Vytváření zástupců na flash disku
Napsal: 02 led 2016 23:09
Zdravím všechny, před Vánocema jsem nutně potřebovala upravit jeden obrázek, nenapadlo mě nic chytřejšího než si stáhnout cracklý Photoshop. Tipuji, že mi zaviroval PC. Když jsem obrázek přetáhla na Flash disk, tak se mi po několika vteřinách vytvořil i jeho zástupce. Při odebrání Flash disku hlavní soubor zmizel a zůstal tam jen ten zástupce. Zkoušela jsem druhý flash disk, ale problém nastal znovu a to i u jiných souborů. Prosím o jakoukoliv radu, co jde s tímto problémem dělat. Posílám log z RSIT. Podotýkám, že jsem Photoshop odinstalovala, protože crack stejně nefungoval (přesto se v PC nadále někde nachází).
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lucka at 2016-01-02 22:52:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 26 GB (27%) free of 96 GB
Total RAM: 2038 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:52:12, on 2.1.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe
C:\Windows\SysWOW64\WScript.exe
C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe
C:\Program Files\trend micro\Lucka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?type ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?typ ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?typ ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [MSStp] C:\Windows\system32\msstp.vbe
O4 - HKLM\..\Run: [mncrlvbirSrv] C:\Windows\inf\mncrlvbir.vbe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Nike+ Connect] "C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack] wscript.exe //B "C:\Users\Lucka\AppData\Local\Temp\Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs"
O4 - Startup: Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Lucka\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Lucka\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: O2FLASH - Unknown owner - C:\Windows\system32\DRIVERS\o2flash.exe (file missing)
O23 - Service: PicexaService - Taiwan Shui Mu Chih Ching Technology Limited - C:\Program Files (x86)\Picexa\PicexaSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Serviio - Unknown owner - C:\Program Files\Serviio\bin\ServiioService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: XAudioService - Unknown owner - C:\Windows\system32\DRIVERS\xaudio64.exe (file missing)
--
End of file - 8401 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Picexa\PicexaSvc.exe"
C:\Windows\System32\spoolsv.exe
taskeng.exe {57328AB2-DE89-4327-B0F7-E82D252FEF91}
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\DRIVERS\o2flash.exe
"C:\Program Files\Serviio\bin\ServiioService.exe"
"C:\Program Files\Serviio\bin\ServiioService.exe" Serviio __i4j_restart
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\wscript.exe" //B "C:\Users\Lucka\AppData\Local\Temp\Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs"
"C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe" /start
"C:\Windows\System32\WScript.exe" "C:\Windows\inf\mncrlvbir.vbe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\sppsvc.exe
"C:\Users\Lucka\Desktop\RSITx64.exe"
taskeng.exe {23DC4163-243E-470E-8FE3-CA0B2DE92E3B}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Lucka\AppData\Roaming\Mozilla\Firefox\Profiles\ttizn7vj.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.5.0]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-08-27 545264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-08-27 193520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4c81-863D-3BA0751E1419}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 385560]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack"=wscript.exe //B C:\Users\Lucka\AppData\Local\Temp\Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Camera Assistant Software"=C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe [2009-04-10 417792]
"MSStp"=C:\Windows\system32\msstp.vbe []
"mncrlvbirSrv"=C:\Windows\inf\mncrlvbir.vbe [2014-01-19 1342]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Nike+ Connect"=C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe [2015-10-10 71680]
C:\Users\Lucka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 261120]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-01-02 22:42:48 ----D---- C:\rsit
2016-01-02 22:42:48 ----D---- C:\Program Files\trend micro
2016-01-02 22:25:03 ----SHD---- C:\$RECYCLE.BIN
2016-01-02 22:09:42 ----A---- C:\Windows\zip.exe
2016-01-02 22:09:42 ----A---- C:\Windows\SWSC.exe
2016-01-02 22:09:42 ----A---- C:\Windows\SWREG.exe
2016-01-02 22:09:42 ----A---- C:\Windows\sed.exe
2016-01-02 22:09:42 ----A---- C:\Windows\PEV.exe
2016-01-02 22:09:42 ----A---- C:\Windows\NIRCMD.exe
2016-01-02 22:09:42 ----A---- C:\Windows\MBR.exe
2016-01-02 22:09:42 ----A---- C:\Windows\grep.exe
2016-01-02 22:07:48 ----D---- C:\Qoobox
2016-01-02 22:07:09 ----D---- C:\Windows\erdnt
2015-12-16 21:03:34 ----A---- C:\Windows\SYSWOW64\wshrm.dll
2015-12-16 21:03:34 ----A---- C:\Windows\system32\wshrm.dll
2015-12-16 21:03:34 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-16 21:03:29 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-12-16 21:03:29 ----A---- C:\Windows\system32\tzres.dll
2015-12-16 21:03:05 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-12-16 21:03:05 ----A---- C:\Windows\system32\usp10.dll
2015-12-16 21:03:01 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-16 21:03:01 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-16 21:03:01 ----A---- C:\Windows\system32\wuapi.dll
2015-12-16 21:03:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-16 21:03:00 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-16 21:03:00 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wups2.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wups.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wudriver.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wucltux.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wuapp.exe
2015-12-16 21:03:00 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-16 21:02:59 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-12-16 21:02:59 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-16 21:02:45 ----A---- C:\Windows\system32\DWrite.dll
2015-12-16 21:02:44 ----A---- C:\Windows\system32\win32k.sys
2015-12-16 21:02:43 ----A---- C:\Windows\system32\FntCache.dll
2015-12-16 21:02:42 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-16 21:02:41 ----A---- C:\Windows\system32\user32.dll
2015-12-16 21:02:38 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-16 21:02:30 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-16 21:02:30 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-16 21:02:29 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-16 21:02:29 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-16 21:00:59 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-12-16 21:00:59 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-12-16 21:00:59 ----A---- C:\Windows\system32\iertutil.dll
2015-12-16 21:00:59 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-16 21:00:59 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-16 21:00:58 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-12-16 21:00:58 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-16 21:00:57 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-12-16 21:00:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-16 21:00:56 ----A---- C:\Windows\system32\iernonce.dll
2015-12-16 21:00:56 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-16 21:00:55 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-16 21:00:55 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-16 21:00:55 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-16 21:00:54 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-16 21:00:51 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-12-16 21:00:51 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-16 21:00:51 ----A---- C:\Windows\system32\occache.dll
2015-12-16 21:00:51 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-16 21:00:50 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-12-16 21:00:50 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-12-16 21:00:50 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-16 21:00:50 ----A---- C:\Windows\system32\urlmon.dll
2015-12-16 21:00:50 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-16 21:00:49 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-12-16 21:00:49 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-16 21:00:49 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-16 21:00:48 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-16 21:00:48 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-16 21:00:47 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-16 21:00:45 ----A---- C:\Windows\system32\iesetup.dll
2015-12-16 21:00:45 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-16 21:00:43 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-16 21:00:43 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-12-16 21:00:43 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-12-16 21:00:43 ----A---- C:\Windows\system32\vbscript.dll
2015-12-16 21:00:42 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-16 21:00:42 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-16 21:00:41 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-12-16 21:00:41 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-16 21:00:39 ----A---- C:\Windows\system32\ieui.dll
2015-12-16 21:00:39 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-16 21:00:38 ----A---- C:\Windows\system32\ieframe.dll
2015-12-16 21:00:37 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-16 21:00:36 ----A---- C:\Windows\system32\webcheck.dll
2015-12-16 21:00:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-16 21:00:36 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-16 21:00:35 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-16 21:00:35 ----A---- C:\Windows\system32\jscript.dll
2015-12-16 21:00:33 ----A---- C:\Windows\system32\wininet.dll
2015-12-16 21:00:33 ----A---- C:\Windows\system32\jscript9.dll
2015-12-16 21:00:31 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-16 21:00:29 ----A---- C:\Windows\system32\msrating.dll
2015-12-16 21:00:26 ----A---- C:\Windows\system32\mshtml.dll
2015-12-16 20:58:49 ----A---- C:\Windows\system32\els.dll
2015-12-16 20:58:48 ----A---- C:\Windows\SYSWOW64\els.dll
2015-12-06 17:06:31 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-12-06 16:57:18 ----D---- C:\Program Files\Common Files\Adobe
2015-12-06 16:55:52 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-12-03 17:50:59 ----D---- C:\ProgramData\Malwarebytes
2015-12-03 08:39:14 ----N---- C:\bootsqm.dat
======List of files/folders modified in the last 1 month======
2016-01-02 22:50:52 ----D---- C:\Windows\Temp
2016-01-02 22:50:51 ----D---- C:\Program Files (x86)\Picexa
2016-01-02 22:50:16 ----D---- C:\Config.Msi
2016-01-02 22:49:35 ----D---- C:\Windows\system32\config
2016-01-02 22:42:48 ----RD---- C:\Program Files
2016-01-02 22:24:32 ----D---- C:\Windows\Microsoft.NET
2016-01-02 22:23:58 ----SHD---- C:\System Volume Information
2016-01-02 22:19:36 ----D---- C:\Windows
2016-01-02 22:19:36 ----A---- C:\Windows\system.ini
2016-01-02 22:16:12 ----D---- C:\Windows\SYSWOW64\drivers
2016-01-02 22:16:12 ----D---- C:\Windows\SysWOW64
2016-01-02 22:16:12 ----D---- C:\Windows\AppPatch
2016-01-02 22:16:11 ----D---- C:\Program Files (x86)\Common Files
2016-01-02 22:09:30 ----SHD---- C:\Windows\Installer
2016-01-02 22:09:23 ----RD---- C:\Program Files (x86)
2016-01-02 22:09:23 ----D---- C:\Windows\system32\drivers
2016-01-02 21:51:06 ----D---- C:\ProgramData\Adobe
2016-01-02 21:50:23 ----D---- C:\Program Files (x86)\Adobe
2016-01-02 18:24:22 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-01-02 18:19:49 ----D---- C:\Windows\System32
2016-01-02 18:19:49 ----D---- C:\Windows\inf
2016-01-02 18:19:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-22 16:05:48 ----RSD---- C:\Windows\assembly
2015-12-21 08:59:56 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-12-21 08:49:47 ----D---- C:\Windows\winsxs
2015-12-21 08:49:09 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-21 08:49:09 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:54:25 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:06:53 ----D---- C:\Windows\system32\MRT
2015-12-18 15:00:28 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:00:28 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:00:25 ----D---- C:\Windows\ehome
2015-12-18 15:00:22 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:00:20 ----D---- C:\Windows\SYSWOW64\en-US
2015-12-18 15:00:19 ----D---- C:\Windows\system32\en-US
2015-12-18 15:00:17 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 12:52:35 ----D---- C:\ProgramData\Microsoft Help
2015-12-18 12:49:36 ----SD---- C:\Users\Lucka\AppData\Roaming\Microsoft
2015-12-18 12:40:16 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-18 12:40:16 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-17 23:03:33 ----D---- C:\Windows\debug
2015-12-17 23:03:00 ----A---- C:\Windows\system32\MRT.exe
2015-12-10 08:49:51 ----RSD---- C:\Windows\Fonts
2015-12-09 04:39:31 ----N---- C:\Windows\system32\MpSigStub.exe
2015-12-06 17:16:48 ----D---- C:\Users\Lucka\AppData\Roaming\Adobe
2015-12-06 17:11:38 ----D---- C:\Windows\system32\Tasks
2015-12-06 17:06:31 ----D---- C:\ProgramData
2015-12-06 16:57:18 ----D---- C:\Program Files\Common Files
2015-12-03 20:56:57 ----D---- C:\Windows\Tasks
2015-12-03 19:46:48 ----D---- C:\Windows\system32\wfp
2015-12-03 19:46:48 ----D---- C:\Windows\system32\DriverStore
2015-12-03 19:46:47 ----D---- C:\Windows\system32\wbem
2015-12-03 19:46:47 ----D---- C:\Windows\system32\log
2015-12-03 19:46:47 ----D---- C:\ProgramData\AutoKMS
2015-12-03 19:46:16 ----D---- C:\Windows\registration
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2007-11-09 26968]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-01-25 283064]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-09-23 6180832]
R3 NETwLv64; Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\NETwLv64.sys [2000-01-01 7533568]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 109056]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2011-08-05 292024]
R3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2011-07-12 19904]
R3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
R3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2011-01-27 67384]
R3 UVCFTR;UVCFTR; C:\Windows\System32\Drivers\UVCFTR_S.SYS [2009-04-10 20520]
S2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 17024]
S2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio64.sys [2007-08-07 10240]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 CAXHWAZL;CAXHWAZL; C:\Windows\system32\DRIVERS\CAXHWAZL.sys [2007-08-03 293376]
S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\CAX_DPV.sys [2007-08-03 1481216]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 O2MDRDR;O2MDRDR; C:\Windows\system32\DRIVERS\o2mdx64.sys [2000-01-01 63264]
S3 O2SDRDR;O2SDRDR; C:\Windows\system32\DRIVERS\o2sdx64.sys [2000-01-01 49696]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\CAX_CNXT.sys [2007-08-03 740352]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 O2FLASH;O2FLASH; C:\Windows\system32\DRIVERS\o2flash.exe [2000-01-01 65536]
R2 PicexaService;PicexaService; C:\Program Files (x86)\Picexa\PicexaSvc.exe [2015-09-14 722400]
R2 Serviio;Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [2014-03-21 359936]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio64.exe [2007-08-07 412672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-02 269504]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-01-06 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-08 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-09-03 149160]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2011-04-01 198064]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-01-23 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lucka at 2016-01-02 22:52:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 26 GB (27%) free of 96 GB
Total RAM: 2038 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:52:12, on 2.1.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe
C:\Windows\SysWOW64\WScript.exe
C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe
C:\Program Files\trend micro\Lucka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?type ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?typ ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?typ ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe" /start
O4 - HKLM\..\Run: [MSStp] C:\Windows\system32\msstp.vbe
O4 - HKLM\..\Run: [mncrlvbirSrv] C:\Windows\inf\mncrlvbir.vbe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Nike+ Connect] "C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack] wscript.exe //B "C:\Users\Lucka\AppData\Local\Temp\Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs"
O4 - Startup: Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Lucka\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Lucka\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: O2FLASH - Unknown owner - C:\Windows\system32\DRIVERS\o2flash.exe (file missing)
O23 - Service: PicexaService - Taiwan Shui Mu Chih Ching Technology Limited - C:\Program Files (x86)\Picexa\PicexaSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Serviio - Unknown owner - C:\Program Files\Serviio\bin\ServiioService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: XAudioService - Unknown owner - C:\Windows\system32\DRIVERS\xaudio64.exe (file missing)
--
End of file - 8401 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Picexa\PicexaSvc.exe"
C:\Windows\System32\spoolsv.exe
taskeng.exe {57328AB2-DE89-4327-B0F7-E82D252FEF91}
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
C:\Windows\system32\DRIVERS\o2flash.exe
"C:\Program Files\Serviio\bin\ServiioService.exe"
"C:\Program Files\Serviio\bin\ServiioService.exe" Serviio __i4j_restart
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\wscript.exe" //B "C:\Users\Lucka\AppData\Local\Temp\Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs"
"C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe" /start
"C:\Windows\System32\WScript.exe" "C:\Windows\inf\mncrlvbir.vbe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\system32\GWX\GWX.exe"
C:\Windows\system32\sppsvc.exe
"C:\Users\Lucka\Desktop\RSITx64.exe"
taskeng.exe {23DC4163-243E-470E-8FE3-CA0B2DE92E3B}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Lucka\AppData\Roaming\Mozilla\Firefox\Profiles\ttizn7vj.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.267 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.5.0]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-08-27 545264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-08-27 193520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4c81-863D-3BA0751E1419}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 385560]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack"=wscript.exe //B C:\Users\Lucka\AppData\Local\Temp\Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Camera Assistant Software"=C:\Program Files (x86)\Camera Assistant Software for Toshiba\traybar.exe [2009-04-10 417792]
"MSStp"=C:\Windows\system32\msstp.vbe []
"mncrlvbirSrv"=C:\Windows\inf\mncrlvbir.vbe [2014-01-19 1342]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Nike+ Connect"=C:\Program Files (x86)\Nike\Nike+ Connect\Nike+ Connect daemon.exe [2015-10-10 71680]
C:\Users\Lucka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Photoshop CC 2015 (20150529 r 88) (32+64Bit) + Crack.vbs
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 261120]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2016-01-02 22:42:48 ----D---- C:\rsit
2016-01-02 22:42:48 ----D---- C:\Program Files\trend micro
2016-01-02 22:25:03 ----SHD---- C:\$RECYCLE.BIN
2016-01-02 22:09:42 ----A---- C:\Windows\zip.exe
2016-01-02 22:09:42 ----A---- C:\Windows\SWSC.exe
2016-01-02 22:09:42 ----A---- C:\Windows\SWREG.exe
2016-01-02 22:09:42 ----A---- C:\Windows\sed.exe
2016-01-02 22:09:42 ----A---- C:\Windows\PEV.exe
2016-01-02 22:09:42 ----A---- C:\Windows\NIRCMD.exe
2016-01-02 22:09:42 ----A---- C:\Windows\MBR.exe
2016-01-02 22:09:42 ----A---- C:\Windows\grep.exe
2016-01-02 22:07:48 ----D---- C:\Qoobox
2016-01-02 22:07:09 ----D---- C:\Windows\erdnt
2015-12-16 21:03:34 ----A---- C:\Windows\SYSWOW64\wshrm.dll
2015-12-16 21:03:34 ----A---- C:\Windows\system32\wshrm.dll
2015-12-16 21:03:34 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-16 21:03:29 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-12-16 21:03:29 ----A---- C:\Windows\system32\tzres.dll
2015-12-16 21:03:05 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-12-16 21:03:05 ----A---- C:\Windows\system32\usp10.dll
2015-12-16 21:03:01 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-12-16 21:03:01 ----A---- C:\Windows\system32\wuaueng.dll
2015-12-16 21:03:01 ----A---- C:\Windows\system32\wuapi.dll
2015-12-16 21:03:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-12-16 21:03:00 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-12-16 21:03:00 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wuwebv.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wups2.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wups.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wudriver.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wucltux.dll
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wuauclt.exe
2015-12-16 21:03:00 ----A---- C:\Windows\system32\wuapp.exe
2015-12-16 21:03:00 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-12-16 21:02:59 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-12-16 21:02:59 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-12-16 21:02:45 ----A---- C:\Windows\system32\DWrite.dll
2015-12-16 21:02:44 ----A---- C:\Windows\system32\win32k.sys
2015-12-16 21:02:43 ----A---- C:\Windows\system32\FntCache.dll
2015-12-16 21:02:42 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-12-16 21:02:41 ----A---- C:\Windows\system32\user32.dll
2015-12-16 21:02:38 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-12-16 21:02:30 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-16 21:02:30 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-16 21:02:29 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2015-12-16 21:02:29 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2015-12-16 21:00:59 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-12-16 21:00:59 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-12-16 21:00:59 ----A---- C:\Windows\system32\iertutil.dll
2015-12-16 21:00:59 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-12-16 21:00:59 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-12-16 21:00:58 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-12-16 21:00:58 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-12-16 21:00:57 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-12-16 21:00:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-12-16 21:00:56 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-12-16 21:00:56 ----A---- C:\Windows\system32\iernonce.dll
2015-12-16 21:00:56 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-16 21:00:55 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-12-16 21:00:55 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-12-16 21:00:55 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-16 21:00:54 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-12-16 21:00:51 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-12-16 21:00:51 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-12-16 21:00:51 ----A---- C:\Windows\system32\occache.dll
2015-12-16 21:00:51 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-16 21:00:50 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-12-16 21:00:50 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-12-16 21:00:50 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-12-16 21:00:50 ----A---- C:\Windows\system32\urlmon.dll
2015-12-16 21:00:50 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-12-16 21:00:49 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-12-16 21:00:49 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-16 21:00:49 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-16 21:00:48 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-12-16 21:00:48 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-16 21:00:47 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-12-16 21:00:45 ----A---- C:\Windows\system32\iesetup.dll
2015-12-16 21:00:45 ----A---- C:\Windows\system32\ieapfltr.dll
2015-12-16 21:00:43 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-12-16 21:00:43 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-12-16 21:00:43 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-12-16 21:00:43 ----A---- C:\Windows\system32\vbscript.dll
2015-12-16 21:00:42 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-12-16 21:00:42 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-12-16 21:00:41 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-12-16 21:00:41 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-16 21:00:39 ----A---- C:\Windows\system32\ieui.dll
2015-12-16 21:00:39 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-16 21:00:38 ----A---- C:\Windows\system32\ieframe.dll
2015-12-16 21:00:37 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-16 21:00:36 ----A---- C:\Windows\system32\webcheck.dll
2015-12-16 21:00:36 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-12-16 21:00:36 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-16 21:00:35 ----A---- C:\Windows\system32\jscript9diag.dll
2015-12-16 21:00:35 ----A---- C:\Windows\system32\jscript.dll
2015-12-16 21:00:33 ----A---- C:\Windows\system32\wininet.dll
2015-12-16 21:00:33 ----A---- C:\Windows\system32\jscript9.dll
2015-12-16 21:00:31 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-12-16 21:00:29 ----A---- C:\Windows\system32\msrating.dll
2015-12-16 21:00:26 ----A---- C:\Windows\system32\mshtml.dll
2015-12-16 20:58:49 ----A---- C:\Windows\system32\els.dll
2015-12-16 20:58:48 ----A---- C:\Windows\SYSWOW64\els.dll
2015-12-06 17:06:31 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-12-06 16:57:18 ----D---- C:\Program Files\Common Files\Adobe
2015-12-06 16:55:52 ----D---- C:\Program Files (x86)\Adobe Media Player
2015-12-03 17:50:59 ----D---- C:\ProgramData\Malwarebytes
2015-12-03 08:39:14 ----N---- C:\bootsqm.dat
======List of files/folders modified in the last 1 month======
2016-01-02 22:50:52 ----D---- C:\Windows\Temp
2016-01-02 22:50:51 ----D---- C:\Program Files (x86)\Picexa
2016-01-02 22:50:16 ----D---- C:\Config.Msi
2016-01-02 22:49:35 ----D---- C:\Windows\system32\config
2016-01-02 22:42:48 ----RD---- C:\Program Files
2016-01-02 22:24:32 ----D---- C:\Windows\Microsoft.NET
2016-01-02 22:23:58 ----SHD---- C:\System Volume Information
2016-01-02 22:19:36 ----D---- C:\Windows
2016-01-02 22:19:36 ----A---- C:\Windows\system.ini
2016-01-02 22:16:12 ----D---- C:\Windows\SYSWOW64\drivers
2016-01-02 22:16:12 ----D---- C:\Windows\SysWOW64
2016-01-02 22:16:12 ----D---- C:\Windows\AppPatch
2016-01-02 22:16:11 ----D---- C:\Program Files (x86)\Common Files
2016-01-02 22:09:30 ----SHD---- C:\Windows\Installer
2016-01-02 22:09:23 ----RD---- C:\Program Files (x86)
2016-01-02 22:09:23 ----D---- C:\Windows\system32\drivers
2016-01-02 21:51:06 ----D---- C:\ProgramData\Adobe
2016-01-02 21:50:23 ----D---- C:\Program Files (x86)\Adobe
2016-01-02 18:24:22 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-01-02 18:19:49 ----D---- C:\Windows\System32
2016-01-02 18:19:49 ----D---- C:\Windows\inf
2016-01-02 18:19:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-22 16:05:48 ----RSD---- C:\Windows\assembly
2015-12-21 08:59:56 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-12-21 08:49:47 ----D---- C:\Windows\winsxs
2015-12-21 08:49:09 ----SD---- C:\Windows\SYSWOW64\GWX
2015-12-21 08:49:09 ----SD---- C:\Windows\system32\GWX
2015-12-18 15:54:25 ----D---- C:\Windows\system32\catroot2
2015-12-18 15:06:53 ----D---- C:\Windows\system32\MRT
2015-12-18 15:00:28 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-12-18 15:00:28 ----D---- C:\Windows\system32\cs-CZ
2015-12-18 15:00:25 ----D---- C:\Windows\ehome
2015-12-18 15:00:22 ----D---- C:\Program Files\Internet Explorer
2015-12-18 15:00:20 ----D---- C:\Windows\SYSWOW64\en-US
2015-12-18 15:00:19 ----D---- C:\Windows\system32\en-US
2015-12-18 15:00:17 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-18 12:52:35 ----D---- C:\ProgramData\Microsoft Help
2015-12-18 12:49:36 ----SD---- C:\Users\Lucka\AppData\Roaming\Microsoft
2015-12-18 12:40:16 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-18 12:40:16 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-12-17 23:03:33 ----D---- C:\Windows\debug
2015-12-17 23:03:00 ----A---- C:\Windows\system32\MRT.exe
2015-12-10 08:49:51 ----RSD---- C:\Windows\Fonts
2015-12-09 04:39:31 ----N---- C:\Windows\system32\MpSigStub.exe
2015-12-06 17:16:48 ----D---- C:\Users\Lucka\AppData\Roaming\Adobe
2015-12-06 17:11:38 ----D---- C:\Windows\system32\Tasks
2015-12-06 17:06:31 ----D---- C:\ProgramData
2015-12-06 16:57:18 ----D---- C:\Program Files\Common Files
2015-12-03 20:56:57 ----D---- C:\Windows\Tasks
2015-12-03 19:46:48 ----D---- C:\Windows\system32\wfp
2015-12-03 19:46:48 ----D---- C:\Windows\system32\DriverStore
2015-12-03 19:46:47 ----D---- C:\Windows\system32\wbem
2015-12-03 19:46:47 ----D---- C:\Windows\system32\log
2015-12-03 19:46:47 ----D---- C:\ProgramData\AutoKMS
2015-12-03 19:46:16 ----D---- C:\Windows\registration
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2007-11-09 26968]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-01-25 283064]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-09-23 6180832]
R3 NETwLv64; Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\NETwLv64.sys [2000-01-01 7533568]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-20 109056]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2011-08-05 292024]
R3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2011-07-12 19904]
R3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
R3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2011-01-27 67384]
R3 UVCFTR;UVCFTR; C:\Windows\System32\Drivers\UVCFTR_S.SYS [2009-04-10 20520]
S2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 17024]
S2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio64.sys [2007-08-07 10240]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 CAXHWAZL;CAXHWAZL; C:\Windows\system32\DRIVERS\CAXHWAZL.sys [2007-08-03 293376]
S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\CAX_DPV.sys [2007-08-03 1481216]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 O2MDRDR;O2MDRDR; C:\Windows\system32\DRIVERS\o2mdx64.sys [2000-01-01 63264]
S3 O2SDRDR;O2SDRDR; C:\Windows\system32\DRIVERS\o2sdx64.sys [2000-01-01 49696]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\CAX_CNXT.sys [2007-08-03 740352]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 O2FLASH;O2FLASH; C:\Windows\system32\DRIVERS\o2flash.exe [2000-01-01 65536]
R2 PicexaService;PicexaService; C:\Program Files (x86)\Picexa\PicexaSvc.exe [2015-09-14 722400]
R2 Serviio;Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [2014-03-21 359936]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio64.exe [2007-08-07 412672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-02 269504]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-01-06 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-11-08 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-09-03 149160]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2011-04-01 198064]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-01-23 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
