Stránka 1 z 1

blokování pošty - spam

Napsal: 12 pro 2015 21:13
od ratrex
Dobrý den,
u jednoho známého řeším problém, že mu poskytovatel internetu blokuje odchozí poštu z důvodu, že od něj nejspíše odchází spam. Po telefonické domluvě s technickou podporou poskytovatele jsem se dozvěděl, že by se mohlo jednat o tzv. "Sinkhole Message".
Přikládám log z RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by HIFISTUDIO at 2015-12-12 19:46:54
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 116 GB (46%) free of 250 GB
Total RAM: 3071 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:47:09, on 12.12.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18124)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Program Files\Hewlett-Packard\IAM\Bin\AsGHost.exe
C:\Program Files\DisplayLink Core Software\DisplayLinkUI.exe
C:\Windows\system32\GWX\GWX.exe
C:\Program Files\Intel\AMT\atchk.exe
C:\Program Files\ActivIdentity\ActivClient\acevents.exe
C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\vm305_sti.exe
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE
C:\Windows\system32\taskhost.exe
C:\Users\HIFISTUDIO\Downloads\RSIT.exe
C:\Program Files\trend micro\HIFISTUDIO.exe
C:\Windows\system32\DllHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://seznam.cz/?clid=2
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://atlas.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... kId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - (no file)
O2 - BHO: e105fff0f3e80131b6584734478597d40061911 - {11111111-1111-1111-1111-110611191111} - (no file)
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [atchk] "C:\Program Files\Intel\AMT\atchk.exe"
O4 - HKLM\..\Run: [acevents] "C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
O4 - HKLM\..\Run: [accrdsub] "C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [EaseUS EPM tray] C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [BigDog305] C:\Windows\VM305_STI.EXE VIMICRO USB PC Camera (ZC0305)
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [EPSON SX100 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "C:\Windows\TEMP\E_S5FAB.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73} (iCloud Web App Plugin) - https://www.icloud.com/system/iCloud.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Users\HP8710P\AppData\Local\Linkey\IEEXTE~1\ietlb.dll C:\PROGRA~1\HEWLET~1\IAM\bin\APSHook.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ActivIdentity Shared Store Service (ac.sharedstore) - ActivIdentity - C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: Intel(R) Active Management Technology System Status Service (atchksrv) - Intel Corporation - C:\Program Files\Intel\AMT\atchksrv.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\AtService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: DisplayLinkManager (DisplayLinkService) - DisplayLink Corp. - C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Active Management Technology Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\AMT\LMS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SmdmF Service (SmdmFService) - Unknown owner - C:\Program Files\Settings Manager\smdmf\SmdmFService.exe (file missing)
O23 - Service: SrvUpdater - Unknown owner - C:\Program Files\SoftwareUpdater\Upd4terSrv.exe
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: Intel(R) Active Management Technology User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\AMT\UNS.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE

--
End of file - 16227 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-1.job - C:\Program Files\SavePass 1.1\SavePass 1.1-codedownloader.exe /rawdata=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
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-11.job - C:\Program Files\SavePass 1.1\bd235320-55b3-4b4c-b65d-42e16109800c-11.exe /rawdata=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
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-2.job - C:\Program Files\SavePass 1.1\bd235320-55b3-4b4c-b65d-42e16109800c-2.exe /rawdata=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
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-4.job - C:\Program Files\SavePass 1.1\bd235320-55b3-4b4c-b65d-42e16109800c-4.exe /rawdata=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
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-5.job - C:\Program Files\SavePass 1.1\bd235320-55b3-4b4c-b65d-42e16109800c-5.exe /rawdata=Xd12MnfjPYmcr2BJmT/l0lgNaFlu3cZBpDEplkT+V1AgdzHAnGMsC/0tqXRyP48rn6f2mRVBs5GPO5CstWsOAUtWULWHGCQvCrQbZEyHFbP04x86ayQC7L+tudwwyoyMnE00ffdcVWvhru+xoZj47mIcga7onCyYJpCK4TFMksHHd5LTP4WMrjfDXZRCSELZXYiyKgZbOCP4rkjA9E3TblmyWGrXxvTOsBIeLS+mYA9iqSTyzCrpXbmN7oB7th/U5uqQg5LTzLTU3I7djGar0+jZV6gOsbBJjUR5URFmHjB72091p1kiBK1Ry+F2xokHHNCTZNHlPjQ3wN/Q2QsyGpBgjBdbnPXuIR3LbE45ef7Ub/iy1PvPQQ7fZN14lV/IWDzpZ3CyxtYFyXCXHX80plxhNwid1uR6DLxuaHuxXDR0Ek8DPMGYwWl3rbalT15iDY6WkqC0zai03KiCTGgP8LJbnP03kyWty7X3G5+XwiQDcXYxiYbpRR5MsKyeQfu5OpV2tJIggp69LnC8Day66dCG5HoU5raALqJf9VHC0akutz5sJdEyE3IAFM+ieQuOa5OYb4lZc29i+yyYasZ2zHfvR50kVHwrNCD8b8GAw/zX0IIZpcjjge4vmGU3CynTcynPf8TvalG4tOau6hp+/ZLhF12dT8gLeBgPdUYfxTZY5otJuS6k2ML68aTdCKat8g08JfCW5fBJRnaEIudoUDpO04GZx9gweuBAgPRuRh8tXDjmlhUJAyEJGFgnrFKzY0n3HWNkAPJYYO5mZlYyHyjLWQPz03SVbWdicbIBSEqjkd2q4HDKHJkZ7W8ciVa/dGTP1RoIt58uB3uCBBbcJ07DKgElgwKtHy7bhFQUhEkRkw9/fbgq6KKExSD/NZAJh5tAugkcbSzPWu/KTqmwIws0QKjkJCaVHkkx5qpEQYYX5S2AmSd4I408HG1sewhRDA9xgDbkQg6wjoObJzoZ4ly7GtT4+nQtIrogOpkNlOsafWIqf5KVGjKb0iKDPj9b
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-5_user.job - C:\Program Files\SavePass 1.1\bd235320-55b3-4b4c-b65d-42e16109800c-5.exe /rawdata=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
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-6.job - C:\Program Files\SavePass 1.1\bd235320-55b3-4b4c-b65d-42e16109800c-6.exe /rawdata=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
C:\Windows\tasks\bd235320-55b3-4b4c-b65d-42e16109800c-7.job - C:\Program Files\SavePass 1.1\bd235320-55b3-4b4c-b65d-42e16109800c-7.exe /rawdata=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
C:\Windows\tasks\c156bda9-04bd-481a-9a92-a48043392a25.job - C:\Program Files\SavePass 1.1\c156bda9-04bd-481a-9a92-a48043392a25.exe /agentregpath='SavePass 1.1' /appid=63429 /srcid='001504' /subid='0' /zdata='175158881' /bic=A126F2C2F0DA4BA0B54B1E52F97A48DBIE /verifier=81e0c61b8e3fc84564e9d31df30c83b4 /installerversion=1_35_11_26 /installationtime=1418523610 /statsdomain=http://stats.newstaticclientstack.com /errorsdomain=http://errors.newstaticclientstack.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newstaticclientstack.com /runfrom='task' /externallog=''
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-1.job - C:\Program Files\Sense\Sense-codedownloader.exe /rawdata=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
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-11.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-11.exe /rawdata=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
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-2.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-2.exe /rawdata=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
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-3.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-3.exe /rawdata=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
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-4.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-4.exe /rawdata=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
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-5.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-5.exe /rawdata=T5jQQHieB7oJp5oWOub+O2/I3PCcEbz6fBgWBOK/0KhXf6HdEnIdEUU6MRL2J5JpMaBVvj65x5oSNtYQMhWIUCWum/JR23WQ1Jsj8F12sQQjIb7pPzQTE+SI2xO1Ivym0U9lECFgWIo/QcaaoWsvtRiuSzY1BovuWvuBO81W8rt1/u4JEfIylBIoy9yFs8A66mVbPCEwl+GKaqfWclU+7SjxrQ91clFRW4MOBe37YkKss1pUKknPTKneDeQKzKhHlfMBxmlW2lLQsqObYZT2uNFj/jJXcCwgjEBmnyBS1gGnlzKxrtQLfhQwkYqvfZAvvOhh3Sh/BYaQ2IOrdq9PZoVXvJMgzRTvQdRQUDcsuIoL1K3fDAsSBs8ThJitbcjdTz7Q5tJ7ffy3ZsbytnKUqTcnZ+7yoBU8Z81LylOMw0hRsTVPkJzZHhuU8Vor4hjj4eNzuMx+8Vl6tiMuNNJUzHHghmRtwJU0hTbk/ZQKdQgnfsxchvmJSP3muuC34TAUhODI+rL0niA4tD58o1bxnBkc0edxiEWO0l/8em9g/FTkpSnNMiQrTwf/TZTxityJX/zikkx+PXPXafepneaNMjrxVyQke/sUKvR9fqU+hGldyvmLPJAPQibrNFVlQHSsuG5XgcU3gkhEdUuAKJmfuWGU7S85NHGN7cIrI+x2dsEu9W3yXUPd1MyEuT0K+PD69JOH80TRnCLj92jKa3pKqred+/wsOIHPRrMGF5DQC3wlB8BSYywnt6MyeAEUlALBN4m0nUhEvO4fTMTTM4nIA0FB1Wt3rBZGmSc0ezYTpQH6y9mc0EfpLm/tVTCPQ3cVkUBvj+Rme1lCSAmGyqP/IStJlIpvA7C+6YdKzXHPkJvxwCDEoi/OGNXvpAddA9lL56YZzVM6Cw9ZMjvciozwg+0OSwE9g++mN5xyOjwTMfI0WdP9niD3U1iqPrHjEEI2iw1m8yW7GZowZRPyhg5G/4eelFO3XyKcENLp2UwLZvIvDztHrMf+RPPbGxqOUpxMGFIBlVWkaXUG/mW6UYJLUJXYD+Q0PkMbWUrVy9ILxHkGwVYEb9zmQRGpb9vqwoRSIAfIrDhIJEK/hEwz61hbWVS596+IVMyzAnBkF9n3jpHf+lRuLQON68EFklLWWTg7H49xf1+8rbPcb3h0TMn/Kz8A8aGjtWTxNgnB20DDhck=
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-5_user.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-5.exe /rawdata=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
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-6.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-6.exe /rawdata=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
C:\Windows\tasks\c8177014-ce3a-4d93-a500-e870d19ee232-7.job - C:\Program Files\Sense\c8177014-ce3a-4d93-a500-e870d19ee232-7.exe /rawdata=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
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForHIFISTUDIO.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForHIFISTUDIO (null)
C:\Windows\tasks\OZAN.job - C:\Users\HP8710P\AppData\Roaming\OZAN.exe /infocmdline=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
C:\Windows\tasks\VJHY.job - C:\Users\HP8710P\AppData\Roaming\VJHY.exe /infocmdline=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

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191111}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-11-18 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-06 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-21 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12 1725056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-23 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2015-11-10 1731800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2013-12-13 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
Credential Manager for HP ProtectTools - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll [2009-07-28 98576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-21 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"atchk"=C:\Program Files\Intel\AMT\atchk.exe [2008-05-25 408088]
"acevents"=C:\Program Files\ActivIdentity\ActivClient\acevents.exe [2009-06-03 153640]
""= []
"accrdsub"=C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [2009-06-03 400936]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2009-08-07 354360]
"CognizanceTS"=C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll [2009-07-28 24848]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 1791272]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-09-01 499768]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe [2013-05-22 4367360]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-11-11 287800]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2010-04-05 186904]
"HPConnectionManager"=C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2011-05-23 103992]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"TrueImageMonitor.exe"=C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-07-26 6381192]
"AcronisTibMounterMonitor"=C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-01-10 1103424]
"Acronis Scheduler2 Service"=C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe [2013-02-15 412480]
"EaseUS EPM tray"=C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe []
"mobilegeni daemon"=C:\Program Files\Mobogenie\DaemonProcess.exe []
"nwiz"=C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2013-09-05 2586912]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-11-06 6133520]
"BigDog305"=C:\Windows\VM305_STI.EXE [2007-04-09 57344]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2015-04-28 311616]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"EPSON SX100 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE [2008-02-05 188928]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-11-30 50509440]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Users\HP8710P\AppData\Local\Linkey\IEEXTE~1\ietlb.dll C:\PROGRA~1\HEWLET~1\IAM\bin\APSHook.dll "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\Windows\system32\DeviceNP.dll [2009-10-05 75320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ASWLNPkg

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-12 19:46:54 ----D---- C:\rsit
2015-12-12 19:46:54 ----D---- C:\Program Files\trend micro
2015-12-10 00:23:12 ----D---- C:\Program Files\Mozilla Firefox
2015-12-10 00:09:38 ----SHD---- C:\Config.Msi
2015-12-09 13:47:49 ----A---- C:\Windows\system32\DWrite.dll
2015-12-09 13:47:47 ----A---- C:\Windows\system32\win32k.sys
2015-12-09 13:47:44 ----A---- C:\Windows\system32\user32.dll
2015-12-09 13:47:44 ----A---- C:\Windows\system32\FntCache.dll
2015-12-09 13:47:34 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-09 13:47:34 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-09 13:47:14 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-09 13:47:14 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-09 13:47:13 ----A---- C:\Windows\system32\iernonce.dll
2015-12-09 13:47:13 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-09 13:47:13 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\urlmon.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\occache.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-09 13:47:11 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-09 13:47:09 ----A---- C:\Windows\system32\webcheck.dll
2015-12-09 13:47:09 ----A---- C:\Windows\system32\msrating.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\wininet.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\iesetup.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-09 13:47:06 ----A---- C:\Windows\system32\ieui.dll
2015-12-09 13:47:06 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-09 13:47:05 ----A---- C:\Windows\system32\ieframe.dll
2015-12-09 13:47:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-09 13:47:02 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-09 13:47:01 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-09 13:47:01 ----A---- C:\Windows\system32\iertutil.dll
2015-12-09 13:47:00 ----A---- C:\Windows\system32\mshtml.dll
2015-12-09 13:46:57 ----A---- C:\Windows\system32\jscript9.dll
2015-12-09 13:46:55 ----A---- C:\Windows\system32\vbscript.dll
2015-12-09 13:46:55 ----A---- C:\Windows\system32\jscript.dll
2015-12-09 13:46:30 ----A---- C:\Windows\system32\tzres.dll
2015-12-09 13:45:54 ----A---- C:\Windows\system32\wuapi.dll
2015-12-09 13:45:53 ----A---- C:\Windows\system32\wucltux.dll
2015-12-09 13:45:53 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\wudriver.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wups2.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wups.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wuapp.exe
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-09 13:45:42 ----A---- C:\Windows\system32\els.dll
2015-12-09 13:45:30 ----A---- C:\Windows\system32\nlsbres.dll
2015-12-09 13:45:29 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-09 13:45:28 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-09 13:45:28 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-09 13:45:22 ----A---- C:\Windows\system32\usp10.dll
2015-12-09 13:45:01 ----A---- C:\Windows\system32\wshrm.dll
2015-12-09 13:45:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-03 16:30:55 ----D---- C:\Program Files\Common Files\AV

======List of files/folders modified in the last 1 month======

2015-12-12 19:47:05 ----D---- C:\Windows\Prefetch
2015-12-12 19:46:56 ----D---- C:\Windows\Temp
2015-12-12 19:46:54 ----RD---- C:\Program Files
2015-12-12 19:42:55 ----D---- C:\Users\HIFISTUDIO\AppData\Roaming\Skype
2015-12-12 17:40:58 ----D---- C:\Users\HIFISTUDIO\AppData\Roaming\foobar2000
2015-12-12 09:36:17 ----A---- C:\Windows\system32\log.txt
2015-12-11 06:33:49 ----D---- C:\Windows\system32\config
2015-12-11 06:30:53 ----HD---- C:\ProgramData
2015-12-11 06:30:53 ----A---- C:\ProgramData\HPWALog.txt
2015-12-10 21:20:56 ----D---- C:\Windows\rescache
2015-12-10 17:43:59 ----D---- C:\Windows\System32
2015-12-10 17:43:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-10 17:43:58 ----D---- C:\Windows\inf
2015-12-10 08:46:00 ----D---- C:\Windows\Microsoft.NET
2015-12-10 08:43:48 ----RSD---- C:\Windows\assembly
2015-12-10 08:18:24 ----D---- C:\Windows\winsxs
2015-12-10 08:14:36 ----D---- C:\Windows\system32\cs-CZ
2015-12-10 08:14:36 ----D---- C:\Windows\ehome
2015-12-10 08:14:35 ----D---- C:\Windows\system32\en-US
2015-12-10 08:14:32 ----D---- C:\Program Files\Internet Explorer
2015-12-10 08:14:27 ----RSD---- C:\Windows\Fonts
2015-12-10 08:14:22 ----D---- C:\Windows\system32\drivers
2015-12-10 00:47:57 ----SHD---- C:\Windows\Installer
2015-12-10 00:42:19 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-10 00:40:10 ----D---- C:\ProgramData\Microsoft Help
2015-12-10 00:29:24 ----SHD---- C:\System Volume Information
2015-12-10 00:15:43 ----A---- C:\Windows\win.ini
2015-12-10 00:06:48 ----D---- C:\Windows\system32\MRT
2015-12-09 23:57:46 ----A---- C:\Windows\system32\MRT.exe
2015-12-09 13:42:52 ----D---- C:\Windows\system32\catroot2
2015-12-09 08:27:10 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-12-06 08:43:42 ----SD---- C:\ProgramData\Microsoft
2015-12-05 00:48:31 ----D---- C:\Windows\Tasks
2015-12-04 08:09:32 ----D---- C:\ProgramData\Skype
2015-12-04 08:05:35 ----D---- C:\ProgramData\ProductData
2015-12-03 16:30:55 ----D---- C:\Windows\system32\Tasks
2015-12-03 16:30:55 ----D---- C:\Program Files\Common Files
2015-12-02 16:56:26 ----D---- C:\ProgramData\hpqLog
2015-12-02 13:25:18 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-10-06 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-10-06 208664]
R0 dlkmdldr;dlkmdldr; C:\Windows\system32\drivers\dlkmdldr.sys [2009-11-20 13936]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2013-11-06 81184]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 25656]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-05 331288]
R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-10-06 107984]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SafeBoot;SafeBoot; C:\Windows\system32\drivers\SafeBoot.sys [2009-07-29 109216]
R0 SbAlg;SbAlg; C:\Windows\system32\drivers\SbAlg.sys [2009-07-29 51408]
R0 SbFsLock;SbFsLock; C:\Windows\system32\drivers\SbFsLock.sys [2009-07-29 12960]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2013-11-06 158496]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2013-11-06 736192]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2013-11-06 130488]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-10-06 81728]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-11-06 794952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-11-06 435464]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2015-08-18 23840]
R1 RsvLock;RsvLock; C:\Windows\system32\drivers\RsvLock.sys [2009-07-29 12528]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-10-06 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-10-06 76000]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-10-06 115640]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-18 12672]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2009-06-25 48128]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2009-06-25 44544]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2009-06-25 38400]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-10-06 220752]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 35896]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 309248]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2013-11-06 234752]
R3 ATSwpWDF;AuthenTec TruePrint USB WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-07-29 482176]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2013-05-22 18424]
R3 dlkmd;dlkmd; C:\Windows\system32\drivers\dlkmd.sys [2009-11-20 165488]
R3 e1express;Intel(R) PRO/1000 – ovladač PCI Express síťového připojení; C:\Windows\system32\DRIVERS\e1e6032.sys [2009-07-13 211456]
R3 HBtnKey;HP Hotkey Device; C:\Windows\system32\DRIVERS\cpqbttn.sys [2010-02-24 15544]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2007-07-12 45056]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 15872]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2008-12-09 980992]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2008-12-09 207360]
R3 netw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-10-02 6000640]
R3 rismc32;RICOH Smart Card Reader; C:\Windows\system32\DRIVERS\rismc32.sys [2009-07-20 49152]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-06-04 1303728]
R3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S1 F06DEFF2-5B9C-490D-910F-35D3A9119622;F06DEFF2-5B9C-490D-910F-35D3A9119622; \??\C:\Program Files\Settings Manager\smdmf\smdmfmgrc2.cfg []
S2 sbmntr;SBMNTR; \??\C:\PROGRA~1\YTDOWN~1\sbmntr.sys []
S2 SPDRIVER_1.38.0.1439;SPDRIVER_1.38.0.1439; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1439\jsdrv.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 86056]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 18344]
S3 cpuz134;cpuz134; \??\C:\Users\HP8710P\AppData\Local\Temp\cpuz134\cpuz134_x32.sys []
S3 DAMDrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv.sys [2009-09-08 32312]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2013-02-05 49664]
S3 QDrive;QDrive; \??\C:\Users\HP8710P\AppData\Local\Temp\QDrive.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RICOH SmartCard Reader;RICOH SmartCard Reader; C:\Windows\system32\DRIVERS\rismc32.sys [2009-07-20 49152]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2013-11-06 888640]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ac.sharedstore;ActivIdentity Shared Store Service; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [2009-06-03 207400]
R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2013-02-15 830376]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 69632]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2013-11-06 3783672]
R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ASChannel;Local Communication Channel; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 atchksrv;Intel(R) Active Management Technology System Status Service; C:\Program Files\Intel\AMT\atchksrv.exe [2008-05-25 182808]
R2 ATService;AuthenTec Fingerprint Service; C:\Program Files\Fingerprint Sensor\AtService.exe [2009-07-29 1201400]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-06 146600]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-30 582944]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-10-12 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-10-12 1773696]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DisplayLinkService;DisplayLinkManager; C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe [2009-11-20 4715880]
R2 HpFkCryptService;Drive Encryption Service; C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2009-07-29 256544]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2011-05-13 26168]
R2 HsfXAudioService;HsfXAudioService; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2010-04-05 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Active Management Technology Local Management Service; C:\Program Files\Intel\AMT\LMS.exe [2008-05-25 121368]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-08-30 662816]
R2 SrvUpdater;SrvUpdater; C:\Program Files\SoftwareUpdater\Upd4terSrv.exe [2014-12-15 40960]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [2014-10-13 743688]
R2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-03-20 7084672]
R2 UNS;Intel(R) Active Management Technology User Notification Service; C:\Program Files\Intel\AMT\UNS.exe [2008-05-25 1464856]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-10-06 3219136]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-01-12 227896]
R3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-05-23 1098296]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2015-07-29 2909472]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 SmdmFService;SmdmF Service; C:\Program Files\Settings Manager\smdmf\SmdmFService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09 269504]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; C:\Windows\system32\flcdlock.exe [2009-10-05 362040]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2013-02-05 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-05-06 194032]
S3 HP ProtectTools Service;HP ProtectTools Service; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [2009-08-07 45056]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-10 102912]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 4846168]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Re: blokování pošty - spam

Napsal: 12 pro 2015 21:35
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: blokování pošty - spam

Napsal: 12 pro 2015 23:06
od ratrex
Posílám log z AdwCleaneru:

# AdwCleaner v5.024 - Logfile created 12/12/2015 at 22:42:13
# Updated 07/12/2015 by Xplode
# Database : 2015-12-12.1 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x86)
# Username : HIFISTUDIO - HP-PC
# Running from : C:\Users\HIFISTUDIO\Desktop\adwcleaner_5.024.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : sbmntr
[-] Service Deleted : SmdmFService
[-] Service Deleted : SrvUpdater
[-] Service Deleted : F06DEFF2-5B9C-490D-910F-35D3A9119622
[-] Service Deleted : SPDRIVER_1.38.0.1439

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\FTDownloader.com
[-] Folder Deleted : C:\Program Files\Mobogenie
[-] Folder Deleted : C:\Program Files\Reimage
[-] Folder Deleted : C:\Program Files\SoftwareUpdater
[-] Folder Deleted : C:\Program Files\YTDownloader
[-] Folder Deleted : C:\Program Files\SavePass 1.1
[-] Folder Deleted : C:\Program Files\Ge-Force
[-] Folder Deleted : C:\Program Files\SqueakyChocolate
[-] Folder Deleted : C:\Program Files\myfree codec
[!] Folder Not Deleted : C:\Program Files\Ge-Force
[!] Folder Not Deleted : C:\Program Files\SavePass 1.1
[-] Folder Deleted : C:\ProgramData\apn
[-] Folder Deleted : C:\ProgramData\Babylon
[-] Folder Deleted : C:\ProgramData\smdmf
[-] Folder Deleted : C:\ProgramData\Tarma Installer
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
[-] Folder Deleted : C:\Users\HIFISTUDIO\AppData\LocalLow\Ge-Force
[!] Folder Not Deleted : C:\Users\HIFISTUDIO\AppData\LocalLow\Ge-Force
[-] Folder Deleted : C:\Users\Public\Documents\ShopperPro
[#] Folder Deleted : C:\Windows\system32\Tasks\ShopperPro
[#] Folder Deleted : C:\Windows\system32\Tasks\YTDownloader

***** [ Files ] *****

[-] File Deleted : C:\Windows\Reimage.ini

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : Express FilesUpdate
[-] Task Deleted : ShopperPro
[-] Task Deleted : ShopperProJSUpd
[-] Task Deleted : SMupdate1
[-] Task Deleted : SPDriver
[-] Task Deleted : YTDownloader
[-] Task Deleted : YTDownloaderUpd
[-] Task Deleted : Microsoft\Windows\Multimedia\SMupdate3
[-] Task Deleted : Microsoft\Windows\Maintenance\SMupdate2
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-1
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-11
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-2
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-4
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-5
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-5_user
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-6
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-7
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-1
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-11
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-2
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-3
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-4
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-5
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-5_user
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-6
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-7
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-1
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-11
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-2
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-4
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-5
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-5_user
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-6
[-] Task Deleted : bd235320-55b3-4b4c-b65d-42e16109800c-7
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-1
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-11
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-2
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-3
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-4
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-5
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-5_user
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-6
[-] Task Deleted : c8177014-ce3a-4d93-a500-e870d19ee232-7

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\AddonsFramework.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHost.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\FTDownloader
[-] Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
[-] Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
[-] Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 2.BackgroundHostObject
[-] Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 2.BackgroundHostObject.1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
[-] Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
[-] Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
[-] Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
[!] Value Not Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls [x64]
[!] Value Not Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls [x86]
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\webcakeupdater
[-] Key Deleted : HKLM\SOFTWARE\Classes\SettingsManagerIEHelper.DNSGuard.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\SettingsManagerIEHelper.DNSGuard
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\iedll.dll
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BackgroundHost.EXE
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\ask.com
[-] Key Deleted : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\SysMenuExt
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\SysMenu.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [BackgroundHost.exe]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD [BackgroundHost.exe]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [Ge-Force-bg.exe]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [Sense-bg.exe]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [SavePass 1.1-bg.exe]
[-] Key Deleted : HKLM\SOFTWARE\7fcf06f6-998f-4cf5-8c88-751caee4684a
[-] Key Deleted : HKLM\SOFTWARE\e9e1d296-9486-44ec-a781-634bc2e4dafc
[-] Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [7go@7go.com]
[-] Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [speedanalysis02@SpeedAnalysis.com]
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gjajpkikblccgefaibcafkfbanllpefi
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lgnbhdnimikkoodkogjlcllngimhlapp
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{19975B78-1907-4DD6-A437-4C48120F46A4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{562B9316-C08A-444A-9482-62080DD851AE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18DBB6CE-3148-4FEC-B481-103CB3290427}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E1842850-FB16-4471-B327-7343FBAED55C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{61AB12E1-A5FF-11D1-B2E9-444553540000}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{82351441-9094-11D1-A24B-00A0C932C7DF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622192211}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622342229}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{045F91B3-695F-423A-98C7-8DE3C47AA020}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1348BD1B-C32A-41A7-9BD4-5377AA1AB925}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{395AFE6E-8308-48DB-89BE-ED5F4AA3D3EC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{43B390F0-6BA2-45CA-ABF2-5DB0CEE9B49D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{94CADA2E-1D3F-419F-8A3D-06C58EDF53C8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E52EB8B-8DD9-4605-AD36-D352BCD482F2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A1440EC3-F0FA-407A-B811-DE6668C06D29}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B9A84AD0-5777-46FD-8B8F-1EBD06750FBC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BBBE01ED-0F1E-44DB-88C1-5CC1AEE3B462}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1995F88-1C7F-40D7-B0FA-6F107F6308B8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E4A994B0-5550-4680-A4C6-B9470B888069}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F9EB11AB-9384-4736-9B33-993940F88895}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AA760BA8-5862-4BC5-9263-4452CBC0B264}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655195511}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655345529}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655815553}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666196611}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666346629}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666816653}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BB30FEA7-5866-406A-B47D-FB69E1AF8FD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93D511B5-143B-4A99-ABFC-B5B78AD0AE1B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644194411}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644344429}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644814453}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKCU\Software\GlobalUpdate
[-] Key Deleted : HKCU\Software\Myfree Codec
[-] Key Deleted : HKCU\Software\reimagerepair
[-] Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
[-] Key Deleted : HKCU\Software\AppDataLow\Software\Ge-Force
[!] Key Not Deleted : HKCU\Software\AppDataLow\Software\Ge-Force
[-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\ExpressFiles
[-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
[-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Key Deleted : HKLM\SOFTWARE\Myfree Codec
[-] Key Deleted : HKLM\SOFTWARE\SavePass 1.1
[-] Key Deleted : HKLM\SOFTWARE\SmdmF
[-] Key Deleted : HKLM\SOFTWARE\SoftwareUpdater
[-] Key Deleted : HKLM\SOFTWARE\Tarma Installer
[-] Key Deleted : HKLM\SOFTWARE\Reimage
[-] Key Deleted : HKLM\SOFTWARE\YTDownloader
[-] Key Deleted : HKLM\SOFTWARE\Ge-Force
[!] Key Not Deleted : HKLM\SOFTWARE\Ge-Force
[-] Key Deleted : HKLM\SOFTWARE\Ge-Force-nv
[!] Key Not Deleted : HKLM\SOFTWARE\SavePass 1.1
[-] Key Deleted : HKLM\SOFTWARE\SavePass 1.1-nv
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SavePass 1.1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Settings Manager
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader
[!] Key Not Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SavePass 1.1
[-] Key Deleted : HKU\.DEFAULT\Software\AskPartnerNetwork
[-] Key Deleted : HKU\.DEFAULT\Software\Ge-Force-nv
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\Sense
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\Ge-Force
[!] Key Not Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\Ge-Force
[-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Sense
[-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Ge-Force
[!] Key Not Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Ge-Force
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{46197f3d-30e7-4905-a14b-02bee3aaeb58}
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs]

***** [ Web browsers ] *****

[-] [C:\Users\HIFISTUDIO\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : lgnbhdnimikkoodkogjlcllngimhlapp

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [20189 bytes] ##########

Re: blokování pošty - spam

Napsal: 13 pro 2015 11:05
od Rudy
Dejte nový log RSIT.

Re: blokování pošty - spam

Napsal: 13 pro 2015 14:47
od ratrex
Přikládám nový log RSIT.

Logfile of random's system information tool 1.10 (written by random/random)
Run by HIFISTUDIO at 2015-12-13 13:46:34
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 116 GB (46%) free of 250 GB
Total RAM: 3071 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:46:37, on 13.12.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18124)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\DisplayLink Core Software\DisplayLinkUI.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
C:\Program Files\Hewlett-Packard\IAM\Bin\AsGHost.exe
C:\Windows\system32\GWX\GWX.exe
C:\Program Files\Intel\AMT\atchk.exe
C:\Program Files\ActivIdentity\ActivClient\acevents.exe
C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\vm305_sti.exe
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\HIFISTUDIO\Downloads\RSIT.exe
C:\Program Files\trend micro\HIFISTUDIO.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://seznam.cz/?clid=2
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://atlas.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... kId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: e105fff0f3e80131b6584734478597d40061911 - {11111111-1111-1111-1111-110611191111} - (no file)
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [atchk] "C:\Program Files\Intel\AMT\atchk.exe"
O4 - HKLM\..\Run: [acevents] "C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
O4 - HKLM\..\Run: [accrdsub] "C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [EaseUS EPM tray] C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [BigDog305] C:\Windows\VM305_STI.EXE VIMICRO USB PC Camera (ZC0305)
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [EPSON SX100 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "C:\Windows\TEMP\E_S5FAB.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73} (iCloud Web App Plugin) - https://www.icloud.com/system/iCloud.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\HEWLET~1\IAM\bin\APSHook.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ActivIdentity Shared Store Service (ac.sharedstore) - ActivIdentity - C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: Intel(R) Active Management Technology System Status Service (atchksrv) - Intel Corporation - C:\Program Files\Intel\AMT\atchksrv.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\AtService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: DisplayLinkManager (DisplayLinkService) - DisplayLink Corp. - C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Active Management Technology Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\AMT\LMS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: Intel(R) Active Management Technology User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\AMT\UNS.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE

--
End of file - 15806 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\c156bda9-04bd-481a-9a92-a48043392a25.job - C:\Program Files\SavePass 1.1\c156bda9-04bd-481a-9a92-a48043392a25.exe /agentregpath='SavePass 1.1' /appid=63429 /srcid='001504' /subid='0' /zdata='175158881' /bic=A126F2C2F0DA4BA0B54B1E52F97A48DBIE /verifier=81e0c61b8e3fc84564e9d31df30c83b4 /installerversion=1_35_11_26 /installationtime=1418523610 /statsdomain=http://stats.newstaticclientstack.com /errorsdomain=http://errors.newstaticclientstack.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http://logs.newstaticclientstack.com /runfrom='task' /externallog=''
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForHIFISTUDIO.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForHIFISTUDIO (null)
C:\Windows\tasks\OZAN.job - C:\Users\HP8710P\AppData\Roaming\OZAN.exe /infocmdline=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
C:\Windows\tasks\VJHY.job - C:\Users\HP8710P\AppData\Roaming\VJHY.exe /infocmdline=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

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191111}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-11-18 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-06 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-21 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12 1725056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-23 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2015-11-10 1731800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2013-12-13 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
Credential Manager for HP ProtectTools - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll [2009-07-28 98576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-21 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"atchk"=C:\Program Files\Intel\AMT\atchk.exe [2008-05-25 408088]
"acevents"=C:\Program Files\ActivIdentity\ActivClient\acevents.exe [2009-06-03 153640]
""= []
"accrdsub"=C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [2009-06-03 400936]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2009-08-07 354360]
"CognizanceTS"=C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll [2009-07-28 24848]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 1791272]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-09-01 499768]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe [2013-05-22 4367360]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-11-11 287800]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2010-04-05 186904]
"HPConnectionManager"=C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2011-05-23 103992]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"TrueImageMonitor.exe"=C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-07-26 6381192]
"AcronisTibMounterMonitor"=C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-01-10 1103424]
"Acronis Scheduler2 Service"=C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe [2013-02-15 412480]
"EaseUS EPM tray"=C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe []
"nwiz"=C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2013-09-05 2586912]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-11-06 6133520]
"BigDog305"=C:\Windows\VM305_STI.EXE [2007-04-09 57344]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2015-04-28 311616]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"EPSON SX100 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE [2008-02-05 188928]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-11-30 50509440]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\HEWLET~1\IAM\bin\APSHook.dll "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\Windows\system32\DeviceNP.dll [2009-10-05 75320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ASWLNPkg

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-12 22:39:14 ----D---- C:\AdwCleaner
2015-12-12 19:46:54 ----D---- C:\rsit
2015-12-12 19:46:54 ----D---- C:\Program Files\trend micro
2015-12-10 00:23:12 ----D---- C:\Program Files\Mozilla Firefox
2015-12-10 00:09:38 ----SHD---- C:\Config.Msi
2015-12-09 13:47:49 ----A---- C:\Windows\system32\DWrite.dll
2015-12-09 13:47:47 ----A---- C:\Windows\system32\win32k.sys
2015-12-09 13:47:44 ----A---- C:\Windows\system32\user32.dll
2015-12-09 13:47:44 ----A---- C:\Windows\system32\FntCache.dll
2015-12-09 13:47:34 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-09 13:47:34 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-09 13:47:14 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-09 13:47:14 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-09 13:47:13 ----A---- C:\Windows\system32\iernonce.dll
2015-12-09 13:47:13 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-09 13:47:13 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\urlmon.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\occache.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-09 13:47:11 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-09 13:47:09 ----A---- C:\Windows\system32\webcheck.dll
2015-12-09 13:47:09 ----A---- C:\Windows\system32\msrating.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\wininet.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\iesetup.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-09 13:47:06 ----A---- C:\Windows\system32\ieui.dll
2015-12-09 13:47:06 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-09 13:47:05 ----A---- C:\Windows\system32\ieframe.dll
2015-12-09 13:47:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-09 13:47:02 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-09 13:47:01 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-09 13:47:01 ----A---- C:\Windows\system32\iertutil.dll
2015-12-09 13:47:00 ----A---- C:\Windows\system32\mshtml.dll
2015-12-09 13:46:57 ----A---- C:\Windows\system32\jscript9.dll
2015-12-09 13:46:55 ----A---- C:\Windows\system32\vbscript.dll
2015-12-09 13:46:55 ----A---- C:\Windows\system32\jscript.dll
2015-12-09 13:46:30 ----A---- C:\Windows\system32\tzres.dll
2015-12-09 13:45:54 ----A---- C:\Windows\system32\wuapi.dll
2015-12-09 13:45:53 ----A---- C:\Windows\system32\wucltux.dll
2015-12-09 13:45:53 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\wudriver.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wups2.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wups.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wuapp.exe
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-09 13:45:42 ----A---- C:\Windows\system32\els.dll
2015-12-09 13:45:30 ----A---- C:\Windows\system32\nlsbres.dll
2015-12-09 13:45:29 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-09 13:45:28 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-09 13:45:28 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-09 13:45:22 ----A---- C:\Windows\system32\usp10.dll
2015-12-09 13:45:01 ----A---- C:\Windows\system32\wshrm.dll
2015-12-09 13:45:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-03 16:30:55 ----D---- C:\Program Files\Common Files\AV

======List of files/folders modified in the last 1 month======

2015-12-13 13:46:35 ----D---- C:\Windows\Temp
2015-12-13 13:42:57 ----D---- C:\Users\HIFISTUDIO\AppData\Roaming\Skype
2015-12-13 11:43:38 ----D---- C:\Windows\system32\config
2015-12-13 11:41:35 ----HD---- C:\ProgramData
2015-12-13 11:41:35 ----A---- C:\ProgramData\HPWALog.txt
2015-12-13 11:40:58 ----A---- C:\Windows\system32\log.txt
2015-12-12 22:47:44 ----D---- C:\Windows\Prefetch
2015-12-12 22:47:00 ----D---- C:\ProgramData\ProductData
2015-12-12 22:42:56 ----D---- C:\Windows\Tasks
2015-12-12 22:42:56 ----D---- C:\Windows\system32\Tasks
2015-12-12 22:42:21 ----AD---- C:\Windows
2015-12-12 22:42:19 ----RD---- C:\Program Files
2015-12-12 17:40:58 ----D---- C:\Users\HIFISTUDIO\AppData\Roaming\foobar2000
2015-12-10 21:20:56 ----D---- C:\Windows\rescache
2015-12-10 17:43:59 ----D---- C:\Windows\System32
2015-12-10 17:43:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-10 17:43:58 ----D---- C:\Windows\inf
2015-12-10 08:46:00 ----D---- C:\Windows\Microsoft.NET
2015-12-10 08:43:48 ----RSD---- C:\Windows\assembly
2015-12-10 08:18:24 ----D---- C:\Windows\winsxs
2015-12-10 08:14:36 ----D---- C:\Windows\system32\cs-CZ
2015-12-10 08:14:36 ----D---- C:\Windows\ehome
2015-12-10 08:14:35 ----D---- C:\Windows\system32\en-US
2015-12-10 08:14:32 ----D---- C:\Program Files\Internet Explorer
2015-12-10 08:14:27 ----RSD---- C:\Windows\Fonts
2015-12-10 08:14:22 ----D---- C:\Windows\system32\drivers
2015-12-10 00:47:57 ----SHD---- C:\Windows\Installer
2015-12-10 00:42:19 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-10 00:40:10 ----D---- C:\ProgramData\Microsoft Help
2015-12-10 00:29:24 ----SHD---- C:\System Volume Information
2015-12-10 00:15:43 ----A---- C:\Windows\win.ini
2015-12-10 00:06:48 ----D---- C:\Windows\system32\MRT
2015-12-09 23:57:46 ----A---- C:\Windows\system32\MRT.exe
2015-12-09 13:42:52 ----D---- C:\Windows\system32\catroot2
2015-12-09 08:27:10 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-12-06 08:43:42 ----SD---- C:\ProgramData\Microsoft
2015-12-04 08:09:32 ----D---- C:\ProgramData\Skype
2015-12-03 16:30:55 ----D---- C:\Program Files\Common Files
2015-12-02 16:56:26 ----D---- C:\ProgramData\hpqLog
2015-12-02 13:25:18 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-10-06 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-10-06 208664]
R0 dlkmdldr;dlkmdldr; C:\Windows\system32\drivers\dlkmdldr.sys [2009-11-20 13936]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2013-11-06 81184]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 25656]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-05 331288]
R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-10-06 107984]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SafeBoot;SafeBoot; C:\Windows\system32\drivers\SafeBoot.sys [2009-07-29 109216]
R0 SbAlg;SbAlg; C:\Windows\system32\drivers\SbAlg.sys [2009-07-29 51408]
R0 SbFsLock;SbFsLock; C:\Windows\system32\drivers\SbFsLock.sys [2009-07-29 12960]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2013-11-06 158496]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2013-11-06 736192]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2013-11-06 130488]
R0 vididr;Acronis Virtual Disk; C:\Windows\system32\DRIVERS\vididr.sys [2013-11-06 116000]
R0 vidsflt;Acronis Disk Storage Filter; C:\Windows\system32\DRIVERS\vidsflt.sys [2013-11-06 85280]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-10-06 81728]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-11-06 794952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-11-06 435464]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2015-08-18 23840]
R1 RsvLock;RsvLock; C:\Windows\system32\drivers\RsvLock.sys [2009-07-29 12528]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-10-06 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-10-06 76000]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-10-06 115640]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-18 12672]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2009-06-25 48128]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2009-06-25 44544]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2009-06-25 38400]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-10-06 220752]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 35896]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 309248]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2013-11-06 234752]
R3 ATSwpWDF;AuthenTec TruePrint USB WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-07-29 482176]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2013-05-22 18424]
R3 dlkmd;dlkmd; C:\Windows\system32\drivers\dlkmd.sys [2009-11-20 165488]
R3 e1express;Intel(R) PRO/1000 – ovladač PCI Express síťového připojení; C:\Windows\system32\DRIVERS\e1e6032.sys [2009-07-13 211456]
R3 HBtnKey;HP Hotkey Device; C:\Windows\system32\DRIVERS\cpqbttn.sys [2010-02-24 15544]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2007-07-12 45056]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 15872]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2008-12-09 980992]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2008-12-09 207360]
R3 netw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-10-02 6000640]
R3 rismc32;RICOH Smart Card Reader; C:\Windows\system32\DRIVERS\rismc32.sys [2009-07-20 49152]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-06-04 1303728]
R3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 86056]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 18344]
S3 cpuz134;cpuz134; \??\C:\Users\HP8710P\AppData\Local\Temp\cpuz134\cpuz134_x32.sys []
S3 DAMDrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv.sys [2009-09-08 32312]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2013-02-05 49664]
S3 QDrive;QDrive; \??\C:\Users\HP8710P\AppData\Local\Temp\QDrive.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RICOH SmartCard Reader;RICOH SmartCard Reader; C:\Windows\system32\DRIVERS\rismc32.sys [2009-07-20 49152]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2013-11-06 888640]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ac.sharedstore;ActivIdentity Shared Store Service; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [2009-06-03 207400]
R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2013-02-15 830376]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 69632]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2013-11-06 3783672]
R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ASChannel;Local Communication Channel; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 atchksrv;Intel(R) Active Management Technology System Status Service; C:\Program Files\Intel\AMT\atchksrv.exe [2008-05-25 182808]
R2 ATService;AuthenTec Fingerprint Service; C:\Program Files\Fingerprint Sensor\AtService.exe [2009-07-29 1201400]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-06 146600]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-30 582944]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-10-12 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-10-12 1773696]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DisplayLinkService;DisplayLinkManager; C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe [2009-11-20 4715880]
R2 HpFkCryptService;Drive Encryption Service; C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2009-07-29 256544]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2011-05-13 26168]
R2 HsfXAudioService;HsfXAudioService; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2010-04-05 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Active Management Technology Local Management Service; C:\Program Files\Intel\AMT\LMS.exe [2008-05-25 121368]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-08-30 662816]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [2014-10-13 743688]
R2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-03-20 7084672]
R2 UNS;Intel(R) Active Management Technology User Notification Service; C:\Program Files\Intel\AMT\UNS.exe [2008-05-25 1464856]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-10-06 3219136]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-01-12 227896]
R3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-05-23 1098296]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2015-07-29 2909472]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09 269504]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; C:\Windows\system32\flcdlock.exe [2009-10-05 362040]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2013-02-05 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-05-06 194032]
S3 HP ProtectTools Service;HP ProtectTools Service; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [2009-08-07 45056]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-10 102912]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 4846168]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Re: blokování pošty - spam

Napsal: 13 pro 2015 17:30
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\Google\Google Toolbar
C:\Program Files\Skype\Toolbars
C:\Windows\tasks\c156bda9-04bd-481a-9a92-a48043392a25.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\OZAN.job
C:\Windows\tasks\VJHY.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611191111}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

:services
c2cautoupdatesvc
c2cpnrsvc

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: blokování pošty - spam

Napsal: 13 pro 2015 18:53
od ratrex
Vše provedeno podle pokynů. Tady je nový RSIT log:

Logfile of random's system information tool 1.10 (written by random/random)
Run by HIFISTUDIO at 2015-12-13 18:36:58
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 137 GB (55%) free of 250 GB
Total RAM: 3071 MB (30% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:37:28, on 13.12.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18124)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\DisplayLink Core Software\DisplayLinkUI.exe
C:\Program Files\Hewlett-Packard\IAM\Bin\AsGHost.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
C:\Windows\system32\GWX\GWX.exe
C:\Program Files\Intel\AMT\atchk.exe
C:\Program Files\ActivIdentity\ActivClient\acevents.exe
C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.EXE
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\vm305_sti.exe
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE
C:\Program Files\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
C:\Program Files\AVAST Software\Avast\avBugReport.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\HIFISTUDIO\Downloads\RSIT.exe
C:\Program Files\trend micro\HIFISTUDIO.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://seznam.cz/?clid=2
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://atlas.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... kId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll
O4 - HKLM\..\Run: [atchk] "C:\Program Files\Intel\AMT\atchk.exe"
O4 - HKLM\..\Run: [acevents] "C:\Program Files\ActivIdentity\ActivClient\acevents.exe"
O4 - HKLM\..\Run: [accrdsub] "C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [EaseUS EPM tray] C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [BigDog305] C:\Windows\VM305_STI.EXE VIMICRO USB PC Camera (ZC0305)
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [EPSON SX100 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "C:\Windows\TEMP\E_S5FAB.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~2\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MICROS~2\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73} (iCloud Web App Plugin) - https://www.icloud.com/system/iCloud.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\HEWLET~1\IAM\bin\APSHook.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O23 - Service: ActivIdentity Shared Store Service (ac.sharedstore) - ActivIdentity - C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: Intel(R) Active Management Technology System Status Service (atchksrv) - Intel Corporation - C:\Program Files\Intel\AMT\atchksrv.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\AtService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: DisplayLinkManager (DisplayLinkService) - DisplayLink Corp. - C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\Windows\system32\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - McAfee, Inc. - C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Active Management Technology Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\AMT\LMS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: Intel(R) Active Management Technology User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\AMT\UNS.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\Program Files\Broadcom\Broadcom 802.11\WLTRYSVC.EXE

--
End of file - 15168 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\HPCeeScheduleForHIFISTUDIO.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForHIFISTUDIO (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-11-18 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-06 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-23 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2015-11-10 1731800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2013-12-13 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
Credential Manager for HP ProtectTools - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll [2009-07-28 98576]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"atchk"=C:\Program Files\Intel\AMT\atchk.exe [2008-05-25 408088]
"acevents"=C:\Program Files\ActivIdentity\ActivClient\acevents.exe [2009-06-03 153640]
""= []
"accrdsub"=C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [2009-06-03 400936]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2009-08-07 354360]
"CognizanceTS"=C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll [2009-07-28 24848]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 1791272]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-09-01 499768]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe [2013-05-22 4367360]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-11-11 287800]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2010-04-05 186904]
"HPConnectionManager"=C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2011-05-23 103992]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-02-21 1183744]
"TrueImageMonitor.exe"=C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-07-26 6381192]
"AcronisTibMounterMonitor"=C:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-01-10 1103424]
"Acronis Scheduler2 Service"=C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe [2013-02-15 412480]
"EaseUS EPM tray"=C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe []
"nwiz"=C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2013-09-05 2586912]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-11-06 6133520]
"BigDog305"=C:\Windows\VM305_STI.EXE [2007-04-09 57344]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2015-04-28 311616]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"EPSON SX100 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE [2008-02-05 188928]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-11-30 50509440]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\HEWLET~1\IAM\bin\APSHook.dll "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\Windows\system32\DeviceNP.dll [2009-10-05 75320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
wlnotify.dll []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ASWLNPkg

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-13 18:24:21 ----D---- C:\_OTM
2015-12-12 22:39:14 ----D---- C:\AdwCleaner
2015-12-12 19:46:54 ----D---- C:\rsit
2015-12-12 19:46:54 ----D---- C:\Program Files\trend micro
2015-12-10 00:23:12 ----D---- C:\Program Files\Mozilla Firefox
2015-12-10 00:09:38 ----SHD---- C:\Config.Msi
2015-12-09 13:47:49 ----A---- C:\Windows\system32\DWrite.dll
2015-12-09 13:47:47 ----A---- C:\Windows\system32\win32k.sys
2015-12-09 13:47:44 ----A---- C:\Windows\system32\user32.dll
2015-12-09 13:47:44 ----A---- C:\Windows\system32\FntCache.dll
2015-12-09 13:47:34 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-09 13:47:34 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-09 13:47:14 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-09 13:47:14 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-09 13:47:13 ----A---- C:\Windows\system32\iernonce.dll
2015-12-09 13:47:13 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-09 13:47:13 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\urlmon.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\occache.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-09 13:47:12 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-09 13:47:12 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-09 13:47:11 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-09 13:47:09 ----A---- C:\Windows\system32\webcheck.dll
2015-12-09 13:47:09 ----A---- C:\Windows\system32\msrating.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\wininet.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\iesetup.dll
2015-12-09 13:47:08 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-09 13:47:06 ----A---- C:\Windows\system32\ieui.dll
2015-12-09 13:47:06 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-09 13:47:05 ----A---- C:\Windows\system32\ieframe.dll
2015-12-09 13:47:02 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-09 13:47:02 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-09 13:47:01 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-09 13:47:01 ----A---- C:\Windows\system32\iertutil.dll
2015-12-09 13:47:00 ----A---- C:\Windows\system32\mshtml.dll
2015-12-09 13:46:57 ----A---- C:\Windows\system32\jscript9.dll
2015-12-09 13:46:55 ----A---- C:\Windows\system32\vbscript.dll
2015-12-09 13:46:55 ----A---- C:\Windows\system32\jscript.dll
2015-12-09 13:46:30 ----A---- C:\Windows\system32\tzres.dll
2015-12-09 13:45:54 ----A---- C:\Windows\system32\wuapi.dll
2015-12-09 13:45:53 ----A---- C:\Windows\system32\wucltux.dll
2015-12-09 13:45:53 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\wudriver.dll
2015-12-09 13:45:52 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wups2.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wups.dll
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wuapp.exe
2015-12-09 13:45:51 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-09 13:45:42 ----A---- C:\Windows\system32\els.dll
2015-12-09 13:45:30 ----A---- C:\Windows\system32\nlsbres.dll
2015-12-09 13:45:29 ----A---- C:\Windows\system32\KBDAZE.DLL
2015-12-09 13:45:28 ----A---- C:\Windows\system32\kbdgeoqw.dll
2015-12-09 13:45:28 ----A---- C:\Windows\system32\KBDAZEL.DLL
2015-12-09 13:45:22 ----A---- C:\Windows\system32\usp10.dll
2015-12-09 13:45:01 ----A---- C:\Windows\system32\wshrm.dll
2015-12-09 13:45:01 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-03 16:30:55 ----D---- C:\Program Files\Common Files\AV

======List of files/folders modified in the last 1 month======

2015-12-13 18:37:11 ----D---- C:\Windows\Temp
2015-12-13 18:34:15 ----D---- C:\Users\HIFISTUDIO\AppData\Roaming\Skype
2015-12-13 18:32:28 ----HD---- C:\ProgramData
2015-12-13 18:32:28 ----A---- C:\ProgramData\HPWALog.txt
2015-12-13 18:31:51 ----D---- C:\Windows\system32\config
2015-12-13 18:29:38 ----A---- C:\Windows\system32\log.txt
2015-12-13 18:27:18 ----D---- C:\Windows\System32
2015-12-13 18:27:18 ----AD---- C:\Windows
2015-12-13 18:24:24 ----D---- C:\Windows\Tasks
2015-12-13 18:24:23 ----RD---- C:\Program Files\Skype
2015-12-13 18:24:23 ----D---- C:\Program Files\Google
2015-12-12 22:47:44 ----D---- C:\Windows\Prefetch
2015-12-12 22:47:00 ----D---- C:\ProgramData\ProductData
2015-12-12 22:42:56 ----D---- C:\Windows\system32\Tasks
2015-12-12 22:42:19 ----RD---- C:\Program Files
2015-12-12 17:40:58 ----D---- C:\Users\HIFISTUDIO\AppData\Roaming\foobar2000
2015-12-10 21:20:56 ----D---- C:\Windows\rescache
2015-12-10 17:43:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-10 17:43:58 ----D---- C:\Windows\inf
2015-12-10 08:46:00 ----D---- C:\Windows\Microsoft.NET
2015-12-10 08:43:48 ----RSD---- C:\Windows\assembly
2015-12-10 08:18:24 ----D---- C:\Windows\winsxs
2015-12-10 08:14:36 ----D---- C:\Windows\system32\cs-CZ
2015-12-10 08:14:36 ----D---- C:\Windows\ehome
2015-12-10 08:14:35 ----D---- C:\Windows\system32\en-US
2015-12-10 08:14:32 ----D---- C:\Program Files\Internet Explorer
2015-12-10 08:14:27 ----RSD---- C:\Windows\Fonts
2015-12-10 08:14:22 ----D---- C:\Windows\system32\drivers
2015-12-10 00:47:57 ----SHD---- C:\Windows\Installer
2015-12-10 00:42:19 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-10 00:40:10 ----D---- C:\ProgramData\Microsoft Help
2015-12-10 00:29:24 ----SHD---- C:\System Volume Information
2015-12-10 00:15:43 ----A---- C:\Windows\win.ini
2015-12-10 00:06:48 ----D---- C:\Windows\system32\MRT
2015-12-09 23:57:46 ----A---- C:\Windows\system32\MRT.exe
2015-12-09 13:42:52 ----D---- C:\Windows\system32\catroot2
2015-12-09 08:27:10 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-12-06 08:43:42 ----SD---- C:\ProgramData\Microsoft
2015-12-04 08:09:32 ----D---- C:\ProgramData\Skype
2015-12-03 16:30:55 ----D---- C:\Program Files\Common Files
2015-12-02 16:56:26 ----D---- C:\ProgramData\hpqLog
2015-12-02 13:25:18 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-10-06 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-10-06 208664]
R0 dlkmdldr;dlkmdldr; C:\Windows\system32\drivers\dlkmdldr.sys [2009-11-20 13936]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2013-11-06 81184]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 25656]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-05 331288]
R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-10-06 107984]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SafeBoot;SafeBoot; C:\Windows\system32\drivers\SafeBoot.sys [2009-07-29 109216]
R0 SbAlg;SbAlg; C:\Windows\system32\drivers\SbAlg.sys [2009-07-29 51408]
R0 SbFsLock;SbFsLock; C:\Windows\system32\drivers\SbFsLock.sys [2009-07-29 12960]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2013-11-06 158496]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2013-11-06 736192]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2013-11-06 130488]
R0 vididr;Acronis Virtual Disk; C:\Windows\system32\DRIVERS\vididr.sys [2013-11-06 116000]
R0 vidsflt;Acronis Disk Storage Filter; C:\Windows\system32\DRIVERS\vidsflt.sys [2013-11-06 85280]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-10-06 81728]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-11-06 794952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-11-06 435464]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2015-08-18 23840]
R1 RsvLock;RsvLock; C:\Windows\system32\drivers\RsvLock.sys [2009-07-29 12528]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-10-06 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-10-06 76000]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-10-06 115640]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-18 12672]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2009-06-25 48128]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2009-06-25 44544]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2009-06-25 38400]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-10-06 220752]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 35896]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-24 309248]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2013-11-06 234752]
R3 ATSwpWDF;AuthenTec TruePrint USB WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-07-29 482176]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2013-05-22 18424]
R3 dlkmd;dlkmd; C:\Windows\system32\drivers\dlkmd.sys [2009-11-20 165488]
R3 e1express;Intel(R) PRO/1000 – ovladač PCI Express síťového připojení; C:\Windows\system32\DRIVERS\e1e6032.sys [2009-07-13 211456]
R3 HBtnKey;HP Hotkey Device; C:\Windows\system32\DRIVERS\cpqbttn.sys [2010-02-24 15544]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2007-07-12 45056]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2009-04-29 15872]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2008-12-09 980992]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2008-12-09 207360]
R3 netw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-10-02 6000640]
R3 rismc32;RICOH Smart Card Reader; C:\Windows\system32\DRIVERS\rismc32.sys [2009-07-20 49152]
R3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-06-04 1303728]
R3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 30720]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 86056]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2009-07-01 108072]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 18344]
S3 cpuz134;cpuz134; \??\C:\Users\HP8710P\AppData\Local\Temp\cpuz134\cpuz134_x32.sys []
S3 DAMDrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv.sys [2009-09-08 32312]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2013-02-05 49664]
S3 QDrive;QDrive; \??\C:\Users\HP8710P\AppData\Local\Temp\QDrive.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 RICOH SmartCard Reader;RICOH SmartCard Reader; C:\Windows\system32\DRIVERS\rismc32.sys [2009-07-20 49152]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2013-11-06 888640]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 15872]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ac.sharedstore;ActivIdentity Shared Store Service; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [2009-06-03 207400]
R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2013-02-15 830376]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-02-06 69632]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2013-11-06 3783672]
R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ASChannel;Local Communication Channel; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 atchksrv;Intel(R) Active Management Technology System Status Service; C:\Program Files\Intel\AMT\atchksrv.exe [2008-05-25 182808]
R2 ATService;AuthenTec Fingerprint Service; C:\Program Files\Fingerprint Sensor\AtService.exe [2009-07-29 1201400]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-06 146600]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-30 582944]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DisplayLinkService;DisplayLinkManager; C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe [2009-11-20 4715880]
R2 HpFkCryptService;Drive Encryption Service; C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2009-07-29 256544]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2011-05-13 26168]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2010-04-05 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Active Management Technology Local Management Service; C:\Program Files\Intel\AMT\LMS.exe [2008-05-25 121368]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-08-30 662816]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [2014-10-13 743688]
R2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-03-20 7084672]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-10-06 3219136]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-01-12 227896]
R3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-05-23 1098296]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-05-13 1129760]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 4846168]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 HsfXAudioService;HsfXAudioService; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2015-07-29 2909472]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 UNS;Intel(R) Active Management Technology User Notification Service; C:\Program Files\Intel\AMT\UNS.exe [2008-05-25 1464856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09 269504]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; C:\Windows\system32\flcdlock.exe [2009-10-05 362040]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2013-02-05 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-05-06 194032]
S3 HP ProtectTools Service;HP ProtectTools Service; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [2009-08-07 45056]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-10 102912]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Re: blokování pošty - spam

Napsal: 13 pro 2015 20:07
od Rudy
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: blokování pošty - spam

Napsal: 13 pro 2015 21:01
od ratrex
Provedeno. OTM se odstranilo.
Změnu jsme nezaznamenali, ani před tím se počítač na první pohled nechoval nějak podezřele. Jen ten poskytovatel internetu několikrát zablokoval odchozí poštu z důvodu, že z toho PC odchází velké množství zpráv a říkali, že by se mohlo jednat o "Sinkhole Message". Nějaký rootkit?

Re: blokování pošty - spam

Napsal: 13 pro 2015 21:19
od Rudy
Rootkit tam nebyl. Většina toho, co jsme mazali, byla AdWare a pak nějaké zbytečnosti.

Re: blokování pošty - spam

Napsal: 13 pro 2015 21:29
od ratrex
Takže by mělo být už všechno v pořádku?

Re: blokování pošty - spam

Napsal: 13 pro 2015 22:21
od Rudy
Ano, pokud nemáte nějaký jiný problém.

Re: blokování pošty - spam

Napsal: 13 pro 2015 22:29
od ratrex
Snad se tedy už problém nevyskytne. Děkuji za pomoc!

Re: blokování pošty - spam

Napsal: 13 pro 2015 22:36
od Rudy
Také doufám. Kdyby ano, jsme tu stále. Rádo se stalo! :)