Prosím o kontrolu, vyskakující reklamy
Napsal: 28 črc 2015 11:30
Zdravím, prosím o kontrolu logu, na počítači prarodičů při používání Firefoxu začaly vyskakovat okna s reklamou. Log musím rozdělit do dvou příspěvků, nevejde se do jednoho.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Moje at 2015-07-28 12:20:30
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 281 GB (67%) free of 420 GB
Total RAM: 4040 MB (59% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:20:36, on 28.7.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17910)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtAvAC.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosHdpProc.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Moje.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Moje\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\Windows\system32\HPSIsvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_Trigger_Service - MICRO-STAR INTERNATIONAL CO., LTD. - C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8938 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\HPSIsvc.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
"C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
ngservice.exe pipeserver
taskeng.exe {6AA93A95-D371-49CD-94AB-896826BCD9F0}
"C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-6.exe" /rawdata=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
"C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-6.exe" /rawdata=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
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
szndesktop.exe default start
"C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "831222964-191675564-1663566630-14740635971850192944-1614711177-691289400-183468357
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtAvAC.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosHdpProc.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\System32\svchost.exe -k swprv
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Moje\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\Crossbrowse.job - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe /rawdata='h01IVlwJ/UcKfyvU+pAzTkGwZdZvVhlXKjPspoK8jsqD9DabTHJYREU7GHRjfE42PtpWVM1TyDCgA52ft/tKVOiPNi/0azQDbXJ1CYiZ9ahRK5yKXc3rfnN35JSnouXluycQp5uR38V5y8+cQYjkcKPm2I7qdZVvSq5oA7xFnBCOJlJxzHbdN1UU2NWRmwAzni18LVv9vNx3M33KPDR3bJ9s0bUgp7DjbkLiI1oWbWs6zlH/ELysBsNS7A8JypQJ76JsqicGDL5u4irVc5im61BdW3dRu1F7Py+VuhyThYBiwaRN3jYRN8duk5A4u5kzpDnoyUynMN3uDpT+kgH1Uw=='
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-6.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-6.exe /rawdata=UZ6EARPc7f3jM3/4S6kO5EPySu8/a3/+k8QNq1SzbzwQ5uXkP2Yn0bfiNbnFkdxabaN5XrxvzI5Gg2n6fL43vG7EBAs0KJRvTrt4XAZj2dGg/oavb9AYmho5DrzWiJ1157+qo5JEcJZGqoBYK0rPYZF1vSl6xO2Ni+L43W/qHO63OH9S7wGozP9wP63PGHgM2BUKFgB1uDNc8NXCvKapbF446KKcaYlYaUspttSmeS15XSy7JpAAuRdcQu2atLRdP8m1kmVdu8g+7/91SVCQocc6fBpFBdo1JDxUHCPfjPT/CgF1PTeRH/YWrDTyu4Y/O55CLS9wIMixuFRI9CJm18OxNJYqIe2iHy9bSxrbECYLPLGIVj3wBOfULuPOdqkgGd/8a6jSNWer+p82101kCMA73R0XtqD7z1c7BCNn/hrN1NAFXSi1bkDTyaGVoFn6I053WmJsH76FMIQILGR7QedOZPfHBldOAFRSUP9XN/5OZjo66tIj9eWfEr/JLYWNDNLLV2M3Z6pQ9i7tIZAZRg8Bd91AIB5i546jGxcD7M8hzGmbgUFKRzC3F+fqNqh6gsufbf7SdZP//UiGLC8FgTgn5VSboAw29YKwPa97C4wPdObLzseEx9chYsh7gzDxNT5XS/8P6Dzn6QAhxjf/OnqXl/BfaAeM4nnIY3rArs9nvmOqzXKDIL6kvSM8KXcmolcCFQ/RR9WAk7nxXksRFzg0Be3hhYM6sbb0AA59hMPkY5ph/9UnizC1Wxs6n/8RPOY4rDlS0g+4kTuAyQ/dUgBA9Ec9nS5KUUEbSDWKQM6pkMG9tgqRY3sX2ajHNRRhscLzZ8XTn/8zCToOqGl7kTizIQbR4+LM4W+yWixxHlLW4EwFSyYP/SFTUowb2llEzGU5ljLwDcf1nZZ4G/xLAHI8rD5qXbJQNbShW2PYLDL974LyGbR+wt9PfckD4/tqgjsYq/4aMw6g7De2SWDnG06cBk1LHrnnsnGIYAg164HnQ3HU+/wQhs8YVO6T8Y8UoZaVZNc0ejEv/OcyEO8NX4+TQb9dDgfeF31oOS9HC6qspVoB+2vHo+5iWW1bqNmfjiiW7/hl09Ibn0m3lP0OTQ0L0HpnHVSOvh+EbJXymiDOZsZByJsKPJ8ax8FIvyEot+STJWOQLCSrk54ZXS9ddl70zwB0H0YE7uozstVqlOduKS7vhSRkFhocOtBIhPtlyp1bkvvs5Teu2CMmfQdqn+zxBghjlmHIbUd9J+clt+cGJXpq37uLzN/EayGRfL1M8XJikrU2feF0D6MPfFeOECXxZeDR7D6HJo0X3YTH8Ar/g4Wx7Gl31UTOWfDHZMxb64BOvJR/VtuvPn7CiQ+POg==
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-7.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-7.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-10_user.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-10.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-11.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-11.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-3.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-3.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-4.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-4.exe /rawdata=n5aoKj4uSJ06B+Z8xcwa7xZ7fugU/8N1XYOdCrb7hyhLVDqEyd5DadWOJjE2qItwzfarz8rqjCIuzBLoVuQJiaE+Gc8RfQ8WSK0l0nOiZSVX0ABcOa2arpOKf8JRHUD6AioyucKWGt919+IJoLKeR7Oxt2BQct4GysBxMM+4LW+yg26gspSNh7gC+XO/oYauVsMXKDOP6hCMsTbXN3diGUAg4fIP+G1F6qMw77z3D9pm1rAoVoROau67PDYWl7hQfVIspkjNoU4s0LeqEuzBOgUbJ7d5dV5uOir66wXsD8N+3xNtL3YXKz7dK/hIegELyd+vMgZ4vdMKxgzt2q4yR2lHVG7jaSFvq+uCP2XyQcpxGfSZQ4BudQZ6Vcfxt52ZQZc85eTDp4MYDh/IY8pJqMOM+MOXUTp1iBo7OaDdwf071ScGKp8r37HW+snXDpKnS6yatlo3rm9vzRmdA1IjtpBaVR+2eA4h8BgGbExzP1m7TN/R73j2pONIm20g/OrDF7QSwYsvG2JHb1UuFsHP4MtgE1O4O4Ggtk1OanEipd1ZHqR++/nkGD4McJwchmZ1dsxKPY8IjA19H1vsD6enltH0VWe53PGBdNi5vv2JBgK66NC9FBenaHWTP1wMTmNKZ+ghodEUuP9/19IKqvRMRIiYE0m80PH2Yr8Oew5yyFdPYOX2hk+B1xmMS5hTfRgsXGCqNXNFeuonIcievdZwXFbomfXqQu7jltSl43XzOOwLh9/wjkN0ElL5yMXk62UidWRFUNKi54YtxODMQrivNot0Mvn+Wp6HGUe1v/iJhGpDXolImPjCdoQidHawiS27jZvVc2fiC8uHwFqDo3nHeqvfLoUKCLhGClYhM6Wx5LH/l1bvkZS7WP8DgwaEJUu0+qRTFAwG/mm/+4S/wKyiQlqIbBTHOazHl/waMSkjywB6unIIs96auc04opVfDpZp1kwEfnQ3XI5sn7V/KhGEhOF3tS7OICCcoCIruAu0QfNeJb4Kb/w/m553VHNTDq41IeILipoE8V+PtJ3Mpqct/2Aj1Q5/JwBTNrBeatb4ydDPNEJoGH0Z/aQyZU379adT2g4BCTWkXj4r7NN62pXsvz6kTDMJkM4e6q90bq6DdK6+dLg0Aay591amuP2LGqRy8lunjbg0g1plgNzX8uwiUz/0A3gHqffIzBGgZbe1jY5wvfpXMCujJuoBx5t88emWq3kWXZnBUS/nWNPArJJ2lm/trlofxZZo5gD8vL12akEmKfMs73dP8ceBaD5S7JORSsmHQa87vAB6myjZSGTKlAZaAcMpjNlEb4PddI+dy45DjkzvXuHjWa8L2NXwPMhM2uEnWXNJumR0gPF3nS2B8Xx0N3BRdP6kcC2j9DM48IUFLHoWeOacBMTaBqHutH5HgQk8VXZzq3/PACU0J1afFPsayIIKsLWGPmmhibUPYhc+mzWfRHEQIluDKK2jR6eOfAMFsi1OCID1J2p/+FPFiIAa7Pf1gJTyyTfiDQ9gb4EBtSSoGOvMU03skrwpnjqwn/rig0qNjcsks9nIL09US7oeEe01MJxfp2af404pHoR2s0Gnfai4x11Zx514pcsYgPXGOrfUmU2sJkjq67KZRE/mmK+6XuLYD1mEB8aDt+9sjd7fPPiZvYPvEn83HodPql115D1gjZxlIb23qmGopOv8BGVqV3k252t5pssC8gm6GTCBOvXS9jK34OpkD3H56x00YCoPmJTJT+hOuBGXjgFIlH5+x0IEST5GnWAZVJnWuYEPu+Izx0qanh3RvwRJ099KKa8kZct3JPn2rEpvH87GGE+Ee3gofx2lPup/q0smAqTMn+p4CJAMK3JAWbfULr+4HTBi340Hd1wIkuzrpA==
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5_user.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-6.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-6.exe /rawdata=veYoOoJVVbakwLHgvbAIRt0xtqgnUeLjW/UT6TwipFrMyTr62hpWbsTNrEUCp3KtE876eSAIFNwZgqYJbhE1VW/sIo5LMjKP3VoJbqzyQ2K7W7YkKcPmXMcduWpuA0CNQF2XAbNqFYE1qItjaTGismHy3glcCHVWLBU2BySbMiFLd7F6jQD7bQTj8n/3IC9XYVXkehgSGIIoxejYxuJHggOdLi5XKBMWWQQiaA6nSPk4Hz7VmOtLqZVCcj7yfAhzBlTx/IgFqSO5cR7b4XhdSnXT2xUVWZQTV8Eicup8a6DITunaThOsu2/P5xrPF9gAV7OIOOz5wCrh8udH8aNA3IdV6Z22/T3vaO+60e7osIy+ddZKJ83xc6gQasNh0VR2Gc24h1Revi0OHTUWaEz0zeMwNRvVbbxJ7BG270m/bVz6qTnKY3gUqT1ZoMG5lY+z+lA1GFdEW0Bu95EaKxM/4FhUGcbxY5Lm1XS5FGLU2imWMbeSyLQvyumeI1gNT0mljM+Um9Yv5MOJby9s8uwrDj/76jbDt4MszQcM5smELMFj6tVss5gBaD8has5ObUM1PO1MEJWUyZl9BFk2wBQhEnynoKruwtr2s/PLo9kGXLCodui5TztPKEQwnGS7umJ/avwaqiwYJd8qGgv2O+ifRP9NVodzMJRjoqDMzWByDTtUwCbPuUBY8AS30a9ml7maPd54mJZxpeqNPRaa2x6MwFchVqSlLUaWH9F2xQ9v61McNiUaKGv95fvB7VnBRZAYQtZzfx5VJ/9lvg0R1wZVNHfkZR1fZYbFRO8Ttpsfsc2gdumuXmDa63k9skAI9VU9n2c9vu61qJIQnpDHr2o7zK+91DlEQ8XS8ZlacVJ57xK2arywIx9kM7ca5JfM4w1CprKwdYW2rGUJfywnES/enSF55gdgvY104TA84jkRd7atB06UbXZ/X1cHCfZJiKxCxUjW9YWyeNW3GfQE9hVwTH2lwOkQ8a4INN6uC4imybdlEpCycNrtq/yVkWhnG/hTsbp95bMrWOHBdSWLafTUXxRUwepG0EudPTll/azO9Kshvr7eYp4rObg13KzFfJjZ8wVsge4la/RTkxpGtMgNfc6pPwXMKW74qiZb3M9CRuJnM7spuv3PfTVV7hhZfZMhKB+77aoY+B/pY+aBXrYhu25BwuCciyu0cLXSJUHu/oNoXl26JJd8/f6DHMA4wok/+j+CJQ/AUskPMj0FbWJeevcejeRVApjA4X6PwsTRO3uQw4yZv5gZERUa/qaYvFPrk0NXqRrfqZpB60IWRrjQwkkpS437E2FT9aYqc557skNJp1eODPyDNin3fpo/O7m46dmg8F7W4o+/Odj2nscQcKRA6pSQYKsQJqLx2+XO+VRS18ZYCJ26wHQReIMGqPx4aMpThs3tU5SmLMDGf8uYrA1lpu8dtHSsJO238HxAbQ4rTsucyQF0rNmiu56adjSERVv98Kcl1JnjebX7cN0WL/tbr9TPIzsup0KEbSQJRSONI320s3hX/J1h/jNgDJnSUaVBB/NHX+ZZ32XXZrznqXcSaThGqMrgXQdldU/LLBuB788h1iZ4Ojv5qhYcZXe2ot3zO7DfayunoKu/POIW/GVBHMkLxOEvry7e4/jHRI9EZ54PyvD5z2uFzBm7uvszWGtY/+qUI2+RHx0yJpDJTLHJBa9PK0D4rtEBCWH7Pn2A3YjXnsuZs6r+1+GhnH/EIy9JQ4nigbfgrUfBziE4LLyYz93XlQ9WoYXXDBubgQ1QQUY0Yk2+ycLqZGJ7/uTZHPjQLU6ULtehIFu5/j9AsUbJPsrqIxaBYe0IWvyq6ycsAYl22Pnd6zvBpltvHqLXdLLDrkIoYHOUABVupW0Q/ph+57Dx3CO9t+xo5/KqnGi4LGd377kdHFWGz88bwcs9iCOL/PONilRf1yqRR2P8n7kkGIApxbl3q2Pf4lVQqH7NwH02Jg3d9LdAFGuroz/8hP6sA53Fkl/GBMx8yOHotTMdEsX37LjvCbfVpRKD6FPzv2DCO1W8jK8l5chEaf8TSyBSyPUIwWiNpI215DrJ/YNYrSn9aOEThS/+oWlS9IwydZ76U33AfoUkMrTdbRucw/STDK+SIy58DAqIpcWj/liNi28i3tUBFr89b3CVMuTbmdoXtUoMJNO/W0u8J5rwa7wYHWwzonSYZ4/kK3+KA5To1ZldPJ5mefamvOjX/hyfZTHxTOcZ+LBY76doI27JolgXDfLYUOHEAP7YrXzvEn/iPtGBe+oDXmilQ7yeZSSOOwJd1XDfoadtxS1cdfXmSuCbZ8TM4bKn/FZXoF52FYwfzKLJxDWUOnSpoR9pp2EdQIbbGpOWSVrDe28S1RqrWgxPH2t5iSkBP52z43M1h31CGBd/IPJoTkjESHJ2R6Ypd9uGceSsS6zVTD8N7JuYU80b+8k8eHEVotxJX5CRd/gEswamvE8PoPHQihlhXA/VYpbI20fudl2HiVJMsMCuBI1jRiE4qajsKuJ+puJbvPmcYSf705DELAx00DEhY2ar3Ni34swV7WBo16yfl0/v
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-7.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-7.exe /rawdata=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
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Moje\AppData\Roaming\Mozilla\Firefox\Profiles\at2fz3x9.default
prefs.js - "browser.startup.homepage" - "seznam.cz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.209 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Users\Moje\AppData\Roaming\Mozilla\Firefox\Profiles\at2fz3x9.default\extensions\
AVJYFVOD75109374@HCDE39471360.com
C:\Users\Moje\AppData\Roaming\Mozilla\Firefox\Profiles\at2fz3x9.default\searchplugins\
askcom.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-06-30 662672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-30 565304]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-07-15 7637208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.szndesktop"=C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"cz.seznam.software.autoupdate"=C:\Users\Moje\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-06-27 292848]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-06-30 5515496]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"ITSecMng"=C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START []
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
Logfile of random's system information tool 1.10 (written by random/random)
Run by Moje at 2015-07-28 12:20:30
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 281 GB (67%) free of 420 GB
Total RAM: 4040 MB (59% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:20:36, on 28.7.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17910)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtAvAC.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosHdpProc.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Moje.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Moje\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\Windows\system32\HPSIsvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_Trigger_Service - MICRO-STAR INTERNATIONAL CO., LTD. - C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8938 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\HPSIsvc.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
"C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
ngservice.exe pipeserver
taskeng.exe {6AA93A95-D371-49CD-94AB-896826BCD9F0}
"C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-6.exe" /rawdata=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
"C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-6.exe" /rawdata=UZ6EARPc7f3jM3/4S6kO5EPySu8/a3/+k8QNq1SzbzwQ5uXkP2Yn0bfiNbnFkdxabaN5XrxvzI5Gg2n6fL43vG7EBAs0KJRvTrt4XAZj2dGg/oavb9AYmho5DrzWiJ1157+qo5JEcJZGqoBYK0rPYZF1vSl6xO2Ni+L43W/qHO63OH9S7wGozP9wP63PGHgM2BUKFgB1uDNc8NXCvKapbF446KKcaYlYaUspttSmeS15XSy7JpAAuRdcQu2atLRdP8m1kmVdu8g+7/91SVCQocc6fBpFBdo1JDxUHCPfjPT/CgF1PTeRH/YWrDTyu4Y/O55CLS9wIMixuFRI9CJm18OxNJYqIe2iHy9bSxrbECYLPLGIVj3wBOfULuPOdqkgGd/8a6jSNWer+p82101kCMA73R0XtqD7z1c7BCNn/hrN1NAFXSi1bkDTyaGVoFn6I053WmJsH76FMIQILGR7QedOZPfHBldOAFRSUP9XN/5OZjo66tIj9eWfEr/JLYWNDNLLV2M3Z6pQ9i7tIZAZRg8Bd91AIB5i546jGxcD7M8hzGmbgUFKRzC3F+fqNqh6gsufbf7SdZP//UiGLC8FgTgn5VSboAw29YKwPa97C4wPdObLzseEx9chYsh7gzDxNT5XS/8P6Dzn6QAhxjf/OnqXl/BfaAeM4nnIY3rArs9nvmOqzXKDIL6kvSM8KXcmolcCFQ/RR9WAk7nxXksRFzg0Be3hhYM6sbb0AA59hMPkY5ph/9UnizC1Wxs6n/8RPOY4rDlS0g+4kTuAyQ/dUgBA9Ec9nS5KUUEbSDWKQM6pkMG9tgqRY3sX2ajHNRRhscLzZ8XTn/8zCToOqGl7kTizIQbR4+LM4W+yWixxHlLW4EwFSyYP/SFTUowb2llEzGU5ljLwDcf1nZZ4G/xLAHI8rD5qXbJQNbShW2PYLDL974LyGbR+wt9PfckD4/tqgjsYq/4aMw6g7De2SWDnG06cBk1LHrnnsnGIYAg164HnQ3HU+/wQhs8YVO6T8Y8UoZaVZNc0ejEv/OcyEO8NX4+TQb9dDgfeF31oOS9HC6qspVoB+2vHo+5iWW1bqNmfjiiW7/hl09Ibn0m3lP0OTQ0L0HpnHVSOvh+EbJXymiDOZsZByJsKPJ8ax8FIvyEot+STJWOQLCSrk54ZXS9ddl70zwB0H0YE7uozstVqlOduKS7vhSRkFhocOtBIhPtlyp1bkvvs5Teu2CMmfQdqn+zxBghjlmHIbUd9J+clt+cGJXpq37uLzN/EayGRfL1M8XJikrU2feF0D6MPfFeOECXxZeDR7D6HJo0X3YTH8Ar/g4Wx7Gl31UTOWfDHZMxb64BOvJR/VtuvPn7CiQ+POg==
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\sppsvc.exe
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
szndesktop.exe default start
"C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "831222964-191675564-1663566630-14740635971850192944-1614711177-691289400-183468357
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtAvAC.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosHdpProc.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\System32\svchost.exe -k swprv
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Moje\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\Crossbrowse.job - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe /rawdata='h01IVlwJ/UcKfyvU+pAzTkGwZdZvVhlXKjPspoK8jsqD9DabTHJYREU7GHRjfE42PtpWVM1TyDCgA52ft/tKVOiPNi/0azQDbXJ1CYiZ9ahRK5yKXc3rfnN35JSnouXluycQp5uR38V5y8+cQYjkcKPm2I7qdZVvSq5oA7xFnBCOJlJxzHbdN1UU2NWRmwAzni18LVv9vNx3M33KPDR3bJ9s0bUgp7DjbkLiI1oWbWs6zlH/ELysBsNS7A8JypQJ76JsqicGDL5u4irVc5im61BdW3dRu1F7Py+VuhyThYBiwaRN3jYRN8duk5A4u5kzpDnoyUynMN3uDpT+kgH1Uw=='
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-6.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-6.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-7.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-1-7.exe /rawdata=V0vNVLA6+sKhdXJAPAaa2S0o/JdhbnmVDbZ1ssohT34m3A7ahG8/QRl3dDXmGQb60brRbHfo2oFdw63vNQECK1Rxr46Yz9+ktXW7pNuQ7pVLH/FmHzynpIf2wKTOsiY9hR030ByylCW7I/kfg3CbJj9A6MNEXdFBZSTB/eIKmbXCX3hyYnMudDo+E7asifs/kEKLr1oAC7phtKHPfu7uDpVAbauHjwOed5I6sq0BoR/ZO0HrpxmvEenIKFHtz688si2jV6DqhnCEJlfxedTSfEg7rgnbwZfoLjBOVpSB798wGH2a9ZlPDqS+U7Dx2/Rya9eXOdzDeegFZlPPwKOsTQk2RLtVu4weWAko/Wu4ZG8FdGFAp/m2AqL/YUcq9J5HCPgAIdMr6K/0cd7AzgMmlODDBJWy0cx+Nrvw0EBS3wvNr2gCaVmBPYjfW7SLnhMlXRVq95qM5FZT4R9ne3ny3g0NJOJ2eHMrOvyANQ4SfrnF7EARBdbPyj1fGh3QEmHuvSt6rDdaJmd98KN123O7govDyO1JCBNycqLxRa1k1OqkKZ77lRtYAfOrAFdD3g8M3pdEGg8zaaKDEnkWarsXKutS74INfzohCb94b8FfjeRm0fuP1u9Fqa6HBXp0boZ8DHXXgz2f/nChQ0L1/L3ue7NFna0gyChlNdU+P52kQ9A7Z/RU7OiVOS3CO8YxUEYvG8qX2uHmuo3YCeLK1X2lNk+cAofCBg2VMLzdUagbHPDTI6gE4otrja6K6l9pJoPAIc6NfySxjWdCTfiofl694SYDVY9hO39U9UG8JNp7/rSlY0VxR3iduXyZvHH0LHKKiHI+IXQTol81rC1nfgLccSN8ZZsEBnJ45GbzmAfNAS4oybci1WXUXTvk+d/Lpa5+hxDIEj8QPPDTCF2U59YOPtza23btgE08WmUEmN5hyOD8W5noHHzzdNtRABSStETAhfErOjBROaOQbJdyXqK7gyiOnCVk1yA3ZE+xdsAHa+y8K8gLrp4OYuFLbPB5Xm5wipTVJhuY+r2q8XBwlKMyuNQYozPXXC2ODS45h5ytk/m0S4R/lA9qqL5g6Jn1jMf7o931627RZ48rFCyB4uYR84V8qyFkRfSQuct08gQaZJiobiV/2PVUMM4R6YFgaz2Q2YGQJEzEDjLQaxKv2yKJDkaW0AU8rRg/9U58J+QozAOQKaP+bl0pwXcro/rG6lFO2tL96Pvb7Ee1uswgFa/9K5LqCaBWDHgReC+BvcN0N8/rkjUUz2HoM0yJhJdfKyvaxQt9aTEfzLaQlQJ5WpY/saH2M9x/jHJrCGXDLcmRtMZO2+/ZEfwM3wFlkWN4q4mqLX7XGtMyUClrjY+Ryhv6ertaTr0qPKDscGPCMmUWp0UE2L0XRufb2CMBsMvNQRgWR3Ai8c0DqzXtgVUYzpNIsXjymeTVLY2oAAbxCN0TLtMDGZ1VhbVQkIxO8bubd43UPDlui4vDjnXaIdvWM9HTECeoJM2nBO3Bb7TVldVDw/r1ELHC75Js8ZJiAv8vhMuM
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-10_user.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-10.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-11.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-11.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-3.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-3.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-4.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-4.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5_user.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-5.exe /rawdata=QFIAdQVOZZS6rCYVV4ObxGPH19EstXr2wPXqVL5tFhJy7v0Kgdnioe6YT1vCynVRP6l8XGRQ56d1soXG+AdVolN6Y80/gWJfXRiP9eVX2Kb2XYznp0ml5N/Pxf8UEOFFqBIbVjZYkX3Fhd/YluJ5DvYS0JhQAbQWbZBd5obv+46NS/fPfm55WfpPT9gUIphU2LB0PRbeA+3tWHWOOuJgYXkY4SdcE6Dn+3HTN1Vl/o0hBZll92hPz3Qkd0d/Z9rw3MPxU8GhFNsl57mQyQmnDXwsvOnBmwvn+OFFe0W826haJ+/CBWijKH3SPhEKKR/gKEiAtCjGJ1rQkBP66nwkwpopIsQ8RXvpjwRC9EQ1NKnNXVsuyBzpSKna0dIuB/WvXO+o9Z9H362aYH6sxGXeG7EuVJJ2Ac8+xJg9ztnJnZ5qUSOyQUPCG1RF95GGwC6aY+6a7MjXjYM1cq9tcy0hQUQFdDVQjzW9T2iEawB823tylqQveGKFUU5DkNZrNsDGwT4te9ugAzJskF3JqM3QbPZT5NNYLz2IXjH9IlnUNlQKl9KKgfeKf1qw5ZdgR1SsiCgxS4w/SWu7y8vIpFvigrTceCabUwkpUf6zNrwccelaGLA73DkZl23nxBBQA80QSlAxt9pZX4DkVS6Aawkl8uHiiM5cmeySzzLOFdQv+9Vr3qkIddRqJy2ARUN7abfHjyVVDrrZrvZuCpVt8+g47Sw0mjOZKNfVKclbtzeOP9NGBXoDHx3/YTQan7tHwkUoqNH+/uxyol6vYACpWnskBbgdg19dPaMm4JbQer1ot2dIrl3V1uq94eSxbM+XU3X3qjdWGX+TrhAT4IPdfs4a122RaqzHw/EVwJDLbMbb2SkV0VOMgMDGH9dfKLEvjuC1uyqwkxJH73Wt8I6IuwFj2tJsO/nmNHnU64H/UXy0zZCvkMxTTadat4SMMr5NVrep4wtW99o8GGSoX/FMDM2Qna7srstfsBa28BOGuyWDQR43rQhZSppHz4ZeakM8TV7+
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-6.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-6.exe /rawdata=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
C:\Windows\tasks\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-7.job - C:\Program Files (x86)\CinemaP-1.9cV21.07\f2fd4710-26e9-4477-abba-8e3c2fe5a0fe-7.exe /rawdata=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
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Moje\AppData\Roaming\Mozilla\Firefox\Profiles\at2fz3x9.default
prefs.js - "browser.startup.homepage" - "seznam.cz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.209 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Users\Moje\AppData\Roaming\Mozilla\Firefox\Profiles\at2fz3x9.default\extensions\
AVJYFVOD75109374@HCDE39471360.com
C:\Users\Moje\AppData\Roaming\Mozilla\Firefox\Profiles\at2fz3x9.default\searchplugins\
askcom.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-06-30 662672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-30 565304]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-07-15 7637208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.szndesktop"=C:\Users\Moje\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"cz.seznam.software.autoupdate"=C:\Users\Moje\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-06-27 292848]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-06-30 5515496]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"ITSecMng"=C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START []
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*