-06-12 00:01:22 ----D---- C:\Program Files (x86)\torrent
2015-06-11 23:30:14 ----SHD---- C:\Windows\Installer
2015-06-11 21:42:04 ----D---- C:\Windows
2015-06-11 21:22:20 ----D---- C:\Windows\Microsoft.NET
2015-06-11 21:16:17 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-06-11 21:16:04 ----D---- C:\Windows\inf
2015-06-11 21:15:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-06-11 21:11:51 ----SD---- C:\ProgramData\Microsoft
2015-06-11 21:08:57 ----D---- C:\Windows\system32\DriverStore
2015-06-11 21:01:09 ----D---- C:\Windows\debug
2015-06-11 20:54:23 ----D---- C:\Kamil Záloha
2015-06-11 20:53:46 ----D---- C:\Windows\Logs
2015-06-11 15:35:26 ----D---- C:\Games
2015-06-10 19:39:13 ----D---- C:\Windows\rescache
2015-06-10 14:50:34 ----D---- C:\Windows\winsxs
2015-06-10 14:47:58 ----D---- C:\Program Files\Windows Media Player
2015-06-10 14:47:58 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-10 14:47:56 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-10 14:47:54 ----D---- C:\Windows\system32\en-US
2015-06-10 14:47:53 ----D---- C:\Windows\AppPatch
2015-06-10 14:47:50 ----D---- C:\Program Files\Internet Explorer
2015-06-10 14:47:49 ----D---- C:\Windows\PolicyDefinitions
2015-06-10 14:47:47 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-10 10:08:13 ----D---- C:\Windows\system32\catroot2
2015-06-09 13:16:09 ----D---- C:\Program Files (x86)\Heroes of the Storm
2015-06-08 01:37:57 ----D---- C:\Users\Mermeoth\AppData\Roaming\TS3Client
2015-06-07 20:35:15 ----D---- C:\Program Files (x86)\Battle.net
2015-06-05 11:08:50 ----SD---- C:\Windows\system32\CompatTel
2015-06-05 11:08:50 ----D---- C:\Windows\system32\appraiser
2015-06-05 08:47:20 ----D---- C:\Windows\system32\wdi
2015-06-04 10:10:36 ----D---- C:\Windows\Prefetch
2015-06-03 20:14:26 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-05-26 19:49:21 ----D---- C:\Users\Mermeoth\AppData\Roaming\DAEMON Tools Lite
2015-05-22 17:21:07 ----D---- C:\Windows\system32\catroot
2015-05-22 17:18:44 ----D---- C:\Windows\Panther
2015-05-22 17:10:10 ----RSD---- C:\Windows\assembly
2015-05-22 16:48:02 ----RSD---- C:\Windows\Fonts
2015-05-22 16:48:01 ----D---- C:\Program Files (x86)\HP
2015-05-21 09:29:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-05-21 02:34:39 ----SD---- C:\Windows\SYSWOW64\GWX
2015-05-21 02:34:39 ----SD---- C:\Windows\system32\GWX
2015-05-20 20:33:34 ----D---- C:\Windows\Tasks
2015-05-20 20:30:53 ----SD---- C:\Users\Mermeoth\AppData\Roaming\Microsoft
2015-05-20 20:30:27 ----D---- C:\Windows\SYSWOW64\drivers
2015-05-20 16:44:21 ----D---- C:\Program Files (x86)\Common Files
2015-05-20 15:05:59 ----D---- C:\Windows\system32\drivers\etc
2015-05-13 20:28:01 ----D---- C:\Program Files\Windows Journal
2015-05-13 20:27:57 ----D---- C:\Windows\system32\AdvancedInstallers
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-01-22 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-01-22 267632]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-01-22 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-01-22 1050432]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-01-22 436624]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2015-01-21 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-01-22 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-01-22 87912]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-01-22 116728]
R2 SPDRIVER_1.42.1.1965;SPDRIVER_1.42.1.1965; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.1965\jsdrv.sys [2015-06-09 52384]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-01-22 271752]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2000-01-01 4273880]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2011-05-09 425000]
R3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys [2015-06-09 41624]
S3 cpuz137;cpuz137; \??\C:\Program Files (x86)\CPUID\PC Wizard 2013\pcwiz_x64.sys [2014-02-17 26856]
S3 esgiguard;esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2015-06-12 16152]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-05-01 81088]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-01-22 50344]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 KoopPdfService;KoopPdfService; C:\Program Files (x86)\Kooperativa\Services\KoopPDFServer.exe [2015-02-03 2454016]
R2 SPBIUpd;ShopperPro Update; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2015-06-09 2346416]
R2 YouTubeAcceleratorService;YouTubeAcceleratorService; C:\PROGRA~2\YOUTUB~1\YouTubeAcceleratorService.exe [2015-06-12 1509320]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-01-22 4012248]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-21 107912]
S2 Util Swift Record;Util Swift Record; C:\Program Files (x86)\Swift Record\bin\utilSwiftRecord.exe []
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-21 107912]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-06-03 148080]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-01-23 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------