Prosím o preventivní kontrolu
Napsal: 18 čer 2015 19:54
Logfile of random's system information tool 1.10 (written by random/random)
Run by Michaela at 2015-06-18 20:47:57
Microsoft Windows 8.1
System drive C: has 139 GB (73%) free of 190 GB
Total RAM: 3982 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:48:03, on 18. 6. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
C:\Program Files (x86)\disco games\disco_games_notification_service.exe
C:\Program Files (x86)\dress4u\dress4u_notification_service.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Michaela.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveShellExtensions.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Michaela\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Users\Michaela\Desktop\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Users\Michaela\Desktop\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveSystemServices.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11644 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
dashost.exe {1ab60e5c-f083-454e-8bf553b522ace251}
"C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
taskhostex.exe
C:\WINDOWS\Explorer.EXE
ClassicStartMenu.exe -startup
/QuitInfo:000000000000098C;0000000000000990;
/loadhooks /Parent:0000000000000b9c
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
taskeng.exe {EDDF0E15-E104-4BA6-A2A1-8CACDAD69826}
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files\ASUS\P4G\InsOnSrv.exe"
"C:\Program Files\ASUS\P4G\InsOnWMI.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
taskeng.exe {45B820FF-CCD6-484D-B518-863CEAAF5E18}
"C:\Program Files (x86)\disco games\disco_games_notification_service.exe" /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='disco games' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1429079294' /runfrom='task' /brwtype='notbg' /postponedhours='6'
"C:\Program Files (x86)\dress4u\dress4u_notification_service.exe" /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='dress4u' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1428777027' /runfrom='task' /brwtype='notbg' /postponedhours='6'
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5528.0.1438045376\1086912944" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,21,44 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0156 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3308 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowBelowNormalFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StableBookmarksIndexURLs/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_09/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5528 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="5528.7.1315215721\1764574933" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
"C:\Users\Michaela\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-1-6.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-1-6.exe /rawdata=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
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-1-7.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-1-7.exe /rawdata=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
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-5.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-5.exe /rawdata=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
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-5_user.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-5.exe /rawdata=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
C:\WINDOWS\tasks\disco_games_notification_service.job - C:\Program Files (x86)\disco games\disco_games_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='disco games' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1429079294' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\dress4u_notification_service.job - C:\Program Files (x86)\dress4u\dress4u_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='dress4u' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1428777027' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-1-6.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-1-6.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-1-7.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-1-7.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-5.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-5.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-5_user.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-5.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-6.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-6.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-7.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-7.exe /rawdata=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
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cf8a548d35be6f.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cfec4bccfeaf75.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-01-20 218784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-05-16 810768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-12-28 66688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-20 2331336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-05-16 488208]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-05-16 688912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-05-16 444688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-05-16 810768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-05-16 688912]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-01 769496]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2015-05-16 164112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Michaela\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-05-22 382664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2014-05-08 40312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2013-10-01 771032]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2013-10-01 391128]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-01-20 43848]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-01-20 152392]
"DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2014-02-14 450560]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2014-01-10 1861968]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
C:\Users\Michaela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-01 623104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-18 20:47:57 ----D---- C:\rsit
2015-06-18 20:47:57 ----D---- C:\Program Files\trend micro
2015-06-18 20:41:24 ----D---- C:\Program Files (x86)\ESET
2015-06-18 19:58:25 ----D---- C:\WINDOWS\Migration
2015-06-18 19:52:38 ----D---- C:\ProgramData\ClassicShell
2015-06-18 19:52:37 ----D---- C:\Users\Michaela\AppData\Roaming\ClassicShell
2015-06-18 19:51:49 ----D---- C:\Program Files\Classic Shell
2015-06-18 19:35:10 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-06-18 19:25:11 ----D---- C:\Program Files (x86)\VS Revo Group
2015-06-12 21:18:09 ----A---- C:\WINDOWS\system32\wpdshext.dll
2015-06-12 21:18:08 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2015-06-12 21:17:55 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-06-12 21:17:53 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-06-12 21:17:28 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-06-12 21:17:22 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-06-12 21:17:21 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-06-12 21:17:11 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-06-12 21:17:10 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-06-12 21:16:59 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-06-12 21:16:47 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2015-06-12 21:15:14 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-06-12 21:14:46 ----A---- C:\WINDOWS\system32\sdbinst.exe
2015-06-12 21:14:44 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2015-06-12 21:14:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2015-06-12 21:14:37 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-06-12 21:14:29 ----A---- C:\WINDOWS\system32\dbgeng.dll
2015-06-12 21:14:27 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2015-06-12 21:14:26 ----A---- C:\WINDOWS\system32\dbghelp.dll
2015-06-12 21:14:25 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2015-06-12 21:14:17 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2015-06-12 21:14:12 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-06-12 21:14:10 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2015-06-12 21:13:55 ----A---- C:\WINDOWS\system32\SRH.dll
2015-06-12 21:13:54 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-06-12 21:13:49 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2015-05-26 17:49:05 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-05-26 17:49:00 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-05-26 17:48:58 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\system32\winbici.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2015-05-25 16:20:11 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-05-24 15:06:29 ----A---- C:\WINDOWS\system32\schannel.dll
2015-05-24 15:06:28 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-05-24 15:03:06 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-05-24 15:03:05 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-05-24 15:03:04 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-05-24 15:03:02 ----A---- C:\WINDOWS\system32\win32k.sys
2015-05-24 15:01:30 ----A---- C:\WINDOWS\system32\services.exe
2015-05-24 14:56:08 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-05-24 14:56:07 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-05-24 14:56:06 ----A---- C:\WINDOWS\system32\certcli.dll
2015-05-24 14:56:05 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-05-24 14:43:39 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-05-24 14:43:35 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-05-24 14:43:29 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-05-24 14:43:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-05-24 14:43:24 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-05-24 14:43:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-05-24 14:43:22 ----A---- C:\WINDOWS\system32\wininet.dll
2015-05-24 14:43:21 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-05-24 14:43:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-05-24 14:43:18 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-05-24 14:43:18 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-05-24 14:43:17 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-05-24 14:43:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-05-24 14:43:13 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-05-24 14:43:12 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-05-24 14:43:11 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-05-24 14:43:10 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-05-24 14:43:04 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-05-24 14:42:46 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-05-24 14:42:45 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-05-24 14:42:34 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-05-24 14:42:23 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-05-24 14:42:22 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-05-24 14:42:22 ----A---- C:\WINDOWS\system32\ieui.dll
2015-05-24 14:42:21 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-05-24 14:42:19 ----A---- C:\WINDOWS\system32\inseng.dll
2015-05-24 14:42:18 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-05-24 14:42:17 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-05-24 14:42:17 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-05-24 14:42:16 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-05-24 14:42:15 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-05-24 14:42:14 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-05-24 14:42:13 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-05-24 14:42:11 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-05-24 14:42:09 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-05-23 17:56:08 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-23 17:56:06 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2015-06-18 20:47:57 ----D---- C:\Program Files
2015-06-18 20:44:43 ----D---- C:\WINDOWS\Prefetch
2015-06-18 20:41:24 ----RD---- C:\Program Files (x86)
2015-06-18 20:39:32 ----D---- C:\WINDOWS\Temp
2015-06-18 20:19:37 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-06-18 20:18:31 ----D---- C:\WINDOWS\system32\catroot2
2015-06-18 20:13:49 ----D---- C:\WINDOWS\Microsoft.NET
2015-06-18 20:12:29 ----D---- C:\WINDOWS\system32\config
2015-06-18 20:01:46 ----D---- C:\WINDOWS\WinSxS
2015-06-18 20:01:41 ----D---- C:\Program Files\Common Files
2015-06-18 20:01:41 ----D---- C:\Program Files (x86)\Common Files
2015-06-18 20:01:18 ----D---- C:\WINDOWS\Inf
2015-06-18 20:01:02 ----D---- C:\WINDOWS\System32
2015-06-18 20:01:02 ----D---- C:\Users\Michaela\AppData\Roaming\Seznam.cz
2015-06-18 20:01:02 ----D---- C:\Program Files\mcafee
2015-06-18 20:01:02 ----D---- C:\Program Files (x86)\ShopperPro
2015-06-18 20:01:01 ----D---- C:\Windows
2015-06-18 19:58:30 ----D---- C:\WINDOWS\SysWOW64
2015-06-18 19:58:29 ----D---- C:\WINDOWS\apppatch
2015-06-18 19:58:28 ----D---- C:\WINDOWS\system32\drivers
2015-06-18 19:58:27 ----RSD---- C:\WINDOWS\Fonts
2015-06-18 19:58:27 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-06-18 19:58:25 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-06-18 19:58:25 ----SD---- C:\WINDOWS\system32\GWX
2015-06-18 19:58:24 ----D---- C:\WINDOWS\system32\DriverStore
2015-06-18 19:55:40 ----D---- C:\WINDOWS\Minidump
2015-06-18 19:54:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-18 19:52:38 ----HD---- C:\ProgramData
2015-06-18 19:51:58 ----SHD---- C:\WINDOWS\Installer
2015-06-18 19:49:09 ----D---- C:\WINDOWS\system32\Tasks
2015-06-18 19:49:01 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-06-18 19:49:01 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-06-18 19:47:27 ----D---- C:\Program Files (x86)\Seznam.cz
2015-06-18 19:40:56 ----D---- C:\ProgramData\McAfee
2015-06-18 19:38:52 ----HD---- C:\WINDOWS\ELAMBKUP
2015-06-18 19:20:20 ----D---- C:\WINDOWS\rescache
2015-06-18 19:02:38 ----D---- C:\WINDOWS\AppReadiness
2015-06-18 19:02:37 ----HD---- C:\Program Files\WindowsApps
2015-06-18 19:02:01 ----D---- C:\WINDOWS\system32\sru
2015-06-17 20:32:33 ----D---- C:\WINDOWS\CbsTemp
2015-06-17 20:19:46 ----SHD---- C:\System Volume Information
2015-06-03 19:04:15 ----D---- C:\Users\Michaela\AppData\Roaming\XnView
2015-05-26 19:04:35 ----D---- C:\WINDOWS\MediaViewer
2015-05-26 19:04:28 ----D---- C:\WINDOWS\Camera
2015-05-26 19:04:24 ----D---- C:\WINDOWS\FileManager
2015-05-25 16:17:42 ----D---- C:\Program Files\Microsoft Silverlight
2015-05-25 16:17:42 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-05-24 22:45:06 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2015-05-24 22:44:54 ----D---- C:\Program Files (x86)\Internet Explorer
2015-05-24 22:44:52 ----D---- C:\Program Files\Internet Explorer
2015-05-24 22:43:34 ----D---- C:\Program Files\Windows Journal
2015-05-24 22:43:30 ----RD---- C:\WINDOWS\ToastData
2015-05-24 22:40:54 ----D---- C:\Program Files\Windows Mail
2015-05-24 22:40:52 ----D---- C:\Program Files\Windows Multimedia Platform
2015-05-24 22:40:50 ----D---- C:\Program Files\Windows Portable Devices
2015-05-24 22:40:50 ----D---- C:\Program Files\Windows Media Player
2015-05-24 22:40:41 ----D---- C:\Program Files\Windows Photo Viewer
2015-05-24 22:40:25 ----D---- C:\Program Files\Common Files\System
2015-05-24 22:40:21 ----D---- C:\WINDOWS\SYSWOW64\Com
2015-05-24 22:40:21 ----D---- C:\WINDOWS\servicing
2015-05-24 22:40:19 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-05-24 22:40:19 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-05-24 22:40:16 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-05-24 22:39:49 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-05-24 22:39:47 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-05-24 22:39:46 ----D---- C:\WINDOWS\SYSWOW64\sppui
2015-05-24 22:39:28 ----D---- C:\WINDOWS\SYSWOW64\wbem
2015-05-24 22:38:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-05-24 22:38:55 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-05-24 22:26:36 ----D---- C:\WINDOWS\twain_32
2015-05-24 22:26:35 ----D---- C:\WINDOWS\IME
2015-05-24 22:26:33 ----D---- C:\WINDOWS\system32\Com
2015-05-24 22:26:32 ----D---- C:\WINDOWS\system32\oobe
2015-05-24 22:26:32 ----D---- C:\WINDOWS\system32\en-US
2015-05-24 22:26:24 ----D---- C:\WINDOWS\system32\Sysprep
2015-05-24 22:26:23 ----D---- C:\WINDOWS\system32\migration
2015-05-24 22:25:57 ----D---- C:\WINDOWS\system32\setup
2015-05-24 22:25:47 ----D---- C:\WINDOWS\system32\cs-CZ
2015-05-24 22:25:45 ----D---- C:\WINDOWS\system32\sppui
2015-05-24 22:25:25 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-05-24 22:25:16 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-05-24 22:25:12 ----D---- C:\WINDOWS\system32\wbem
2015-05-24 22:24:35 ----D---- C:\WINDOWS\system32\migwiz
2015-05-24 22:24:33 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-05-24 22:24:29 ----SD---- C:\WINDOWS\system32\dsc
2015-05-24 22:24:29 ----D---- C:\WINDOWS\system32\Dism
2015-05-24 22:13:13 ----D---- C:\Program Files (x86)\Windows Mail
2015-05-24 22:13:11 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2015-05-24 22:13:10 ----D---- C:\Program Files (x86)\Windows Portable Devices
2015-05-24 22:13:10 ----D---- C:\Program Files (x86)\Windows Media Player
2015-05-24 22:13:05 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-05-24 22:12:48 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-05-24 22:12:18 ----D---- C:\Program Files\WindowsPowerShell
2015-05-24 22:11:02 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-05-24 14:03:49 ----D---- C:\ProgramData\Microsoft Help
2015-05-24 13:52:49 ----D---- C:\WINDOWS\system32\MRT
2015-05-24 13:28:06 ----A---- C:\WINDOWS\system32\MRT.exe
2015-05-24 13:22:28 ----SH---- C:\WINDOWS\system32\desktop.ini
2015-05-24 12:04:25 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll
2015-05-24 12:03:22 ----A---- C:\WINDOWS\system32\msclmd.dll
2015-05-23 19:30:21 ----RD---- C:\WINDOWS\assembly
2015-05-20 21:05:52 ----D---- C:\WINDOWS\Tasks
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-03-25 678384]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 ATP;@oem4.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-02-06 65784]
R3 BTATH_HCRP;@oem12.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 HIDSwitch;@oem10.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-01 4177920]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem23.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 iwdbus;@oem27.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-08-23 26008]
R3 kbfiltr;@oem9.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem24.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 AmUStor;@oem5.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2012-06-14 100992]
S3 AthBTPort;@oem11.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
S3 BTATH_LWFLT;@oem15.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-10-29 1198080]
S3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
S3 intaud_WaveExtensible;@oem26.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-08-23 39320]
S3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys []
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\WINDOWS\System32\drivers\WinUsb.sys [2013-08-22 78848]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-01-07 43336]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 OfficeSvc;Služba Microsoft Office; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31 1907896]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files\ASUS\P4G\InsOnSrv.exe [2013-03-26 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-13 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-24 116648]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-01 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-13 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-24 116648]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-01-20 641352]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-12-04 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
-----------------EOF-----------------
Run by Michaela at 2015-06-18 20:47:57
Microsoft Windows 8.1
System drive C: has 139 GB (73%) free of 190 GB
Total RAM: 3982 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:48:03, on 18. 6. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
C:\Program Files (x86)\disco games\disco_games_notification_service.exe
C:\Program Files (x86)\dress4u\dress4u_notification_service.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Michaela.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveShellExtensions.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Michaela\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Users\Michaela\Desktop\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Users\Michaela\Desktop\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveSystemServices.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11644 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
dashost.exe {1ab60e5c-f083-454e-8bf553b522ace251}
"C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
taskhostex.exe
C:\WINDOWS\Explorer.EXE
ClassicStartMenu.exe -startup
/QuitInfo:000000000000098C;0000000000000990;
/loadhooks /Parent:0000000000000b9c
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
taskeng.exe {EDDF0E15-E104-4BA6-A2A1-8CACDAD69826}
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
KBFiltr.exe
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files\ASUS\P4G\InsOnSrv.exe"
"C:\Program Files\ASUS\P4G\InsOnWMI.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\WINDOWS\system32\hkcmd.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
taskeng.exe {45B820FF-CCD6-484D-B518-863CEAAF5E18}
"C:\Program Files (x86)\disco games\disco_games_notification_service.exe" /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='disco games' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1429079294' /runfrom='task' /brwtype='notbg' /postponedhours='6'
"C:\Program Files (x86)\dress4u\dress4u_notification_service.exe" /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='dress4u' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1428777027' /runfrom='task' /brwtype='notbg' /postponedhours='6'
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5528.0.1438045376\1086912944" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,21,44 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0156 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3308 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowBelowNormalFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/StableBookmarksIndexURLs/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_09/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Disabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=5528 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --use-image-texture-target=3553 --disable-accelerated-video-decode --channel="5528.7.1315215721\1764574933" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
"C:\Users\Michaela\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-1-6.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-1-6.exe /rawdata=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
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-1-7.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-1-7.exe /rawdata=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
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-5.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-5.exe /rawdata=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
C:\WINDOWS\tasks\67455cff-43dc-490b-ace5-6ba279c9615b-5_user.job - C:\Program Files (x86)\iWebar\67455cff-43dc-490b-ace5-6ba279c9615b-5.exe /rawdata=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
C:\WINDOWS\tasks\disco_games_notification_service.job - C:\Program Files (x86)\disco games\disco_games_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='disco games' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1429079294' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\dress4u_notification_service.job - C:\Program Files (x86)\dress4u\dress4u_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='dress4u' /appid='73143' /srcid='2913' /bic='7283aa2056b2a337da640c1dd56aaf66' /verifier='e54ecdaba9431035a76c4d8241498cc9' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1428777027' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-1-6.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-1-6.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-1-7.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-1-7.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-5.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-5.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-5_user.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-5.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-6.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-6.exe /rawdata=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
C:\WINDOWS\tasks\e0c410e2-38be-4038-862e-31a30ed5e5da-7.job - C:\Program Files (x86)\SensePlus\e0c410e2-38be-4038-862e-31a30ed5e5da-7.exe /rawdata=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
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cf8a548d35be6f.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cfec4bccfeaf75.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2014-01-20 218784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-05-16 810768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-12-28 66688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-20 2331336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-05-16 488208]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-05-16 688912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-05-16 444688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-05-16 810768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-05-16 688912]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-01 769496]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2015-05-16 164112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Michaela\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-05-22 382664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2014-05-08 40312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2012-11-23 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSWebStorage]
C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe [2012-08-31 3423104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2013-10-01 771032]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2013-10-01 391128]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcui_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-12-03 1256080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-12-07 13262480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-01-20 43848]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-01-20 152392]
"DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2014-02-14 450560]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2014-01-10 1861968]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-12-28 129664]
C:\Users\Michaela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-01 623104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-18 20:47:57 ----D---- C:\rsit
2015-06-18 20:47:57 ----D---- C:\Program Files\trend micro
2015-06-18 20:41:24 ----D---- C:\Program Files (x86)\ESET
2015-06-18 19:58:25 ----D---- C:\WINDOWS\Migration
2015-06-18 19:52:38 ----D---- C:\ProgramData\ClassicShell
2015-06-18 19:52:37 ----D---- C:\Users\Michaela\AppData\Roaming\ClassicShell
2015-06-18 19:51:49 ----D---- C:\Program Files\Classic Shell
2015-06-18 19:35:10 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-06-18 19:25:11 ----D---- C:\Program Files (x86)\VS Revo Group
2015-06-12 21:18:09 ----A---- C:\WINDOWS\system32\wpdshext.dll
2015-06-12 21:18:08 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2015-06-12 21:17:55 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-06-12 21:17:53 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-06-12 21:17:28 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-06-12 21:17:22 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-06-12 21:17:21 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-06-12 21:17:11 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-06-12 21:17:10 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-06-12 21:16:59 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-06-12 21:16:47 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2015-06-12 21:15:14 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-06-12 21:14:46 ----A---- C:\WINDOWS\system32\sdbinst.exe
2015-06-12 21:14:44 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2015-06-12 21:14:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2015-06-12 21:14:37 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-06-12 21:14:29 ----A---- C:\WINDOWS\system32\dbgeng.dll
2015-06-12 21:14:27 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2015-06-12 21:14:26 ----A---- C:\WINDOWS\system32\dbghelp.dll
2015-06-12 21:14:25 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2015-06-12 21:14:17 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2015-06-12 21:14:12 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-06-12 21:14:10 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2015-06-12 21:13:55 ----A---- C:\WINDOWS\system32\SRH.dll
2015-06-12 21:13:54 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-06-12 21:13:49 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2015-05-26 17:49:05 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-05-26 17:49:00 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-05-26 17:48:58 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\system32\winbici.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2015-05-26 17:48:56 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2015-05-25 16:20:11 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-05-24 15:06:29 ----A---- C:\WINDOWS\system32\schannel.dll
2015-05-24 15:06:28 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-05-24 15:03:06 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-05-24 15:03:05 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-05-24 15:03:04 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-05-24 15:03:02 ----A---- C:\WINDOWS\system32\win32k.sys
2015-05-24 15:01:30 ----A---- C:\WINDOWS\system32\services.exe
2015-05-24 14:56:08 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-05-24 14:56:07 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-05-24 14:56:06 ----A---- C:\WINDOWS\system32\certcli.dll
2015-05-24 14:56:05 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-05-24 14:43:39 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-05-24 14:43:35 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-05-24 14:43:29 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-05-24 14:43:27 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-05-24 14:43:24 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-05-24 14:43:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-05-24 14:43:22 ----A---- C:\WINDOWS\system32\wininet.dll
2015-05-24 14:43:21 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-05-24 14:43:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-05-24 14:43:18 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-05-24 14:43:18 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-05-24 14:43:17 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-05-24 14:43:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-05-24 14:43:13 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-05-24 14:43:12 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-05-24 14:43:11 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-05-24 14:43:10 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-05-24 14:43:04 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-05-24 14:42:46 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-05-24 14:42:45 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-05-24 14:42:34 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-05-24 14:42:23 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-05-24 14:42:22 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-05-24 14:42:22 ----A---- C:\WINDOWS\system32\ieui.dll
2015-05-24 14:42:21 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-05-24 14:42:19 ----A---- C:\WINDOWS\system32\inseng.dll
2015-05-24 14:42:18 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-05-24 14:42:17 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-05-24 14:42:17 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-05-24 14:42:16 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-05-24 14:42:15 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-05-24 14:42:14 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-05-24 14:42:13 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-05-24 14:42:11 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-05-24 14:42:09 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-05-23 17:56:08 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-23 17:56:06 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
======List of files/folders modified in the last 1 month======
2015-06-18 20:47:57 ----D---- C:\Program Files
2015-06-18 20:44:43 ----D---- C:\WINDOWS\Prefetch
2015-06-18 20:41:24 ----RD---- C:\Program Files (x86)
2015-06-18 20:39:32 ----D---- C:\WINDOWS\Temp
2015-06-18 20:19:37 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-06-18 20:18:31 ----D---- C:\WINDOWS\system32\catroot2
2015-06-18 20:13:49 ----D---- C:\WINDOWS\Microsoft.NET
2015-06-18 20:12:29 ----D---- C:\WINDOWS\system32\config
2015-06-18 20:01:46 ----D---- C:\WINDOWS\WinSxS
2015-06-18 20:01:41 ----D---- C:\Program Files\Common Files
2015-06-18 20:01:41 ----D---- C:\Program Files (x86)\Common Files
2015-06-18 20:01:18 ----D---- C:\WINDOWS\Inf
2015-06-18 20:01:02 ----D---- C:\WINDOWS\System32
2015-06-18 20:01:02 ----D---- C:\Users\Michaela\AppData\Roaming\Seznam.cz
2015-06-18 20:01:02 ----D---- C:\Program Files\mcafee
2015-06-18 20:01:02 ----D---- C:\Program Files (x86)\ShopperPro
2015-06-18 20:01:01 ----D---- C:\Windows
2015-06-18 19:58:30 ----D---- C:\WINDOWS\SysWOW64
2015-06-18 19:58:29 ----D---- C:\WINDOWS\apppatch
2015-06-18 19:58:28 ----D---- C:\WINDOWS\system32\drivers
2015-06-18 19:58:27 ----RSD---- C:\WINDOWS\Fonts
2015-06-18 19:58:27 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-06-18 19:58:25 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-06-18 19:58:25 ----SD---- C:\WINDOWS\system32\GWX
2015-06-18 19:58:24 ----D---- C:\WINDOWS\system32\DriverStore
2015-06-18 19:55:40 ----D---- C:\WINDOWS\Minidump
2015-06-18 19:54:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-18 19:52:38 ----HD---- C:\ProgramData
2015-06-18 19:51:58 ----SHD---- C:\WINDOWS\Installer
2015-06-18 19:49:09 ----D---- C:\WINDOWS\system32\Tasks
2015-06-18 19:49:01 ----HD---- C:\WINDOWS\system32\GroupPolicy
2015-06-18 19:49:01 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2015-06-18 19:47:27 ----D---- C:\Program Files (x86)\Seznam.cz
2015-06-18 19:40:56 ----D---- C:\ProgramData\McAfee
2015-06-18 19:38:52 ----HD---- C:\WINDOWS\ELAMBKUP
2015-06-18 19:20:20 ----D---- C:\WINDOWS\rescache
2015-06-18 19:02:38 ----D---- C:\WINDOWS\AppReadiness
2015-06-18 19:02:37 ----HD---- C:\Program Files\WindowsApps
2015-06-18 19:02:01 ----D---- C:\WINDOWS\system32\sru
2015-06-17 20:32:33 ----D---- C:\WINDOWS\CbsTemp
2015-06-17 20:19:46 ----SHD---- C:\System Volume Information
2015-06-03 19:04:15 ----D---- C:\Users\Michaela\AppData\Roaming\XnView
2015-05-26 19:04:35 ----D---- C:\WINDOWS\MediaViewer
2015-05-26 19:04:28 ----D---- C:\WINDOWS\Camera
2015-05-26 19:04:24 ----D---- C:\WINDOWS\FileManager
2015-05-25 16:17:42 ----D---- C:\Program Files\Microsoft Silverlight
2015-05-25 16:17:42 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-05-24 22:45:06 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2015-05-24 22:44:54 ----D---- C:\Program Files (x86)\Internet Explorer
2015-05-24 22:44:52 ----D---- C:\Program Files\Internet Explorer
2015-05-24 22:43:34 ----D---- C:\Program Files\Windows Journal
2015-05-24 22:43:30 ----RD---- C:\WINDOWS\ToastData
2015-05-24 22:40:54 ----D---- C:\Program Files\Windows Mail
2015-05-24 22:40:52 ----D---- C:\Program Files\Windows Multimedia Platform
2015-05-24 22:40:50 ----D---- C:\Program Files\Windows Portable Devices
2015-05-24 22:40:50 ----D---- C:\Program Files\Windows Media Player
2015-05-24 22:40:41 ----D---- C:\Program Files\Windows Photo Viewer
2015-05-24 22:40:25 ----D---- C:\Program Files\Common Files\System
2015-05-24 22:40:21 ----D---- C:\WINDOWS\SYSWOW64\Com
2015-05-24 22:40:21 ----D---- C:\WINDOWS\servicing
2015-05-24 22:40:19 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-05-24 22:40:19 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-05-24 22:40:16 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-05-24 22:39:49 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-05-24 22:39:47 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-05-24 22:39:46 ----D---- C:\WINDOWS\SYSWOW64\sppui
2015-05-24 22:39:28 ----D---- C:\WINDOWS\SYSWOW64\wbem
2015-05-24 22:38:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-05-24 22:38:55 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-05-24 22:26:36 ----D---- C:\WINDOWS\twain_32
2015-05-24 22:26:35 ----D---- C:\WINDOWS\IME
2015-05-24 22:26:33 ----D---- C:\WINDOWS\system32\Com
2015-05-24 22:26:32 ----D---- C:\WINDOWS\system32\oobe
2015-05-24 22:26:32 ----D---- C:\WINDOWS\system32\en-US
2015-05-24 22:26:24 ----D---- C:\WINDOWS\system32\Sysprep
2015-05-24 22:26:23 ----D---- C:\WINDOWS\system32\migration
2015-05-24 22:25:57 ----D---- C:\WINDOWS\system32\setup
2015-05-24 22:25:47 ----D---- C:\WINDOWS\system32\cs-CZ
2015-05-24 22:25:45 ----D---- C:\WINDOWS\system32\sppui
2015-05-24 22:25:25 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-05-24 22:25:16 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-05-24 22:25:12 ----D---- C:\WINDOWS\system32\wbem
2015-05-24 22:24:35 ----D---- C:\WINDOWS\system32\migwiz
2015-05-24 22:24:33 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-05-24 22:24:29 ----SD---- C:\WINDOWS\system32\dsc
2015-05-24 22:24:29 ----D---- C:\WINDOWS\system32\Dism
2015-05-24 22:13:13 ----D---- C:\Program Files (x86)\Windows Mail
2015-05-24 22:13:11 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2015-05-24 22:13:10 ----D---- C:\Program Files (x86)\Windows Portable Devices
2015-05-24 22:13:10 ----D---- C:\Program Files (x86)\Windows Media Player
2015-05-24 22:13:05 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-05-24 22:12:48 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-05-24 22:12:18 ----D---- C:\Program Files\WindowsPowerShell
2015-05-24 22:11:02 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-05-24 14:03:49 ----D---- C:\ProgramData\Microsoft Help
2015-05-24 13:52:49 ----D---- C:\WINDOWS\system32\MRT
2015-05-24 13:28:06 ----A---- C:\WINDOWS\system32\MRT.exe
2015-05-24 13:22:28 ----SH---- C:\WINDOWS\system32\desktop.ini
2015-05-24 12:04:25 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll
2015-05-24 12:03:22 ----A---- C:\WINDOWS\system32\msclmd.dll
2015-05-23 19:30:21 ----RD---- C:\WINDOWS\assembly
2015-05-20 21:05:52 ----D---- C:\WINDOWS\Tasks
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-03-25 678384]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 ATP;@oem4.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-02-06 65784]
R3 BTATH_HCRP;@oem12.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2012-12-28 179432]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 HIDSwitch;@oem10.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-01 4177920]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-12-11 3258256]
R3 IntcDAud;@oem23.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-26 342528]
R3 iwdbus;@oem27.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-08-23 26008]
R3 kbfiltr;@oem9.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem24.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 AmUStor;@oem5.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2012-06-14 100992]
S3 AthBTPort;@oem11.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2012-12-28 89320]
S3 BTATH_LWFLT;@oem15.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2012-12-28 77464]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-10-29 1198080]
S3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
S3 intaud_WaveExtensible;@oem26.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-08-23 39320]
S3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys []
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\WINDOWS\System32\drivers\WinUsb.sys [2013-08-22 78848]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-05-08 65432]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2013-01-07 1280768]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-01-07 43336]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 OfficeSvc;Služba Microsoft Office; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31 1907896]
R3 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R3 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files\ASUS\P4G\InsOnSrv.exe [2013-03-26 277120]
R3 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2012-12-28 226944]
R3 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R3 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R3 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R3 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R3 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R3 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-13 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-24 116648]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-01 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-13 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-24 116648]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-01-20 641352]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Users\Michaela\Desktop\Microsoft office 2007\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-12-04 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
-----------------EOF-----------------