Stránka 1 z 1

Antivir hlásí u všecho viry, PC se seká

Napsal: 25 led 2016 16:28
od Barevsv
Dobrý den,

Prosím o kontrolu logu, máme tu v PC závažný problém, nic nám nejde spoštět, musím ukončit antivirus "360 security" a nebo přidat do schválených souborů, jako neškodné. Vše se stalo po aktualizaci na win 10. Přestávají fungovat tiskárny, musím PC restartovat.
Také se chci zeptat, po Vaší kontrole budeme zakupovat antivirus Eset nebo AVG, chtěl bych se jen zeptat, který je lepší (na 3 PC u ostatních nemám problém, stále win 7).



--------------------------------------------------------------------------


Logfile of random's system information tool 1.10 (written by random/random)
Run by Pokladna at 2016-01-25 16:18:33
Microsoft Windows 10 Pro
System drive C: has 404 GB (86%) free of 469 GB
Total RAM: 2012 MB (43% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:18:34, on 25.1.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\sihost.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\CENTURA\dbnt1sv.exe
C:\Program Files\Common Files\microsoft shared\virtualization handler\cvh.exe
Q:\140066.csy\Office14\WINWORDC.EXE
C:\Program Files\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe
Q:\140066.csy\Office14\OffSpon.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\Pokladna\Desktop\RSIT.exe
C:\Program Files\trend micro\Pokladna.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nmd.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [HPUsageTrackingLEDM] "C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files\HP\HP UT LEDM\"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QHSafeTray] "C:\Program Files\360\Total Security\safemon\360Tray.exe" /start
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: SQLServer.lnk = C:\CENTURA\dbnt1sv.exe
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: SmartPrint - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\Windows\system32\brsvc01a.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\Windows\system32\HPSIsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: 360 Total Security (QHActiveDefense) - QIHU 360 SOFTWARE CO. LIMITED - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 6695 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Pokladna\AppData\Roaming\Mozilla\Firefox\Profiles\l92zemrw.default

"quickprint@hp.com"=C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension
"WebProtection@360safe.com"=C:\Program Files\360\Total Security\safemon\webprotection_firefox


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.286 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_286.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_71\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=Software602 Form Filler Plugin
"Path"=C:\Program Files\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll [2016-01-20 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-22 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-20 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-22 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-07-07 10754664]
"HPUsageTrackingLEDM"=C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [2009-08-04 30264]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
"QHSafeTray"=C:\Program Files\360\Total Security\safemon\360Tray.exe [2015-12-11 305272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-15 551112]

C:\Users\Pokladna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SQLServer.lnk - C:\CENTURA\dbnt1sv.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-01-25 16:12:25 ----D---- C:\rsit
2016-01-25 16:12:25 ----D---- C:\Program Files\trend micro
2016-01-20 09:52:27 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-01-20 09:50:05 ----SHD---- C:\Config.Msi
2016-01-20 09:49:11 ----D---- C:\Program Files\Common Files\Java
2016-01-13 11:24:49 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-01-13 11:24:43 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-01-13 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-01-13 11:24:42 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-01-13 11:24:41 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-01-13 11:24:40 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-01-13 11:24:40 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\usermgr.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\mfps.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\schannel.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\evr.dll
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\quartz.dll
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\invagent.dll
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\mftranscode.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\usermgrcli.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\qedit.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\ProximityCommon.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\omadmclient.exe
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\aepic.dll
2016-01-12 10:36:33 ----D---- C:\Program Files\Ubisoft

======List of files/folders modified in the last 1 month======

2016-01-25 16:18:26 ----D---- C:\WINDOWS\Prefetch
2016-01-25 16:12:25 ----RD---- C:\Program Files
2016-01-25 16:09:00 ----D---- C:\WINDOWS\system32\sru
2016-01-25 16:07:49 ----D---- C:\WINDOWS\Temp
2016-01-25 15:08:02 ----RSHD---- C:\360SANDBOX
2016-01-25 15:07:39 ----D---- C:\Users\Pokladna\AppData\Roaming\SoftGrid Client
2016-01-25 08:56:16 ----D---- C:\WINDOWS\Microsoft.NET
2016-01-25 08:50:59 ----D---- C:\WINDOWS\AppReadiness
2016-01-25 08:50:58 ----HD---- C:\Program Files\WindowsApps
2016-01-22 15:24:24 ----D---- C:\Program Files\Steam
2016-01-22 13:56:35 ----D---- C:\WINDOWS\INF
2016-01-22 13:56:35 ----AD---- C:\WINDOWS\System32
2016-01-22 13:56:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-01-22 05:53:30 ----SHD---- C:\System Volume Information
2016-01-21 15:05:25 ----SHD---- C:\$360Section
2016-01-21 15:05:25 ----D---- C:\ProgramData\360Quarant
2016-01-21 14:43:09 ----D---- C:\Users\Pokladna\AppData\Roaming\vlc
2016-01-21 10:37:17 ----D---- C:\WINDOWS\system32\config
2016-01-20 09:50:34 ----D---- C:\ProgramData\Oracle
2016-01-20 09:50:08 ----SHD---- C:\WINDOWS\Installer
2016-01-20 09:49:46 ----D---- C:\Program Files\Java
2016-01-20 09:49:11 ----D---- C:\Program Files\Common Files
2016-01-20 09:48:46 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2016-01-19 14:03:03 ----D---- C:\ACONTO
2016-01-19 13:19:36 ----DC---- C:\WINDOWS\Panther
2016-01-19 13:19:36 ----D---- C:\WINDOWS\debug
2016-01-19 13:19:36 ----D---- C:\Windows
2016-01-19 13:19:21 ----D---- C:\Users\Pokladna\AppData\Roaming\Notepad++
2016-01-19 13:14:28 ----D---- C:\Users\Pokladna\AppData\Roaming\360safe
2016-01-18 15:20:41 ----SD---- C:\Users\Pokladna\AppData\Roaming\Microsoft
2016-01-15 09:42:56 ----D---- C:\WINDOWS\system32\DriverStore
2016-01-14 11:44:26 ----RD---- C:\Users
2016-01-14 09:36:48 ----AD---- C:\ProgramData\HP
2016-01-13 19:47:29 ----D---- C:\WINDOWS\WinSxS
2016-01-13 19:46:56 ----AD---- C:\Program Files\Microsoft Silverlight
2016-01-13 19:45:46 ----D---- C:\WINDOWS\system32\Boot
2016-01-13 19:45:46 ----D---- C:\WINDOWS\system32\appraiser
2016-01-13 19:45:45 ----D---- C:\WINDOWS\apppatch
2016-01-13 11:39:19 ----D---- C:\WINDOWS\CbsTemp
2016-01-13 11:38:02 ----D---- C:\WINDOWS\system32\MRT
2016-01-13 11:27:29 ----A---- C:\WINDOWS\system32\MRT.exe
2016-01-13 11:20:28 ----D---- C:\WINDOWS\system32\catroot2
2016-01-04 16:51:12 ----D---- C:\CENTURA
2016-01-04 14:20:28 ----D---- C:\acoinst
2016-01-04 14:13:10 ----D---- C:\zalohy
2016-01-03 02:40:25 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 HookPort;HookPort; C:\WINDOWS\System32\Drivers\Hookport.sys [2015-11-20 60368]
R1 360Box;360Box mini-filter driver; C:\WINDOWS\system32\DRIVERS\360Box.sys [2015-12-11 204368]
R1 360SelfProtection;360SelfProtection; C:\WINDOWS\system32\drivers\360SelfProtection.sys [2015-11-20 179152]
R1 BAPIDRV;BAPIDRV; C:\WINDOWS\system32\DRIVERS\BAPIDRV.sys [2015-12-11 177232]
R1 EfiMon;EfiSystemMon; C:\WINDOWS\System32\Drivers\Efimon.sys [2015-11-20 23248]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 qutmdserv;Quantum DeepScanner Servers; C:\WINDOWS\system32\DRIVERS\qutmdrv.sys [2015-11-20 301264]
R1 qutmipc;qutmipc; \??\C:\WINDOWS\system32\drivers\qutmipc.sys [2015-11-20 53960]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 360AntiHacker;360Safe Anti Hacker Service; C:\WINDOWS\System32\Drivers\360AntiHacker.sys [2015-11-20 122448]
R3 360AvFlt;360AvFlt mini-filter driver; C:\WINDOWS\system32\DRIVERS\360AvFlt.sys [2015-12-11 66128]
R3 GemCCID;GemCCID; C:\WINDOWS\system32\DRIVERS\GemCCID.sys [2015-10-16 108656]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [2012-03-23 9036288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-15 130560]
R3 mvusbews;@oem72.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 17408]
R3 rt640x86;@rt640x86.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x86.sys [2015-10-30 494080]
R3 Sftfs;Sftfs; C:\WINDOWS\system32\DRIVERS\Sftfslh.sys [2014-10-08 582824]
R3 Sftplay;Sftplay; C:\WINDOWS\system32\DRIVERS\Sftplaylh.sys [2014-10-08 198304]
R3 Sftredir;Sftredir; C:\WINDOWS\system32\DRIVERS\Sftredirlh.sys [2014-10-08 25760]
R3 Sftvol;Sftvol; C:\WINDOWS\system32\DRIVERS\Sftvollh.sys [2014-10-08 20136]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S3 360Camera;360Safe Camera Filter Service; C:\WINDOWS\System32\Drivers\360Camera.sys [2015-11-20 34888]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-15 96768]
S3 fssfltr;fssfltr; C:\WINDOWS\system32\DRIVERS\fssfltr.sys [2012-03-08 39272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 45056]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 33792]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 32768]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 200032]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 74080]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 104800]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Brother XP spl Service;BrSplService; C:\Windows\system32\brsvc01a.exe [2004-06-13 57344]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-24 136704]
R2 HPSIService;HP SI Service; C:\Windows\system32\HPSIsvc.exe [2011-11-11 99896]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-15 25088]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_3ef65;Hostitel synchronizace_3ef65; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2015-10-30 37256]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-03-10 189728]
R2 QHActiveDefense;360 Total Security; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [2015-12-11 903288]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534176]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211112]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_2ff6f;Hostitel synchronizace_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_488e8;Hostitel synchronizace_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-20 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-02-15 194032]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_2ff6f;Služba zasílání zpráv_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3ef65;Služba zasílání zpráv_3ef65; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_488e8;Služba zasílání zpráv_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-09 147624]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_2ff6f;Data kontaktů_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3ef65;Data kontaktů_3ef65; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_488e8;Data kontaktů_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 256512]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UnistoreSvc_2ff6f;Úložiště uživatelských dat_2ff6f; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UnistoreSvc_3ef65;Úložiště uživatelských dat_3ef65; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]

-----------------EOF-----------------


Předem děkuji, a přeji příjemný den
s pozdravem

Stanislav Málek

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 25 led 2016 17:16
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 26 led 2016 14:17
od Barevsv
Dobrý den,

děkuji za rychlou odpověď.

----------------------------------------------------------------------------

# AdwCleaner v5.031 - Logfile created 26/01/2016 at 14:18:13
# Updated 25/01/2016 by Xplode
# Database : 2016-01-25.3 [Server]
# Operating system : Windows 10 Pro (x86)
# Username : Pokladna - POKLADNA-PC
# Running from : C:\Users\Pokladna\Desktop\adwcleaner_5.031.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\Uniblue
[-] Folder Deleted : C:\ProgramData\Uniblue

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.apn.native_messaging_host_aaaaaiabcopkplhgaedhbloeejhhankf
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{884189CF-7C10-41E8-A014-F7B2BE40AADB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BD125908-5F10-409F-9C01-F2207CA18887}
[-] Key Deleted : HKCU\Software\360
[-] Key Deleted : HKLM\SOFTWARE\Uniblue
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4F524A2D-5350-4500-76A7-A758B70C1D00}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8036C72171EF4ba46856BF57969F6A36
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89BB7852687BDC34B9A81E01C7FF9173
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89EA4F1B8FBCDEF47AE328E455E28AA0
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CBC85D72B148084ABE8C2F072F781F4
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC5A38A64D6098468BC8395BA0EFF03
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DF9A1AC557F56c49B56F6B83E293C15
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97ECFF59EE08D4F47BB1464DEC37DA87
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A8CB937199A57E748B6AC433DA453EE2
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A97C590397DCC454AA8923563BAB10E4
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B08932C78B697C244BE7BA3E6FF09B62
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B4E78E12704AFCE408C7FBE501F1AA0A
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6A54B56C58C82a4688AFB93F42EA17B
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CFA51B44D54927c4E9B7BC1D3FD1E49F
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D14A7F65792054F418578C78367D13F7
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFE9F0BD163D827438CB6AD6B100EC48
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F0390A76D28822743A68D7F1AB22E6D0
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F739A19A8327dc64C9A8B641A9E89646
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0A5AC497E6BBC8D45BE8AD6619DA8217
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\158D6D9E3FE81fa428925F22ACB3A965
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15E6C514FEFC09f45BAFAAE1D7546ED4
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DB42320A8525634AA089F0BEC86473B
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22468B0D6050b2e46B9C4B67A8F59577
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2251BF05A2F606d43BB064BD63CBD87E
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3255D95681398614190EDF0A4F3F77DB
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CDF313E9B28c944FBC7579CF4949414
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71E54748EDD3dc1468548785DC856EDA
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\754590DD06DE8d249B526503432F99D4
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D2A425F405350054677A7A857BC0D100
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\D2A425F405350054677A7A857BC0D100
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\D2A425F405350054677A7A857BC0D100
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF

***** [ Web browsers ] *****

[-] [C:\Users\Pokladna\AppData\Roaming\Mozilla\Firefox\Profiles\l92zemrw.default\prefs.js] [Preference] Deleted : user_pref("extensions.APN_TB.first-previous-keyword-url", "");

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [5586 bytes] ##########

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 26 led 2016 18:20
od Rudy
Dejte nový log RSIT.

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 28 led 2016 11:26
od Barevsv
Jo díky, ty antiviry už jsem si našel tu na fóru, jak je tam to rozlišení antivirů, který je lepší :) :thumbsup:

Virus stále hlásí v ACONTOLct220.exe High-risk (HEUR\QVM05.1.Malware.Gen)

----------------------------------------------------

Logfile of random's system information tool 1.10 (written by random/random)
Run by Pokladna at 2016-01-28 11:23:43
Microsoft Windows 10 Pro
System drive C: has 404 GB (86%) free of 469 GB
Total RAM: 2012 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:23:50, on 28.1.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\CENTURA\dbnt1sv.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\Common Files\microsoft shared\virtualization handler\cvh.exe
C:\Program Files\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\WINDOWS\system32\wwahost.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\Pokladna\Desktop\RSIT.exe
C:\Program Files\trend micro\Pokladna.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nmd.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [HPUsageTrackingLEDM] "C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files\HP\HP UT LEDM\"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QHSafeTray] "C:\Program Files\360\Total Security\safemon\360Tray.exe" /start
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: SQLServer.lnk = C:\CENTURA\dbnt1sv.exe
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: SmartPrint - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\Windows\system32\brsvc01a.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\Windows\system32\HPSIsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: 360 Total Security (QHActiveDefense) - QIHU 360 SOFTWARE CO. LIMITED - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 6863 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Pokladna\AppData\Roaming\Mozilla\Firefox\Profiles\l92zemrw.default

"quickprint@hp.com"=C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension
"WebProtection@360safe.com"=C:\Program Files\360\Total Security\safemon\webprotection_firefox


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.286 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_286.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_71\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=Software602 Form Filler Plugin
"Path"=C:\Program Files\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll [2016-01-20 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-22 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-20 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-22 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-07-07 10754664]
"HPUsageTrackingLEDM"=C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [2009-08-04 30264]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
"QHSafeTray"=C:\Program Files\360\Total Security\safemon\360Tray.exe [2015-12-11 305272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-15 551112]

C:\Users\Pokladna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SQLServer.lnk - C:\CENTURA\dbnt1sv.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-01-26 14:13:22 ----D---- C:\AdwCleaner
2016-01-25 16:12:25 ----D---- C:\rsit
2016-01-25 16:12:25 ----D---- C:\Program Files\trend micro
2016-01-20 09:52:27 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-01-20 09:50:05 ----SHD---- C:\Config.Msi
2016-01-20 09:49:11 ----D---- C:\Program Files\Common Files\Java
2016-01-13 11:24:49 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-01-13 11:24:43 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-01-13 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-01-13 11:24:42 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-01-13 11:24:41 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-01-13 11:24:40 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-01-13 11:24:40 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\usermgr.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\mfps.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\schannel.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\evr.dll
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\quartz.dll
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\invagent.dll
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\mftranscode.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\usermgrcli.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\qedit.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\ProximityCommon.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\omadmclient.exe
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\aepic.dll
2016-01-12 10:36:33 ----D---- C:\Program Files\Ubisoft

======List of files/folders modified in the last 1 month======

2016-01-28 11:21:49 ----D---- C:\WINDOWS\Temp
2016-01-28 10:54:02 ----SHD---- C:\System Volume Information
2016-01-28 10:53:00 ----D---- C:\WINDOWS\system32\sru
2016-01-28 09:40:15 ----D---- C:\WINDOWS\Microsoft.NET
2016-01-28 09:02:47 ----D---- C:\Users\Pokladna\AppData\Roaming\SoftGrid Client
2016-01-28 08:55:19 ----D---- C:\WINDOWS\AppReadiness
2016-01-28 08:55:18 ----HD---- C:\Program Files\WindowsApps
2016-01-27 10:25:31 ----D---- C:\ACONTO
2016-01-27 09:57:09 ----D---- C:\WINDOWS\Prefetch
2016-01-26 14:18:13 ----RD---- C:\Program Files
2016-01-26 14:18:13 ----HD---- C:\ProgramData
2016-01-25 15:08:02 ----RSHD---- C:\360SANDBOX
2016-01-22 15:24:24 ----D---- C:\Program Files\Steam
2016-01-22 13:56:35 ----D---- C:\WINDOWS\INF
2016-01-22 13:56:35 ----AD---- C:\WINDOWS\System32
2016-01-22 13:56:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-01-21 15:05:25 ----SHD---- C:\$360Section
2016-01-21 15:05:25 ----D---- C:\ProgramData\360Quarant
2016-01-21 14:43:09 ----D---- C:\Users\Pokladna\AppData\Roaming\vlc
2016-01-21 10:37:17 ----D---- C:\WINDOWS\system32\config
2016-01-20 09:50:34 ----D---- C:\ProgramData\Oracle
2016-01-20 09:50:08 ----SHD---- C:\WINDOWS\Installer
2016-01-20 09:49:46 ----D---- C:\Program Files\Java
2016-01-20 09:49:11 ----D---- C:\Program Files\Common Files
2016-01-20 09:48:46 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2016-01-19 13:19:36 ----DC---- C:\WINDOWS\Panther
2016-01-19 13:19:36 ----D---- C:\WINDOWS\debug
2016-01-19 13:19:36 ----D---- C:\Windows
2016-01-19 13:19:21 ----D---- C:\Users\Pokladna\AppData\Roaming\Notepad++
2016-01-19 13:14:28 ----D---- C:\Users\Pokladna\AppData\Roaming\360safe
2016-01-18 15:20:41 ----SD---- C:\Users\Pokladna\AppData\Roaming\Microsoft
2016-01-15 09:42:56 ----D---- C:\WINDOWS\system32\DriverStore
2016-01-14 11:44:26 ----RD---- C:\Users
2016-01-14 09:36:48 ----AD---- C:\ProgramData\HP
2016-01-13 19:47:29 ----D---- C:\WINDOWS\WinSxS
2016-01-13 19:46:56 ----AD---- C:\Program Files\Microsoft Silverlight
2016-01-13 19:45:46 ----D---- C:\WINDOWS\system32\Boot
2016-01-13 19:45:46 ----D---- C:\WINDOWS\system32\appraiser
2016-01-13 19:45:45 ----D---- C:\WINDOWS\apppatch
2016-01-13 11:39:19 ----D---- C:\WINDOWS\CbsTemp
2016-01-13 11:38:02 ----D---- C:\WINDOWS\system32\MRT
2016-01-13 11:27:29 ----A---- C:\WINDOWS\system32\MRT.exe
2016-01-13 11:20:28 ----D---- C:\WINDOWS\system32\catroot2
2016-01-04 16:51:12 ----D---- C:\CENTURA
2016-01-04 14:20:28 ----D---- C:\acoinst
2016-01-04 14:13:10 ----D---- C:\zalohy
2016-01-03 02:40:25 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 HookPort;HookPort; C:\WINDOWS\System32\Drivers\Hookport.sys [2015-11-20 60368]
R1 360AntiHacker;360Safe Anti Hacker Service; C:\WINDOWS\System32\Drivers\360AntiHacker.sys [2015-11-20 122448]
R1 360Box;360Box mini-filter driver; C:\WINDOWS\system32\DRIVERS\360Box.sys [2015-12-11 204368]
R1 360SelfProtection;360SelfProtection; C:\WINDOWS\system32\drivers\360SelfProtection.sys [2015-11-20 179152]
R1 BAPIDRV;BAPIDRV; C:\WINDOWS\system32\DRIVERS\BAPIDRV.sys [2015-12-11 177232]
R1 EfiMon;EfiSystemMon; C:\WINDOWS\System32\Drivers\Efimon.sys [2015-11-20 23248]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 qutmdserv;Quantum DeepScanner Servers; C:\WINDOWS\system32\DRIVERS\qutmdrv.sys [2015-11-20 301264]
R1 qutmipc;qutmipc; \??\C:\WINDOWS\system32\drivers\qutmipc.sys [2015-11-20 53960]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 360AvFlt;360AvFlt mini-filter driver; C:\WINDOWS\system32\DRIVERS\360AvFlt.sys [2015-12-11 66128]
R3 GemCCID;GemCCID; C:\WINDOWS\system32\DRIVERS\GemCCID.sys [2015-10-16 108656]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [2012-03-23 9036288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-15 130560]
R3 mvusbews;@oem72.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 17408]
R3 rt640x86;@rt640x86.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x86.sys [2015-10-30 494080]
R3 Sftfs;Sftfs; C:\WINDOWS\system32\DRIVERS\Sftfslh.sys [2014-10-08 582824]
R3 Sftplay;Sftplay; C:\WINDOWS\system32\DRIVERS\Sftplaylh.sys [2014-10-08 198304]
R3 Sftredir;Sftredir; C:\WINDOWS\system32\DRIVERS\Sftredirlh.sys [2014-10-08 25760]
R3 Sftvol;Sftvol; C:\WINDOWS\system32\DRIVERS\Sftvollh.sys [2014-10-08 20136]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S3 360Camera;360Safe Camera Filter Service; C:\WINDOWS\System32\Drivers\360Camera.sys [2015-11-20 34888]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-15 96768]
S3 fssfltr;fssfltr; C:\WINDOWS\system32\DRIVERS\fssfltr.sys [2012-03-08 39272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 45056]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 33792]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 32768]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 200032]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 74080]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 104800]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Brother XP spl Service;BrSplService; C:\Windows\system32\brsvc01a.exe [2004-06-13 57344]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-24 136704]
R2 HPSIService;HP SI Service; C:\Windows\system32\HPSIsvc.exe [2011-11-11 99896]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-15 25088]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_3331914;Hostitel synchronizace_3331914; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-03-10 189728]
R2 QHActiveDefense;360 Total Security; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [2015-12-11 903288]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534176]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211112]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_2ff6f;Hostitel synchronizace_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_488e8;Hostitel synchronizace_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2015-10-30 37256]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-20 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-02-15 194032]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_2ff6f;Služba zasílání zpráv_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3331914;Služba zasílání zpráv_3331914; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_488e8;Služba zasílání zpráv_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-09 147624]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_2ff6f;Data kontaktů_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3331914;Data kontaktů_3331914; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_488e8;Data kontaktů_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 256512]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UnistoreSvc_2ff6f;Úložiště uživatelských dat_2ff6f; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UnistoreSvc_3331914;Úložiště uživatelských dat_3331914; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]

-----------------EOF-----------------

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 28 led 2016 17:57
od Rudy
Teď spusťte kompletní test MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 29 led 2016 11:24
od Barevsv
Tak to teda nevím, proč mi to ten antivirus hlásí, procházel jsem PC a nenašlo to ani ten soubor acontol, toto píše čistý.

-----------------------------

Malwarebytes Anti-Malware
http://www.malwarebytes.org

Datum skenování: 29.1.2016
Čas skenování: 9:39
Protokol:
Správce: Ano


Verze: 2.2.0.1024
Databáze malwaru: v2016.01.29.02
Databáze rootkitů: v2016.01.20.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 10
CPU: x86
Souborový systém: NTFS
Uživatel: Pokladna

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 378627
Uplynulý čas: 14 min, 55 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 0
(Nenalezeny žádné škodlivé položky)

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

-------------------------------------------

Jen pro zajímavost, mi ten antivir ukazuje toto:

Obrázek

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 29 led 2016 16:27
od Rudy
Toto je OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\Google\Google Toolbar
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 02 úno 2016 15:36
od Barevsv
Dobrý den,

děkuji, a omlouvám se za zpoždění, víkend byl velice krušný :all_coholic: :D

------------------------------------------------------------------

Logfile of random's system information tool 1.10 (written by random/random)
Run by Pokladna at 2016-02-02 15:34:50
Microsoft Windows 10 Pro
System drive C: has 403 GB (86%) free of 469 GB
Total RAM: 2012 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:35:00, on 2.2.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\sihost.exe
C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\WINDOWS\system32\DllHost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
C:\CENTURA\dbnt1sv.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\Pokladna\Desktop\RSIT.exe
C:\Program Files\trend micro\Pokladna.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://nmd.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [HPUsageTrackingLEDM] "C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files\HP\HP UT LEDM\"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QHSafeTray] "C:\Program Files\360\Total Security\safemon\360Tray.exe" /start
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: SQLServer.lnk = C:\CENTURA\dbnt1sv.exe
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O9 - Extra 'Tools' menuitem: SmartPrint - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\SmartPrint\smartprintsetup.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\Windows\system32\brsvc01a.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\Windows\system32\HPSIsvc.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files\Origin\OriginClientService.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: 360 Total Security (QHActiveDefense) - QIHU 360 SOFTWARE CO. LIMITED - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 6319 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Pokladna\AppData\Roaming\Mozilla\Firefox\Profiles\l92zemrw.default

"quickprint@hp.com"=C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension
"WebProtection@360safe.com"=C:\Program Files\360\Total Security\safemon\webprotection_firefox


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.286 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_286.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_71\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=Software602 Form Filler Plugin
"Path"=C:\Program Files\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll [2016-01-20 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-20 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-07-07 10754664]
"HPUsageTrackingLEDM"=C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [2009-08-04 30264]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
"QHSafeTray"=C:\Program Files\360\Total Security\safemon\360Tray.exe [2015-12-11 305272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Pokladna\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-15 551112]

C:\Users\Pokladna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SQLServer.lnk - C:\CENTURA\dbnt1sv.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-02 15:30:21 ----D---- C:\_OTM
2016-02-02 13:04:35 ----D---- C:\Program Files\Origin Games
2016-02-02 13:02:32 ----D---- C:\Users\Pokladna\AppData\Roaming\Origin
2016-02-02 12:58:02 ----D---- C:\ProgramData\Origin
2016-02-02 12:57:43 ----D---- C:\ProgramData\Electronic Arts
2016-02-02 12:56:25 ----D---- C:\Program Files\Origin
2016-01-29 09:39:05 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2016-01-29 09:38:41 ----D---- C:\ProgramData\Malwarebytes
2016-01-29 09:38:41 ----AD---- C:\Program Files\Malwarebytes Anti-Malware
2016-01-29 09:38:41 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-01-29 09:38:41 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-01-29 09:38:41 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2016-01-29 09:29:55 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-01-28 15:06:35 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-01-28 15:06:32 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-01-28 15:06:31 ----A---- C:\WINDOWS\system32\twinui.dll
2016-01-28 15:06:31 ----A---- C:\WINDOWS\system32\mos.dll
2016-01-28 15:06:30 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-01-28 15:06:28 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-01-28 15:06:27 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-01-28 15:06:27 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-01-28 15:06:26 ----A---- C:\WINDOWS\system32\shell32.dll
2016-01-28 15:06:25 ----A---- C:\WINDOWS\system32\InputService.dll
2016-01-28 15:06:25 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-01-28 15:06:25 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-01-28 15:06:23 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-01-28 15:06:22 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-01-28 15:06:22 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-01-28 15:06:21 ----A---- C:\WINDOWS\system32\WpcMon.exe
2016-01-28 15:06:21 ----A---- C:\WINDOWS\system32\services.exe
2016-01-28 15:06:21 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-01-28 15:06:21 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-01-28 15:06:21 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-01-28 15:06:20 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-01-28 15:06:19 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2016-01-28 15:06:19 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-01-28 15:06:19 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-01-28 15:06:19 ----A---- C:\WINDOWS\system32\msctf.dll
2016-01-28 15:06:19 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-01-28 15:06:18 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-01-28 15:06:18 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-01-28 15:06:18 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-01-28 15:06:18 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-01-28 15:06:18 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-01-28 15:06:17 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-01-28 15:06:17 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-01-28 15:06:17 ----A---- C:\WINDOWS\system32\MTFServer.dll
2016-01-28 15:06:17 ----A---- C:\WINDOWS\system32\MTF.dll
2016-01-28 15:06:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-01-28 15:06:16 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-01-28 15:06:16 ----A---- C:\WINDOWS\system32\evr.dll
2016-01-28 15:06:16 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-01-28 15:06:15 ----A---- C:\WINDOWS\system32\wscapi.dll
2016-01-28 15:06:15 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-01-28 15:06:15 ----A---- C:\WINDOWS\system32\srcore.dll
2016-01-28 15:06:15 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-01-28 15:06:15 ----A---- C:\WINDOWS\system32\quartz.dll
2016-01-28 15:06:15 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-01-28 15:06:14 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-01-28 15:06:14 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-01-28 15:06:14 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-01-28 15:06:13 ----A---- C:\WINDOWS\system32\SimCfg.dll
2016-01-28 15:06:13 ----A---- C:\WINDOWS\system32\SimAuth.dll
2016-01-28 15:06:13 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-01-28 15:06:13 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-01-28 15:06:13 ----A---- C:\WINDOWS\system32\invagent.dll
2016-01-28 15:06:13 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-01-28 15:06:13 ----A---- C:\WINDOWS\system32\devinv.dll
2016-01-28 15:06:12 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-01-28 15:06:12 ----A---- C:\WINDOWS\system32\rasdlg.dll
2016-01-28 15:06:12 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-01-28 15:06:12 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-01-28 15:06:12 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-01-28 15:06:11 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-01-28 15:06:11 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-01-28 15:06:11 ----A---- C:\WINDOWS\system32\rastls.dll
2016-01-28 15:06:11 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-01-28 15:06:11 ----A---- C:\WINDOWS\system32\pcaui.exe
2016-01-28 15:06:11 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-01-28 15:06:10 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-01-28 15:06:10 ----A---- C:\WINDOWS\system32\rasauto.dll
2016-01-28 15:06:09 ----A---- C:\WINDOWS\system32\wlidcli.dll
2016-01-28 15:06:09 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2016-01-28 15:06:09 ----A---- C:\WINDOWS\system32\rasautou.exe
2016-01-28 15:06:09 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\winhttpcom.dll
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\winbio.dll
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\sscoreext.dll
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\rastlsext.dll
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\FilterDS.dll
2016-01-28 15:06:08 ----A---- C:\WINDOWS\system32\DDDS.dll
2016-01-26 14:13:22 ----D---- C:\AdwCleaner
2016-01-25 16:12:25 ----D---- C:\rsit
2016-01-25 16:12:25 ----D---- C:\Program Files\trend micro
2016-01-20 09:49:11 ----D---- C:\Program Files\Common Files\Java
2016-01-13 11:24:43 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-01-13 11:24:42 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-01-13 11:24:42 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-01-13 11:24:41 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-01-13 11:24:40 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\usermgr.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\mfps.dll
2016-01-13 11:24:38 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-01-13 11:24:37 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\schannel.dll
2016-01-13 11:24:36 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-01-13 11:24:35 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\mftranscode.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-01-13 11:24:34 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\usermgrcli.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\qedit.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\ProximityCommon.dll
2016-01-13 11:24:33 ----A---- C:\WINDOWS\system32\omadmclient.exe
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-01-13 11:24:32 ----A---- C:\WINDOWS\system32\aepic.dll
2016-01-12 10:36:33 ----D---- C:\Program Files\Ubisoft

======List of files/folders modified in the last 1 month======

2016-02-02 15:34:25 ----D---- C:\WINDOWS\Temp
2016-02-02 15:31:48 ----D---- C:\WINDOWS\system32\sru
2016-02-02 15:30:30 ----D---- C:\Users\Pokladna\AppData\Roaming\SoftGrid Client
2016-02-02 15:30:27 ----D---- C:\WINDOWS\Tasks
2016-02-02 15:30:27 ----D---- C:\Program Files\Google
2016-02-02 15:30:06 ----D---- C:\WINDOWS\Prefetch
2016-02-02 14:06:04 ----SHD---- C:\WINDOWS\Installer
2016-02-02 14:01:44 ----RD---- C:\Program Files
2016-02-02 12:58:02 ----HD---- C:\ProgramData
2016-02-02 12:57:42 ----AD---- C:\WINDOWS\System32
2016-02-02 12:57:36 ----D---- C:\ProgramData\Package Cache
2016-02-02 12:57:25 ----SHD---- C:\System Volume Information
2016-02-02 09:27:28 ----D---- C:\WINDOWS\system32\config
2016-02-02 09:25:30 ----D---- C:\WINDOWS\Microsoft.NET
2016-02-02 09:16:27 ----D---- C:\WINDOWS\AppReadiness
2016-02-02 09:16:10 ----HD---- C:\Program Files\WindowsApps
2016-02-01 16:18:12 ----D---- C:\CENTURA
2016-02-01 09:42:23 ----D---- C:\ACONTO
2016-01-29 12:26:54 ----D---- C:\WINDOWS\rescache
2016-01-29 12:19:06 ----D---- C:\WINDOWS\system32\DriverStore
2016-01-29 09:39:05 ----D---- C:\WINDOWS\system32\drivers
2016-01-29 09:32:29 ----D---- C:\WINDOWS\INF
2016-01-29 09:30:48 ----D---- C:\WINDOWS\WinSxS
2016-01-28 17:01:40 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-01-28 17:01:40 ----D---- C:\WINDOWS\system32\oobe
2016-01-28 17:01:40 ----D---- C:\WINDOWS\system32\migration
2016-01-28 17:01:39 ----SD---- C:\WINDOWS\system32\F12
2016-01-28 17:01:39 ----D---- C:\WINDOWS\system32\appraiser
2016-01-28 17:01:38 ----RD---- C:\WINDOWS\PurchaseDialog
2016-01-28 17:01:38 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-01-28 17:01:37 ----D---- C:\WINDOWS\bcastdvr
2016-01-28 17:01:37 ----D---- C:\WINDOWS\apppatch
2016-01-28 15:30:40 ----D---- C:\WINDOWS\CbsTemp
2016-01-28 15:00:51 ----D---- C:\WINDOWS\system32\catroot2
2016-01-28 11:30:28 ----D---- C:\Users\Pokladna\AppData\Roaming\360TotalSecurity
2016-01-25 15:08:02 ----RSHD---- C:\360SANDBOX
2016-01-22 15:24:24 ----D---- C:\Program Files\Steam
2016-01-22 13:56:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-01-21 15:05:25 ----SHD---- C:\$360Section
2016-01-21 15:05:25 ----D---- C:\ProgramData\360Quarant
2016-01-21 14:43:09 ----D---- C:\Users\Pokladna\AppData\Roaming\vlc
2016-01-20 09:50:34 ----D---- C:\ProgramData\Oracle
2016-01-20 09:49:46 ----D---- C:\Program Files\Java
2016-01-20 09:49:11 ----D---- C:\Program Files\Common Files
2016-01-20 09:48:46 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2016-01-19 13:19:36 ----DC---- C:\WINDOWS\Panther
2016-01-19 13:19:36 ----D---- C:\WINDOWS\debug
2016-01-19 13:19:36 ----D---- C:\Windows
2016-01-19 13:19:21 ----D---- C:\Users\Pokladna\AppData\Roaming\Notepad++
2016-01-19 13:14:28 ----D---- C:\Users\Pokladna\AppData\Roaming\360safe
2016-01-18 15:20:41 ----SD---- C:\Users\Pokladna\AppData\Roaming\Microsoft
2016-01-14 11:44:26 ----RD---- C:\Users
2016-01-14 09:36:48 ----AD---- C:\ProgramData\HP
2016-01-13 19:46:56 ----AD---- C:\Program Files\Microsoft Silverlight
2016-01-13 19:45:46 ----D---- C:\WINDOWS\system32\Boot
2016-01-13 11:38:02 ----D---- C:\WINDOWS\system32\MRT
2016-01-13 11:27:29 ----A---- C:\WINDOWS\system32\MRT.exe
2016-01-04 14:20:28 ----D---- C:\acoinst
2016-01-04 14:13:10 ----D---- C:\zalohy
2016-01-03 02:40:25 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 HookPort;HookPort; C:\WINDOWS\System32\Drivers\Hookport.sys [2015-11-20 60368]
R1 360AntiHacker;360Safe Anti Hacker Service; C:\WINDOWS\System32\Drivers\360AntiHacker.sys [2015-11-20 122448]
R1 360Box;360Box mini-filter driver; C:\WINDOWS\system32\DRIVERS\360Box.sys [2015-12-11 204368]
R1 360SelfProtection;360SelfProtection; C:\WINDOWS\system32\drivers\360SelfProtection.sys [2015-11-20 179152]
R1 BAPIDRV;BAPIDRV; C:\WINDOWS\system32\DRIVERS\BAPIDRV.sys [2015-12-11 177232]
R1 EfiMon;EfiSystemMon; C:\WINDOWS\System32\Drivers\Efimon.sys [2015-11-20 23248]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 qutmdserv;Quantum DeepScanner Servers; C:\WINDOWS\system32\DRIVERS\qutmdrv.sys [2015-11-20 301264]
R1 qutmipc;qutmipc; \??\C:\WINDOWS\system32\drivers\qutmipc.sys [2015-11-20 53960]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 360AvFlt;360AvFlt mini-filter driver; C:\WINDOWS\system32\DRIVERS\360AvFlt.sys [2015-12-11 66128]
R3 GemCCID;GemCCID; C:\WINDOWS\system32\DRIVERS\GemCCID.sys [2015-10-16 108656]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [2012-03-23 9036288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 23256]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-02-02 170200]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 51928]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-15 130560]
R3 mvusbews;@oem72.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2012-12-24 17408]
R3 rt640x86;@rt640x86.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x86.sys [2015-10-30 494080]
R3 Sftfs;Sftfs; C:\WINDOWS\system32\DRIVERS\Sftfslh.sys [2014-10-08 582824]
R3 Sftplay;Sftplay; C:\WINDOWS\system32\DRIVERS\Sftplaylh.sys [2014-10-08 198304]
R3 Sftvol;Sftvol; C:\WINDOWS\system32\DRIVERS\Sftvollh.sys [2014-10-08 20136]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S3 360Camera;360Safe Camera Filter Service; C:\WINDOWS\System32\Drivers\360Camera.sys [2015-11-20 34888]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-15 96768]
S3 fssfltr;fssfltr; C:\WINDOWS\system32\DRIVERS\fssfltr.sys [2012-03-08 39272]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 Sftredir;Sftredir; C:\WINDOWS\system32\DRIVERS\Sftredirlh.sys [2014-10-08 25760]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 45056]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 33792]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 32768]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 200032]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 74080]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 104800]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Brother XP spl Service;BrSplService; C:\Windows\system32\brsvc01a.exe [2004-06-13 57344]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2015-03-18 822496]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-24 136704]
R2 HPSIService;HP SI Service; C:\Windows\system32\HPSIsvc.exe [2011-11-11 99896]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-15 25088]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2015-10-30 37256]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2010-03-10 189728]
R2 QHActiveDefense;360 Total Security; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [2015-12-11 903288]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2014-10-08 534176]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2014-10-08 211112]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_2ff6f;Hostitel synchronizace_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_488e8;Hostitel synchronizace_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_52354;Hostitel synchronizace_52354; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-20 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-02-15 194032]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_2ff6f;Služba zasílání zpráv_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_488e8;Služba zasílání zpráv_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_52354;Služba zasílání zpráv_52354; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-09 147624]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Origin Client Service;Origin Client Service; C:\Program Files\Origin\OriginClientService.exe [2016-02-02 2104840]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_2ff6f;Data kontaktů_2ff6f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_488e8;Data kontaktů_488e8; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_52354;Data kontaktů_52354; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2015-12-14 836176]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 256512]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]

-----------------EOF-----------------

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 02 úno 2016 17:59
od Rudy
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 03 úno 2016 10:46
od Barevsv
:| Okej, díky, vir to už nikde neháže :) Při spuštění vše ok. :thumbsup: PC se přestal tolik sekat... v acontol nic neukazuje, nevim, jak je to možné, myslel jsem, že je to chyba 360 secure, ale škoda, že přestali (už předtím) fungova ty usb, ale to budu muset někam na PC poradnu řešit, každopádně díky :)

Re: Antivir hlásí u všecho viry, PC se seká

Napsal: 03 úno 2016 17:01
od Rudy
Rádo se stalo! :)