Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Falešná zpráva na fb, prosím kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Nikki
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 10 bře 2008 14:26

Falešná zpráva na fb, prosím kontrolu logu

#1 Příspěvek od Nikki »

Ahoj všem, jak si na tohle dávám pozor, tak jsem nepochopitelně klikla na zprávu od kamaráda, kde byla moje fotka a odkaz. No přepnulo mne to na stránku, kde bylo okno se šipkou a pod tím napsáno, že je potřeba nainstalovat něco.. To už jsem se probrala a vypadla z té strnky. Psala jsem mu a s samozřejmě nic neposílal, takže mám strach jestli jsem si něco nestáhla do PC. Přikládám log s Rsit a prosím o kontrolu, zda je tam něco špatně. Asi ano protože mi jde i pomalu pc :roll:
Děkuji


Logfile of random's system information tool 1.09 (written by random/random)
Run by Veronika at 2016-02-16 11:17:10
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 126 GB (53%) free of 238 GB
Total RAM: 6143 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:17:17, on 16.2.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18163)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files\Alwil Software\Avast5\avastui.exe
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\trend micro\Veronika.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Google Update] "C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: Dropbox.lnk = Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: ABBYY FineReader 12 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.12.0) - ABBYY Production LLC - C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FastBootAgent - ASUSTeK Computer Inc. - C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10106 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
C:\Windows\System32\spoolsv.exe
taskeng.exe {CC713237-A7C6-47D8-B29E-09BECE82326F}
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe" -service
taskeng.exe {123959C8-7AB5-41BC-B048-165CF2858DB0}
"C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe" /startup
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Windows\WindowsMobile\wmdcBase.exe"
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe"
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Windows\system32\GWX\GWX.exe"
"C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
"C:\Program Files\Alwil Software\Avast5\avastui.exe" /nogui
taskeng.exe {E56C466E-3CFC-4061-98B7-CBD178C7B788}
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /AECBYLISTENTOSTATUS
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Users\Veronika\Desktop\soubory k čištění havěti\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-598411823-2534666640-740589542-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-598411823-2534666640-740589542-1000UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Veronika\AppData\Roaming\Mozilla\Firefox\Profiles\c3azgo9f.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.atlas.cz"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"

"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.5.1]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3]
"Description"=Office Live Update v1.3
"Path"=C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled


C:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2016-02-11 901600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2016-02-11 678656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-07-30 617856]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-04-09 320000]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdcBase.exe [2007-05-31 660360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"Google Update"=C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
"Zoner Photo Studio Autoupdate"=C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [2014-12-23 833240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-11-11 16407296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRS Premium Sound.lnk]
C:\Windows\INSTAL~1\{D42F8~1\NEWSHO~4.EXE [2009-10-14 156880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Veronika^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe [2015-12-08 24952456]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-04-02 98304]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-07-07 8493624]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-04-20 159744]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2016-02-16 7139768]
"Bonus.SSR.FR12"=C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe [2014-01-30 1472312]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ADSMTray]
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe [2009-06-24 272952]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2009-10-14 72248]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2009-10-14 3054136]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]

C:\Users\Veronika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\22283384.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\4FE5A44D.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\22283384.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\4FE5A44D.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-16 11:17:10 ----D---- C:\rsit
2016-02-16 10:08:21 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2016-02-16 10:06:59 ----D---- C:\ProgramData\Malwarebytes
2016-02-16 10:06:59 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-02-16 10:06:59 ----A---- C:\Windows\system32\drivers\mwac.sys
2016-02-16 10:06:59 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2016-02-16 10:06:59 ----A---- C:\Windows\system32\drivers\mbam.sys
2016-02-16 10:01:48 ----A---- C:\AdwCleaner[S1].txt
2016-02-16 10:01:11 ----A---- C:\AdwCleaner[R1].txt
2016-02-16 09:56:23 ----A---- C:\autoexec.bat
2016-02-16 09:55:46 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-02-11 08:11:03 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-11 08:10:47 ----A---- C:\Windows\avastSS.scr
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtSvgTR4.dll
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtNetworkTR4.dll
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtGuiTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtSvgTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtNetworkTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtGuiTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\system32\QtCoreTR4.dll
2016-02-02 12:30:30 ----A---- C:\Windows\SYSWOW64\QtCoreTR4.dll
2016-02-02 12:30:29 ----D---- C:\ProgramData\Totally Rad
2016-02-02 12:30:29 ----D---- C:\Program Files (x86)\Totally Rad
2016-01-21 14:13:11 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-01-21 10:44:10 ----A---- C:\Windows\system32\mapi32.dll
2016-01-21 10:44:09 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2016-01-21 10:44:09 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2016-01-21 10:44:09 ----A---- C:\Windows\SYSWOW64\fixmapi.exe
2016-01-21 10:44:09 ----A---- C:\Windows\system32\mapistub.dll
2016-01-21 10:44:09 ----A---- C:\Windows\system32\fixmapi.exe
2016-01-21 10:44:06 ----A---- C:\Windows\system32\aeinv.dll
2016-01-21 10:44:05 ----A---- C:\Windows\system32\qedit.dll
2016-01-21 10:44:04 ----A---- C:\Windows\SYSWOW64\qedit.dll
2016-01-21 10:43:59 ----A---- C:\Windows\SYSWOW64\msmpeg2adec.dll
2016-01-21 10:43:59 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-01-21 10:43:59 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-01-21 10:43:59 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\mf.dll
2016-01-21 10:43:58 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\system32\mf.dll
2016-01-21 10:43:57 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\SYSWOW64\WMADMOE.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\system32\wmpmde.dll
2016-01-21 10:43:57 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\system32\quartz.dll
2016-01-21 10:43:57 ----A---- C:\Windows\system32\mcmde.dll
2016-01-21 10:43:57 ----A---- C:\Windows\system32\evr.dll
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\WMVENCOD.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\evr.dll
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\COLORCNV.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-01-21 10:43:55 ----A---- C:\Windows\SYSWOW64\WMVXENCD.DLL
2016-01-21 10:43:55 ----A---- C:\Windows\SYSWOW64\quartz.dll
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\WMVSENCD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\MPG4DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\MP43DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\MFWMAAEC.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\devenum.dll
2016-01-21 10:43:54 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2016-01-21 10:43:54 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\mfplat.dll
2016-01-21 10:43:54 ----A---- C:\Windows\system32\devenum.dll
2016-01-21 10:43:53 ----A---- C:\Windows\SYSWOW64\WMSPDMOE.DLL
2016-01-21 10:43:53 ----A---- C:\Windows\SYSWOW64\qasf.dll
2016-01-21 10:43:53 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2016-01-21 10:43:53 ----A---- C:\Windows\system32\SysFxUI.dll
2016-01-21 10:43:53 ----A---- C:\Windows\system32\qdvd.dll
2016-01-21 10:43:53 ----A---- C:\Windows\system32\mfvdsp.dll
2016-01-21 10:43:52 ----A---- C:\Windows\SYSWOW64\VIDRESZR.DLL
2016-01-21 10:43:52 ----A---- C:\Windows\SYSWOW64\RESAMPLEDMO.DLL
2016-01-21 10:43:52 ----A---- C:\Windows\SYSWOW64\MP4SDECD.DLL
2016-01-21 10:43:52 ----A---- C:\Windows\system32\qasf.dll
2016-01-21 10:43:52 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-01-21 10:43:51 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2016-01-21 10:43:51 ----A---- C:\Windows\SYSWOW64\MP3DMOD.DLL
2016-01-21 10:43:51 ----A---- C:\Windows\SYSWOW64\mfvdsp.dll
2016-01-21 10:43:51 ----A---- C:\Windows\system32\rrinstaller.exe
2016-01-21 10:43:50 ----A---- C:\Windows\SYSWOW64\mfps.dll
2016-01-21 10:43:50 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2016-01-21 10:43:50 ----A---- C:\Windows\system32\mfps.dll
2016-01-21 10:43:50 ----A---- C:\Windows\system32\mfpmp.exe
2016-01-21 10:43:49 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-01-21 10:43:49 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-01-21 10:43:48 ----A---- C:\Windows\SYSWOW64\mferror.dll
2016-01-21 10:43:48 ----A---- C:\Windows\SYSWOW64\ksuser.dll
2016-01-21 10:43:48 ----A---- C:\Windows\system32\mferror.dll
2016-01-21 10:43:48 ----A---- C:\Windows\system32\ksuser.dll
2016-01-21 10:43:48 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-01-21 10:43:39 ----A---- C:\Windows\system32\win32k.sys
2016-01-21 10:43:31 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-01-21 10:43:30 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-01-21 10:43:30 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-01-21 10:43:30 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-01-21 10:43:30 ----A---- C:\Windows\system32\iertutil.dll
2016-01-21 10:43:30 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-01-21 10:43:30 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-01-21 10:43:29 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-01-21 10:43:29 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-01-21 10:43:29 ----A---- C:\Windows\system32\iernonce.dll
2016-01-21 10:43:29 ----A---- C:\Windows\system32\ie4uinit.exe
2016-01-21 10:43:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-01-21 10:43:27 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-01-21 10:43:27 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-01-21 10:43:27 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-01-21 10:43:27 ----A---- C:\Windows\system32\urlmon.dll
2016-01-21 10:43:27 ----A---- C:\Windows\system32\occache.dll
2016-01-21 10:43:27 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-01-21 10:43:27 ----A---- C:\Windows\system32\iedkcs32.dll
2016-01-21 10:43:26 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-01-21 10:43:26 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-01-21 10:43:26 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-01-21 10:43:26 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-01-21 10:43:26 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-01-21 10:43:26 ----A---- C:\Windows\system32\msfeeds.dll
2016-01-21 10:43:26 ----A---- C:\Windows\system32\dxtrans.dll
2016-01-21 10:43:25 ----A---- C:\Windows\system32\iesetup.dll
2016-01-21 10:43:24 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-01-21 10:43:24 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-01-21 10:43:24 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-01-21 10:43:24 ----A---- C:\Windows\system32\vbscript.dll
2016-01-21 10:43:23 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-01-21 10:43:23 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-01-21 10:43:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-01-21 10:43:23 ----A---- C:\Windows\system32\jsproxy.dll
2016-01-21 10:43:22 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-01-21 10:43:22 ----A---- C:\Windows\system32\ieui.dll
2016-01-21 10:43:22 ----A---- C:\Windows\system32\dxtmsft.dll
2016-01-21 10:43:21 ----A---- C:\Windows\system32\mshtmled.dll
2016-01-21 10:43:21 ----A---- C:\Windows\system32\ieframe.dll
2016-01-21 10:43:20 ----A---- C:\Windows\system32\webcheck.dll
2016-01-21 10:43:20 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-01-21 10:43:20 ----A---- C:\Windows\system32\jscript9diag.dll
2016-01-21 10:43:20 ----A---- C:\Windows\system32\jscript.dll
2016-01-21 10:43:20 ----A---- C:\Windows\system32\ieUnatt.exe
2016-01-21 10:43:19 ----A---- C:\Windows\system32\wininet.dll
2016-01-21 10:43:19 ----A---- C:\Windows\system32\jscript9.dll
2016-01-21 10:43:19 ----A---- C:\Windows\system32\ieapfltr.dll
2016-01-21 10:43:17 ----A---- C:\Windows\system32\msrating.dll
2016-01-21 10:43:17 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-01-21 10:43:16 ----A---- C:\Windows\system32\mshtml.dll
2016-01-21 10:42:38 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-01-21 10:42:38 ----A---- C:\Windows\system32\advapi32.dll
2016-01-21 10:42:37 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-01-21 10:42:37 ----A---- C:\Windows\system32\gdi32.dll
2016-01-21 10:42:36 ----A---- C:\Windows\system32\generaltel.dll
2016-01-21 10:42:36 ----A---- C:\Windows\system32\appraiser.dll
2016-01-21 10:42:35 ----A---- C:\Windows\system32\invagent.dll
2016-01-21 10:42:35 ----A---- C:\Windows\system32\devinv.dll
2016-01-21 10:42:35 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-01-21 10:42:35 ----A---- C:\Windows\system32\aepic.dll
2016-01-21 10:42:35 ----A---- C:\Windows\system32\acmigration.dll
2016-01-21 10:42:26 ----A---- C:\Windows\system32\rpcrt4.dll
2016-01-21 10:42:26 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-01-21 10:42:25 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-01-21 10:42:25 ----A---- C:\Windows\system32\schannel.dll
2016-01-21 10:42:25 ----A---- C:\Windows\system32\lsasrv.dll
2016-01-21 10:42:25 ----A---- C:\Windows\system32\kerberos.dll
2016-01-21 10:42:24 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-01-21 10:42:23 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-01-21 10:42:23 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-01-21 10:42:23 ----A---- C:\Windows\system32\ncrypt.dll
2016-01-21 10:42:23 ----A---- C:\Windows\system32\kernel32.dll
2016-01-21 10:42:22 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-01-21 10:42:22 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-01-21 10:42:22 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-01-21 10:42:22 ----A---- C:\Windows\system32\msv1_0.dll
2016-01-21 10:42:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-01-21 10:42:22 ----A---- C:\Windows\system32\adtschema.dll
2016-01-21 10:42:21 ----A---- C:\Windows\system32\wdigest.dll
2016-01-21 10:42:21 ----A---- C:\Windows\system32\TSpkg.dll
2016-01-21 10:42:21 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-01-21 10:42:21 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-01-21 10:42:20 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-01-21 10:42:20 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-01-21 10:42:18 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-01-21 10:42:18 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-01-21 10:42:18 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-01-21 10:42:17 ----A---- C:\Windows\system32\ntdll.dll
2016-01-21 10:42:17 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-01-21 10:42:15 ----A---- C:\Windows\system32\winsrv.dll
2016-01-21 10:42:15 ----A---- C:\Windows\system32\sspicli.dll
2016-01-21 10:42:15 ----A---- C:\Windows\system32\secur32.dll
2016-01-21 10:42:15 ----A---- C:\Windows\system32\cryptbase.dll
2016-01-21 10:42:15 ----A---- C:\Windows\system32\credssp.dll
2016-01-21 10:42:14 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-01-21 10:42:14 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-01-21 10:42:14 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-01-21 10:42:14 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-01-21 10:42:14 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-01-21 10:42:14 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-01-21 10:42:13 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-01-21 10:42:13 ----A---- C:\Windows\system32\sspisrv.dll
2016-01-21 10:42:13 ----A---- C:\Windows\system32\smss.exe
2016-01-21 10:42:13 ----A---- C:\Windows\system32\ntvdm64.dll
2016-01-21 10:42:13 ----A---- C:\Windows\system32\lsass.exe
2016-01-21 10:42:13 ----A---- C:\Windows\system32\auditpol.exe
2016-01-21 10:42:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\wow64win.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\wow64cpu.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\wow64.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\srcore.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\srclient.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\KernelBase.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\csrsrv.dll
2016-01-21 10:42:11 ----A---- C:\Windows\system32\conhost.exe
2016-01-21 10:42:10 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-01-21 10:42:10 ----A---- C:\Windows\system32\rstrui.exe
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-01-21 10:42:09 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-01-21 10:42:09 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-01-21 10:42:09 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-01-21 10:42:09 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-01-21 10:42:09 ----A---- C:\Windows\system32\apisetschema.dll
2016-01-21 10:42:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-01-21 10:42:08 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-01-21 10:42:08 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-01-21 10:42:07 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-01-21 10:42:07 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-01-21 10:42:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-01-21 10:42:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-01-21 10:42:06 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-01-21 10:42:06 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-01-21 10:42:06 ----A---- C:\Windows\SYSWOW64\user.exe
2016-01-21 10:42:05 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-01-21 10:42:05 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-01-21 10:42:05 ----A---- C:\Windows\system32\msobjs.dll
2016-01-21 10:42:05 ----A---- C:\Windows\system32\msaudite.dll

======List of files/folders modified in the last 1 month======

2016-02-16 11:17:16 ----D---- C:\Program Files\trend micro
2016-02-16 11:12:46 ----D---- C:\Users\Veronika\AppData\Roaming\Dropbox
2016-02-16 11:11:30 ----D---- C:\Windows\Temp
2016-02-16 11:10:56 ----D---- C:\Windows\system32\config
2016-02-16 11:07:52 ----D---- C:\Program Files
2016-02-16 11:05:42 ----D---- C:\Windows
2016-02-16 11:05:18 ----SHD---- C:\Config.Msi
2016-02-16 10:30:05 ----D---- C:\Windows\system32\catroot2
2016-02-16 10:23:29 ----D---- C:\Windows\winsxs
2016-02-16 10:08:21 ----D---- C:\Windows\system32\drivers
2016-02-16 10:06:59 ----RD---- C:\Program Files (x86)
2016-02-16 10:06:59 ----HD---- C:\ProgramData
2016-02-16 09:56:15 ----D---- C:\Windows\system32\Tasks
2016-02-16 09:45:55 ----SHD---- C:\Windows\Installer
2016-02-16 09:44:39 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-16 09:44:14 ----D---- C:\Windows\SysWOW64
2016-02-16 09:36:47 ----D---- C:\Windows\inf
2016-02-11 10:53:28 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-02-11 10:52:37 ----D---- C:\Windows\Tasks
2016-02-11 08:30:08 ----D---- C:\Windows\Prefetch
2016-02-11 08:11:03 ----D---- C:\Windows\System32
2016-02-11 08:07:57 ----D---- C:\ProgramData\ProductData
2016-02-02 11:24:38 ----D---- C:\Windows\debug
2016-01-28 11:32:29 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-01-27 12:55:58 ----SD---- C:\Windows\SYSWOW64\GWX
2016-01-27 12:55:58 ----SD---- C:\Windows\system32\GWX
2016-01-27 12:55:43 ----SHD---- C:\System Volume Information
2016-01-26 12:46:12 ----D---- C:\Windows\rescache
2016-01-26 12:06:13 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-01-26 12:05:08 ----D---- C:\Windows\SYSWOW64\en-US
2016-01-26 12:05:08 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-01-26 12:05:08 ----D---- C:\Program Files\Internet Explorer
2016-01-26 12:05:07 ----SD---- C:\Windows\system32\CompatTel
2016-01-26 12:05:07 ----D---- C:\Windows\system32\en-US
2016-01-26 12:05:07 ----D---- C:\Windows\system32\cs-CZ
2016-01-26 12:05:06 ----D---- C:\Windows\system32\appraiser
2016-01-26 12:05:06 ----D---- C:\Windows\AppPatch
2016-01-26 12:05:05 ----D---- C:\Windows\system32\DriverStore
2016-01-26 11:49:14 ----D---- C:\ProgramData\Microsoft Help
2016-01-26 11:30:22 ----D---- C:\Windows\system32\MRT
2016-01-26 11:30:15 ----A---- C:\Windows\system32\MRT.exe
2016-01-26 11:28:39 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-01-26 11:09:07 ----D---- C:\Program Files (x86)\Mozilla Firefox.bak
2016-01-21 14:10:01 ----D---- C:\Users\Veronika\AppData\Roaming\Zoner
2016-01-21 14:09:10 ----D---- C:\Program Files\Zoner
2016-01-21 10:00:40 ----D---- C:\Program Files (x86)\Adobe
2016-01-21 10:00:12 ----D---- C:\ProgramData\Adobe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2009-10-14 35384]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-11 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-11 287016]
R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2015-04-10 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2014-06-04 21184]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-11 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-11 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-11 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-11 463744]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-04-10 26528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-11 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-11 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-11 165344]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-07-09 140800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-11-11 4613888]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2016-02-16 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2015-04-10 29800]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-11-11 981744]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
S3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2015-11-11 84480]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-06-16 110336]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-02-16 22704]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2013-01-23 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2013-01-23 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2013-01-23 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-06-16 206080]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2013-01-23 9216]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-03-11 14464]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Professional.12.0;ABBYY FineReader 12 PE Licensing Service; C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe [2014-01-23 925904]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-15 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2008-08-14 100920]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2016-02-11 237096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 FastBootAgent;FastBootAgent; C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe [2009-07-24 306232]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-18 933168]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-04-10 293080]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2015-10-09 2934048]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-11 269504]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-12-12 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-01-21 146888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-30 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Falešná zpráva na fb, prosím kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Nikki
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 10 bře 2008 14:26

Re: Falešná zpráva na fb, prosím kontrolu logu

#3 Příspěvek od Nikki »

Děkuji za pomoc, vkládám log

# AdwCleaner v5.034 - Logfile created 18/02/2016 at 08:42:42
# Updated 16/02/2016 by Xplode
# Database : 2016-02-16.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Veronika - VERONIKA-PC
# Running from : C:\Users\Veronika\Downloads\adwcleaner_5.034.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\myfree codec
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : GoogleUpdateTaskUserS-1-5-21-598411823-2534666640-740589542-1000Core
[-] Task Deleted : GoogleUpdateTaskUserS-1-5-21-598411823-2534666640-740589542-1000UA
[-] Task Deleted : GoogleUpdateTaskUserS-1-5-21-598411823-2534666640-740589542-1000Core
[-] Task Deleted : GoogleUpdateTaskUserS-1-5-21-598411823-2534666640-740589542-1000UA

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9

***** [ Web browsers ] *****

[-] [C:\Users\Veronika\AppData\Roaming\Mozilla\Firefox\Profiles\c3azgo9f.default\prefs.js] [Preference] Deleted : user_pref("browser.search.param.yahoo-fr", "chr-greentree_ff&type=867034");
[-] [C:\Users\Veronika\AppData\Roaming\Mozilla\Firefox\Profiles\c3azgo9f.default\prefs.js] [Preference] Deleted : user_pref("network.hxxp.request.max-start-delay", 0);

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\AdwCleaner[R1].txt - [981 bytes] - [16/02/2016 10:01:11]
C:\AdwCleaner[S1].txt - [353 bytes] - [16/02/2016 10:01:48]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2231 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Falešná zpráva na fb, prosím kontrolu logu

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Nikki
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 10 bře 2008 14:26

Re: Falešná zpráva na fb, prosím kontrolu logu

#5 Příspěvek od Nikki »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Veronika at 2016-02-19 10:12:43
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 124 GB (52%) free of 238 GB
Total RAM: 6143 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:12:45, on 19.2.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files\Alwil Software\Avast5\avastui.exe
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\PROGRAM FILES\ZONER\PHOTO STUDIO 18\Program32\ZPSTRAY.EXE
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\Veronika.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Google Update] "C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: Dropbox.lnk = Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: ABBYY FineReader 12 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.12.0) - ABBYY Production LLC - C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FastBootAgent - ASUSTeK Computer Inc. - C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10032 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe" -service
taskeng.exe {265156B0-2DCE-45B8-A00A-ABAC00EA6D40}
"C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe" /startup
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
"C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe"
taskeng.exe {B88A19A7-0810-4FFB-91D3-8660843E3A5C}
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /AECBYLISTENTOSTATUS
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Windows\WindowsMobile\wmdcBase.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files\Alwil Software\Avast5\avastui.exe" /nogui
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\PROGRAM FILES\ZONER\PHOTO STUDIO 18\Program32\ZPSTRAY.EXE"
"C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe"
"C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" "-launchedbycsxs"
"C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe" /firstrunupdate 0
"C:\Users\Veronika\Desktop\soubory k čištění havěti\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Veronika\AppData\Roaming\Mozilla\Firefox\Profiles\c3azgo9f.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.atlas.cz"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"

"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.5.1]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3]
"Description"=Office Live Update v1.3
"Path"=C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled


C:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2016-02-11 901600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2016-02-11 678656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-07-30 617856]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-04-09 320000]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdcBase.exe [2007-05-31 660360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"Google Update"=C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
"Zoner Photo Studio Autoupdate"=C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [2014-12-23 833240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-11-11 16407296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRS Premium Sound.lnk]
C:\Windows\INSTAL~1\{D42F8~1\NEWSHO~4.EXE [2009-10-14 156880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Veronika^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe [2016-02-16 25122080]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-04-02 98304]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-07-07 8493624]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-04-20 159744]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2016-02-16 7139768]
"Bonus.SSR.FR12"=C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe [2014-01-30 1472312]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ADSMTray]
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe [2009-06-24 272952]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2009-10-14 72248]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2009-10-14 3054136]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]

C:\Users\Veronika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\22283384.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\4FE5A44D.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\22283384.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\4FE5A44D.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-18 08:36:22 ----D---- C:\AdwCleaner
2016-02-16 15:04:55 ----D---- C:\d98855c7b93ce0bffb0c
2016-02-16 11:17:10 ----D---- C:\rsit
2016-02-16 10:32:56 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-16 10:32:53 ----A---- C:\Windows\system32\win32k.sys
2016-02-16 10:32:46 ----A---- C:\Windows\system32\InkEd.dll
2016-02-16 10:32:45 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-16 10:32:44 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-16 10:32:38 ----A---- C:\Windows\system32\generaltel.dll
2016-02-16 10:32:38 ----A---- C:\Windows\system32\appraiser.dll
2016-02-16 10:32:38 ----A---- C:\Windows\system32\aeinv.dll
2016-02-16 10:32:37 ----A---- C:\Windows\system32\invagent.dll
2016-02-16 10:32:37 ----A---- C:\Windows\system32\devinv.dll
2016-02-16 10:32:37 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-16 10:32:37 ----A---- C:\Windows\system32\acmigration.dll
2016-02-16 10:32:26 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-16 10:32:26 ----A---- C:\Windows\system32\iertutil.dll
2016-02-16 10:32:25 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-16 10:32:24 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-16 10:32:24 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-16 10:32:24 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-16 10:32:23 ----A---- C:\Windows\system32\urlmon.dll
2016-02-16 10:32:22 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-16 10:32:22 ----A---- C:\Windows\system32\ieui.dll
2016-02-16 10:32:22 ----A---- C:\Windows\system32\ieframe.dll
2016-02-16 10:32:21 ----A---- C:\Windows\system32\mshtml.dll
2016-02-16 10:32:21 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\inseng.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\iernonce.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-16 10:31:57 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-16 10:31:56 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-16 10:31:56 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-16 10:31:56 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-16 10:31:56 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-16 10:31:54 ----A---- C:\Windows\system32\occache.dll
2016-02-16 10:31:54 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-16 10:31:54 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-16 10:31:54 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-16 10:31:53 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-16 10:31:53 ----A---- C:\Windows\system32\iesetup.dll
2016-02-16 10:31:53 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-16 10:31:52 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-16 10:31:51 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-16 10:31:51 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-16 10:31:51 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-16 10:31:51 ----A---- C:\Windows\system32\vbscript.dll
2016-02-16 10:31:50 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-16 10:31:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-16 10:31:50 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-16 10:31:50 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-16 10:31:49 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-16 10:31:48 ----A---- C:\Windows\system32\webcheck.dll
2016-02-16 10:31:48 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-16 10:31:48 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-16 10:31:47 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-16 10:31:47 ----A---- C:\Windows\system32\jscript9.dll
2016-02-16 10:31:47 ----A---- C:\Windows\system32\jscript.dll
2016-02-16 10:31:46 ----A---- C:\Windows\system32\wininet.dll
2016-02-16 10:31:45 ----A---- C:\Windows\system32\msrating.dll
2016-02-16 10:31:45 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-16 10:30:59 ----A---- C:\Windows\system32\wucltux.dll
2016-02-16 10:30:59 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-16 10:30:59 ----A---- C:\Windows\system32\wuapi.dll
2016-02-16 10:30:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-16 10:30:58 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wups.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wudriver.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-16 10:30:58 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-16 10:30:57 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-16 10:30:57 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-16 10:30:57 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-16 10:30:57 ----A---- C:\Windows\system32\wups2.dll
2016-02-16 10:30:57 ----A---- C:\Windows\system32\wuapp.exe
2016-02-16 10:30:57 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-16 10:29:44 ----A---- C:\Windows\system32\ole32.dll
2016-02-16 10:29:39 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-16 10:27:17 ----A---- C:\Windows\system32\EncDec.dll
2016-02-16 10:27:16 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-16 10:27:16 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-16 10:27:16 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-16 10:27:15 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-16 10:27:14 ----A---- C:\Windows\system32\ntdll.dll
2016-02-16 10:27:12 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-16 10:27:12 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-16 10:27:11 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-16 10:27:11 ----A---- C:\Windows\system32\kerberos.dll
2016-02-16 10:27:10 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-16 10:27:08 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-16 10:27:08 ----A---- C:\Windows\system32\kernel32.dll
2016-02-16 10:27:07 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-16 10:27:07 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-16 10:27:07 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-16 10:27:07 ----A---- C:\Windows\system32\advapi32.dll
2016-02-16 10:27:06 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-16 10:27:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-16 10:27:05 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-16 10:27:05 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-16 10:27:02 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-16 10:27:01 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-16 10:27:01 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\smss.exe
2016-02-16 10:27:00 ----A---- C:\Windows\system32\schannel.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-16 10:26:59 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-16 10:26:59 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-16 10:26:59 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\wow64win.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\wow64.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\winsrv.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\wdigest.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\sspicli.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\srcore.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-16 10:26:59 ----A---- C:\Windows\system32\conhost.exe
2016-02-16 10:26:58 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-16 10:26:58 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-16 10:26:58 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-16 10:26:58 ----A---- C:\Windows\system32\lsass.exe
2016-02-16 10:26:58 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-16 10:26:58 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\srclient.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\secur32.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\rstrui.exe
2016-02-16 10:26:57 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\credssp.dll
2016-02-16 10:26:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-16 10:26:56 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-16 10:26:56 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-16 10:26:56 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-16 10:26:56 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-16 10:26:56 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-16 10:26:56 ----A---- C:\Windows\system32\auditpol.exe
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-16 10:26:53 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-16 10:26:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-16 10:26:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-16 10:26:52 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-16 10:26:52 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-16 10:26:52 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-16 10:26:52 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-16 10:26:52 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-16 10:26:52 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-16 10:26:51 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-16 10:26:51 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-16 10:26:51 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-16 10:26:51 ----A---- C:\Windows\system32\msobjs.dll
2016-02-16 10:26:51 ----A---- C:\Windows\system32\msaudite.dll
2016-02-16 10:26:51 ----A---- C:\Windows\system32\adtschema.dll
2016-02-16 10:25:22 ----A---- C:\Windows\system32\shell32.dll
2016-02-16 10:25:20 ----A---- C:\Windows\explorer.exe
2016-02-16 10:25:19 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-16 10:25:17 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-16 10:25:17 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-16 10:25:16 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-16 10:25:16 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-16 10:25:16 ----A---- C:\Windows\system32\authui.dll
2016-02-16 10:06:59 ----D---- C:\ProgramData\Malwarebytes
2016-02-16 10:01:48 ----A---- C:\AdwCleaner[S1].txt
2016-02-16 10:01:11 ----A---- C:\AdwCleaner[R1].txt
2016-02-16 09:56:23 ----A---- C:\autoexec.bat
2016-02-16 09:55:46 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-02-11 08:11:03 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-11 08:10:47 ----A---- C:\Windows\avastSS.scr
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtSvgTR4.dll
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtNetworkTR4.dll
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtGuiTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtSvgTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtNetworkTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtGuiTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\system32\QtCoreTR4.dll
2016-02-02 12:30:30 ----A---- C:\Windows\SYSWOW64\QtCoreTR4.dll
2016-02-02 12:30:29 ----D---- C:\ProgramData\Totally Rad
2016-02-02 12:30:29 ----D---- C:\Program Files (x86)\Totally Rad
2016-01-21 14:13:11 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-01-21 10:44:10 ----A---- C:\Windows\system32\mapi32.dll
2016-01-21 10:44:09 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2016-01-21 10:44:09 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2016-01-21 10:44:09 ----A---- C:\Windows\SYSWOW64\fixmapi.exe
2016-01-21 10:44:09 ----A---- C:\Windows\system32\mapistub.dll
2016-01-21 10:44:09 ----A---- C:\Windows\system32\fixmapi.exe
2016-01-21 10:44:05 ----A---- C:\Windows\system32\qedit.dll
2016-01-21 10:44:04 ----A---- C:\Windows\SYSWOW64\qedit.dll
2016-01-21 10:43:59 ----A---- C:\Windows\SYSWOW64\msmpeg2adec.dll
2016-01-21 10:43:59 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-01-21 10:43:59 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-01-21 10:43:59 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\SYSWOW64\mf.dll
2016-01-21 10:43:58 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-01-21 10:43:58 ----A---- C:\Windows\system32\mf.dll
2016-01-21 10:43:57 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\SYSWOW64\WMADMOE.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\system32\wmpmde.dll
2016-01-21 10:43:57 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-01-21 10:43:57 ----A---- C:\Windows\system32\quartz.dll
2016-01-21 10:43:57 ----A---- C:\Windows\system32\mcmde.dll
2016-01-21 10:43:57 ----A---- C:\Windows\system32\evr.dll
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\WMVENCOD.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\evr.dll
2016-01-21 10:43:56 ----A---- C:\Windows\SYSWOW64\COLORCNV.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-01-21 10:43:56 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-01-21 10:43:55 ----A---- C:\Windows\SYSWOW64\WMVXENCD.DLL
2016-01-21 10:43:55 ----A---- C:\Windows\SYSWOW64\quartz.dll
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\WMVSENCD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\MPG4DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\MP43DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\MFWMAAEC.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2016-01-21 10:43:54 ----A---- C:\Windows\SYSWOW64\devenum.dll
2016-01-21 10:43:54 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2016-01-21 10:43:54 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-01-21 10:43:54 ----A---- C:\Windows\system32\mfplat.dll
2016-01-21 10:43:54 ----A---- C:\Windows\system32\devenum.dll
2016-01-21 10:43:53 ----A---- C:\Windows\SYSWOW64\WMSPDMOE.DLL
2016-01-21 10:43:53 ----A---- C:\Windows\SYSWOW64\qasf.dll
2016-01-21 10:43:53 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2016-01-21 10:43:53 ----A---- C:\Windows\system32\SysFxUI.dll
2016-01-21 10:43:53 ----A---- C:\Windows\system32\qdvd.dll
2016-01-21 10:43:53 ----A---- C:\Windows\system32\mfvdsp.dll
2016-01-21 10:43:52 ----A---- C:\Windows\SYSWOW64\VIDRESZR.DLL
2016-01-21 10:43:52 ----A---- C:\Windows\SYSWOW64\RESAMPLEDMO.DLL
2016-01-21 10:43:52 ----A---- C:\Windows\SYSWOW64\MP4SDECD.DLL
2016-01-21 10:43:52 ----A---- C:\Windows\system32\qasf.dll
2016-01-21 10:43:52 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-01-21 10:43:51 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2016-01-21 10:43:51 ----A---- C:\Windows\SYSWOW64\MP3DMOD.DLL
2016-01-21 10:43:51 ----A---- C:\Windows\SYSWOW64\mfvdsp.dll
2016-01-21 10:43:51 ----A---- C:\Windows\system32\rrinstaller.exe
2016-01-21 10:43:50 ----A---- C:\Windows\SYSWOW64\mfps.dll
2016-01-21 10:43:50 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2016-01-21 10:43:50 ----A---- C:\Windows\system32\mfps.dll
2016-01-21 10:43:50 ----A---- C:\Windows\system32\mfpmp.exe
2016-01-21 10:43:49 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-01-21 10:43:49 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-01-21 10:43:48 ----A---- C:\Windows\SYSWOW64\mferror.dll
2016-01-21 10:43:48 ----A---- C:\Windows\SYSWOW64\ksuser.dll
2016-01-21 10:43:48 ----A---- C:\Windows\system32\mferror.dll
2016-01-21 10:43:48 ----A---- C:\Windows\system32\ksuser.dll
2016-01-21 10:43:48 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-01-21 10:42:37 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-01-21 10:42:37 ----A---- C:\Windows\system32\gdi32.dll
2016-01-21 10:42:35 ----A---- C:\Windows\system32\aepic.dll

======List of files/folders modified in the last 1 month======

2016-02-19 10:12:45 ----D---- C:\Windows\Prefetch
2016-02-19 10:12:44 ----D---- C:\Program Files\trend micro
2016-02-19 09:16:28 ----D---- C:\Users\Veronika\AppData\Roaming\Dropbox
2016-02-19 08:02:56 ----D---- C:\Windows\Temp
2016-02-19 08:00:25 ----D---- C:\Windows\system32\config
2016-02-18 09:59:33 ----D---- C:\Windows\rescache
2016-02-18 08:45:46 ----D---- C:\ProgramData\ProductData
2016-02-18 08:42:44 ----D---- C:\Windows\Tasks
2016-02-18 08:42:44 ----D---- C:\Windows\system32\Tasks
2016-02-18 08:42:42 ----RD---- C:\Program Files (x86)
2016-02-18 07:54:51 ----D---- C:\Windows\Microsoft.NET
2016-02-18 07:53:49 ----RSD---- C:\Windows\assembly
2016-02-18 07:34:52 ----D---- C:\Windows\System32
2016-02-18 07:34:52 ----D---- C:\Windows\inf
2016-02-18 07:34:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-18 07:29:25 ----D---- C:\Windows\winsxs
2016-02-18 07:22:58 ----D---- C:\Windows\SysWOW64
2016-02-18 07:22:58 ----D---- C:\Program Files\Windows Journal
2016-02-18 07:22:57 ----SD---- C:\Windows\system32\CompatTel
2016-02-18 07:22:57 ----D---- C:\Windows\system32\appraiser
2016-02-18 07:22:57 ----D---- C:\Windows\AppPatch
2016-02-18 07:22:56 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-18 07:22:56 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-18 07:22:56 ----D---- C:\Windows\system32\en-US
2016-02-18 07:22:56 ----D---- C:\Windows\system32\cs-CZ
2016-02-18 07:22:56 ----D---- C:\Program Files\Internet Explorer
2016-02-18 07:22:56 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-18 07:22:46 ----D---- C:\Windows\system32\drivers
2016-02-18 07:22:30 ----D---- C:\Windows\cs-CZ
2016-02-18 07:22:29 ----D---- C:\Windows
2016-02-16 15:22:39 ----D---- C:\Windows\system32\MRT
2016-02-16 15:22:39 ----D---- C:\Windows\debug
2016-02-16 15:22:35 ----A---- C:\Windows\system32\MRT.exe
2016-02-16 15:20:43 ----SHD---- C:\Windows\Installer
2016-02-16 15:20:43 ----SHD---- C:\Config.Msi
2016-02-16 15:18:33 ----D---- C:\ProgramData\Microsoft Help
2016-02-16 15:11:52 ----SHD---- C:\System Volume Information
2016-02-16 11:07:52 ----D---- C:\Program Files
2016-02-16 10:30:05 ----D---- C:\Windows\system32\catroot2
2016-02-16 10:06:59 ----HD---- C:\ProgramData
2016-02-11 10:53:28 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-01-27 12:55:58 ----SD---- C:\Windows\SYSWOW64\GWX
2016-01-27 12:55:58 ----SD---- C:\Windows\system32\GWX
2016-01-26 12:06:13 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-01-26 12:05:05 ----D---- C:\Windows\system32\DriverStore
2016-01-26 11:28:39 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-01-26 11:09:07 ----D---- C:\Program Files (x86)\Mozilla Firefox.bak
2016-01-21 14:10:01 ----D---- C:\Users\Veronika\AppData\Roaming\Zoner
2016-01-21 14:09:10 ----D---- C:\Program Files\Zoner
2016-01-21 10:00:40 ----D---- C:\Program Files (x86)\Adobe
2016-01-21 10:00:12 ----D---- C:\ProgramData\Adobe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2009-10-14 35384]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-11 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-11 287016]
R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2015-04-10 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2014-06-04 21184]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-11 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-11 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-11 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-11 463744]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-04-10 26528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-11 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-11 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-11 165344]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-07-09 140800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-11-11 4613888]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2015-04-10 29800]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-11-11 981744]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
S3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2015-11-11 84480]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-06-16 110336]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-02-16 22704]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2013-01-23 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2013-01-23 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2013-01-23 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-06-16 206080]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2013-01-23 9216]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-03-11 14464]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Professional.12.0;ABBYY FineReader 12 PE Licensing Service; C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe [2014-01-23 925904]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-15 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2008-08-14 100920]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2016-02-11 237096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 FastBootAgent;FastBootAgent; C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe [2009-07-24 306232]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-18 933168]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-04-10 293080]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2015-10-09 2934048]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-11 269504]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-01-21 146888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-30 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Falešná zpráva na fb, prosím kontrolu logu

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte anbtivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Nikki
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 10 bře 2008 14:26

Re: Falešná zpráva na fb, prosím kontrolu logu

#7 Příspěvek od Nikki »

Omlovám se, že zasílám až ted, byla jsme pracovně pryč a nezbyl čas... Takže nový log z Rsit


Logfile of random's system information tool 1.09 (written by random/random)
Run by Veronika at 2016-02-25 09:43:41
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 128 GB (54%) free of 238 GB
Total RAM: 6143 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:43:45, on 25.2.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18205)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files\Alwil Software\Avast5\avastui.exe
C:\Program Files\trend micro\Veronika.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Google Update] "C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: Dropbox.lnk = Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: ABBYY FineReader 12 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.12.0) - ABBYY Production LLC - C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FastBootAgent - ASUSTeK Computer Inc. - C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9756 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe"
Atouch64.exe
ATKOSD.exe
KBFiltr.exe
WDC.exe
C:\Windows\System32\spoolsv.exe
taskeng.exe {FD8A7D00-EB03-445E-B2FC-32EBF3D5CFB6}
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
taskeng.exe {5E4E9E9D-E004-483F-85E1-D23939948FE2}
"C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe" -service
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {F1CAFE6A-AD7A-4461-BB40-C341B51AF603}
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /AECBYLISTENTOSTATUS
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Windows\WindowsMobile\wmdcBase.exe"
"C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe"
"C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe"
"C:\Program Files\Alwil Software\Avast5\avastui.exe" /nogui
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Users\Veronika\Desktop\soubory k čištění havěti\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Veronika\AppData\Roaming\Mozilla\Firefox\Profiles\c3azgo9f.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.atlas.cz"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"

"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.5.1]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3]
"Description"=Office Live Update v1.3
"Path"=C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.306 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled


C:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll [2016-02-11 901600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2016-02-11 678656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-07-30 617856]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-04-09 320000]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdcBase.exe [2007-05-31 660360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-08-20 8455960]
"Google Update"=C:\Users\Veronika\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
"Zoner Photo Studio Autoupdate"=C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [2014-12-23 833240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-11-11 16407296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SRS Premium Sound.lnk]
C:\Windows\INSTAL~1\{D42F8~1\NEWSHO~4.EXE [2009-10-14 156880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Veronika^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe [2016-02-16 25122080]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-04-02 98304]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-07-07 8493624]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-04-20 159744]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2016-02-16 7139768]
"Bonus.SSR.FR12"=C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe [2014-01-30 1472312]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ADSMTray]
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe [2009-06-24 272952]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2009-10-14 72248]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2009-10-14 3054136]

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]

C:\Users\Veronika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Veronika\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\22283384.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\4FE5A44D.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\22283384.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\4FE5A44D.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-25 09:36:49 ----D---- C:\_OTM
2016-02-18 08:36:22 ----D---- C:\AdwCleaner
2016-02-16 15:04:55 ----D---- C:\d98855c7b93ce0bffb0c
2016-02-16 11:17:10 ----D---- C:\rsit
2016-02-16 10:32:56 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-16 10:32:53 ----A---- C:\Windows\system32\win32k.sys
2016-02-16 10:32:46 ----A---- C:\Windows\system32\InkEd.dll
2016-02-16 10:32:45 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-02-16 10:32:44 ----A---- C:\Windows\system32\jnwmon.dll
2016-02-16 10:32:38 ----A---- C:\Windows\system32\generaltel.dll
2016-02-16 10:32:38 ----A---- C:\Windows\system32\appraiser.dll
2016-02-16 10:32:38 ----A---- C:\Windows\system32\aeinv.dll
2016-02-16 10:32:37 ----A---- C:\Windows\system32\invagent.dll
2016-02-16 10:32:37 ----A---- C:\Windows\system32\devinv.dll
2016-02-16 10:32:37 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-16 10:32:37 ----A---- C:\Windows\system32\acmigration.dll
2016-02-16 10:32:26 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-16 10:32:26 ----A---- C:\Windows\system32\iertutil.dll
2016-02-16 10:32:25 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-16 10:32:24 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-16 10:32:24 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-02-16 10:32:24 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-16 10:32:23 ----A---- C:\Windows\system32\urlmon.dll
2016-02-16 10:32:22 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-02-16 10:32:22 ----A---- C:\Windows\system32\ieui.dll
2016-02-16 10:32:22 ----A---- C:\Windows\system32\ieframe.dll
2016-02-16 10:32:21 ----A---- C:\Windows\system32\mshtml.dll
2016-02-16 10:32:21 ----A---- C:\Windows\system32\ieUnatt.exe
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-02-16 10:31:57 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\inseng.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\iernonce.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-02-16 10:31:57 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-02-16 10:31:57 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-16 10:31:56 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-16 10:31:56 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-02-16 10:31:56 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-02-16 10:31:56 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-16 10:31:54 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-02-16 10:31:54 ----A---- C:\Windows\system32\occache.dll
2016-02-16 10:31:54 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-02-16 10:31:54 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-02-16 10:31:54 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-16 10:31:53 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-16 10:31:53 ----A---- C:\Windows\system32\iesetup.dll
2016-02-16 10:31:53 ----A---- C:\Windows\system32\dxtrans.dll
2016-02-16 10:31:52 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-16 10:31:51 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-16 10:31:51 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-02-16 10:31:51 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-16 10:31:51 ----A---- C:\Windows\system32\vbscript.dll
2016-02-16 10:31:50 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-16 10:31:50 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-02-16 10:31:50 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-02-16 10:31:50 ----A---- C:\Windows\system32\jsproxy.dll
2016-02-16 10:31:49 ----A---- C:\Windows\system32\dxtmsft.dll
2016-02-16 10:31:48 ----A---- C:\Windows\system32\webcheck.dll
2016-02-16 10:31:48 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-02-16 10:31:48 ----A---- C:\Windows\system32\mshtmled.dll
2016-02-16 10:31:47 ----A---- C:\Windows\system32\jscript9diag.dll
2016-02-16 10:31:47 ----A---- C:\Windows\system32\jscript9.dll
2016-02-16 10:31:47 ----A---- C:\Windows\system32\jscript.dll
2016-02-16 10:31:46 ----A---- C:\Windows\system32\wininet.dll
2016-02-16 10:31:45 ----A---- C:\Windows\system32\msrating.dll
2016-02-16 10:31:45 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-02-16 10:30:59 ----A---- C:\Windows\system32\wucltux.dll
2016-02-16 10:30:59 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-16 10:30:59 ----A---- C:\Windows\system32\wuapi.dll
2016-02-16 10:30:58 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-16 10:30:58 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wups.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wudriver.dll
2016-02-16 10:30:58 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-16 10:30:58 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-02-16 10:30:57 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-02-16 10:30:57 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-16 10:30:57 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-16 10:30:57 ----A---- C:\Windows\system32\wups2.dll
2016-02-16 10:30:57 ----A---- C:\Windows\system32\wuapp.exe
2016-02-16 10:30:57 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-02-16 10:29:44 ----A---- C:\Windows\system32\ole32.dll
2016-02-16 10:29:39 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-02-16 10:27:17 ----A---- C:\Windows\system32\EncDec.dll
2016-02-16 10:27:16 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-16 10:27:16 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-16 10:27:16 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-16 10:27:15 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-16 10:27:14 ----A---- C:\Windows\system32\ntdll.dll
2016-02-16 10:27:12 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-16 10:27:12 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-16 10:27:11 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-16 10:27:11 ----A---- C:\Windows\system32\kerberos.dll
2016-02-16 10:27:10 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-02-16 10:27:08 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-02-16 10:27:08 ----A---- C:\Windows\system32\kernel32.dll
2016-02-16 10:27:07 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-16 10:27:07 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-16 10:27:07 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-02-16 10:27:07 ----A---- C:\Windows\system32\advapi32.dll
2016-02-16 10:27:06 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-16 10:27:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-02-16 10:27:05 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-16 10:27:05 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-02-16 10:27:02 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-16 10:27:01 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-02-16 10:27:01 ----A---- C:\Windows\system32\rpcrt4.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\smss.exe
2016-02-16 10:27:00 ----A---- C:\Windows\system32\schannel.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\ncrypt.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-16 10:27:00 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-16 10:26:59 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-02-16 10:26:59 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-02-16 10:26:59 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\wow64win.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\wow64.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\winsrv.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\wdigest.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\TSpkg.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\sspicli.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\srcore.dll
2016-02-16 10:26:59 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-02-16 10:26:59 ----A---- C:\Windows\system32\conhost.exe
2016-02-16 10:26:58 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-02-16 10:26:58 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-02-16 10:26:58 ----A---- C:\Windows\system32\sspisrv.dll
2016-02-16 10:26:58 ----A---- C:\Windows\system32\lsass.exe
2016-02-16 10:26:58 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-16 10:26:58 ----A---- C:\Windows\system32\cryptbase.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-02-16 10:26:57 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\wow64cpu.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\srclient.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\secur32.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\rstrui.exe
2016-02-16 10:26:57 ----A---- C:\Windows\system32\ntvdm64.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\csrsrv.dll
2016-02-16 10:26:57 ----A---- C:\Windows\system32\credssp.dll
2016-02-16 10:26:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-02-16 10:26:56 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-16 10:26:56 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-16 10:26:56 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-02-16 10:26:56 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-02-16 10:26:56 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-02-16 10:26:56 ----A---- C:\Windows\system32\auditpol.exe
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-16 10:26:55 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-16 10:26:54 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-16 10:26:53 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-16 10:26:53 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-02-16 10:26:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-02-16 10:26:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-02-16 10:26:52 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-16 10:26:52 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-16 10:26:52 ----A---- C:\Windows\SYSWOW64\user.exe
2016-02-16 10:26:52 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-02-16 10:26:52 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-02-16 10:26:52 ----A---- C:\Windows\system32\apisetschema.dll
2016-02-16 10:26:51 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-02-16 10:26:51 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-02-16 10:26:51 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-02-16 10:26:51 ----A---- C:\Windows\system32\msobjs.dll
2016-02-16 10:26:51 ----A---- C:\Windows\system32\msaudite.dll
2016-02-16 10:26:51 ----A---- C:\Windows\system32\adtschema.dll
2016-02-16 10:25:22 ----A---- C:\Windows\system32\shell32.dll
2016-02-16 10:25:20 ----A---- C:\Windows\explorer.exe
2016-02-16 10:25:19 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-16 10:25:17 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-02-16 10:25:17 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-02-16 10:25:16 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-02-16 10:25:16 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-16 10:25:16 ----A---- C:\Windows\system32\authui.dll
2016-02-16 10:06:59 ----D---- C:\ProgramData\Malwarebytes
2016-02-16 10:01:48 ----A---- C:\AdwCleaner[S1].txt
2016-02-16 10:01:11 ----A---- C:\AdwCleaner[R1].txt
2016-02-16 09:56:23 ----A---- C:\autoexec.bat
2016-02-16 09:55:46 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2016-02-11 08:11:03 ----A---- C:\Windows\system32\aswBoot.exe
2016-02-11 08:10:47 ----A---- C:\Windows\avastSS.scr
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtSvgTR4.dll
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtNetworkTR4.dll
2016-02-02 12:30:32 ----A---- C:\Windows\system32\QtGuiTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtSvgTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtNetworkTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\SYSWOW64\QtGuiTR4.dll
2016-02-02 12:30:31 ----A---- C:\Windows\system32\QtCoreTR4.dll
2016-02-02 12:30:30 ----A---- C:\Windows\SYSWOW64\QtCoreTR4.dll
2016-02-02 12:30:29 ----D---- C:\ProgramData\Totally Rad
2016-02-02 12:30:29 ----D---- C:\Program Files (x86)\Totally Rad

======List of files/folders modified in the last 1 month======

2016-02-25 09:43:44 ----D---- C:\Program Files\trend micro
2016-02-25 09:43:22 ----D---- C:\Users\Veronika\AppData\Roaming\Dropbox
2016-02-25 09:42:25 ----D---- C:\Windows\Prefetch
2016-02-25 09:41:29 ----D---- C:\Windows\Temp
2016-02-25 09:41:10 ----D---- C:\ProgramData\ProductData
2016-02-25 09:40:39 ----D---- C:\Windows\system32\config
2016-02-25 09:39:07 ----D---- C:\Windows\SysWOW64
2016-02-25 09:36:50 ----D---- C:\Windows\Tasks
2016-02-24 13:51:56 ----HD---- C:\ProgramData
2016-02-24 10:32:40 ----SHD---- C:\System Volume Information
2016-02-24 09:58:43 ----D---- C:\Windows\System32
2016-02-24 09:58:43 ----D---- C:\Windows\inf
2016-02-24 09:58:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-02-24 08:04:46 ----RD---- C:\Program Files (x86)
2016-02-24 08:03:23 ----D---- C:\Program Files (x86)\IObit
2016-02-24 08:03:15 ----D---- C:\Windows\system32\Tasks
2016-02-24 08:03:13 ----D---- C:\Windows\system32\drivers
2016-02-18 09:59:33 ----D---- C:\Windows\rescache
2016-02-18 07:54:51 ----D---- C:\Windows\Microsoft.NET
2016-02-18 07:53:49 ----RSD---- C:\Windows\assembly
2016-02-18 07:29:25 ----D---- C:\Windows\winsxs
2016-02-18 07:22:58 ----D---- C:\Program Files\Windows Journal
2016-02-18 07:22:57 ----SD---- C:\Windows\system32\CompatTel
2016-02-18 07:22:57 ----D---- C:\Windows\system32\appraiser
2016-02-18 07:22:57 ----D---- C:\Windows\AppPatch
2016-02-18 07:22:56 ----D---- C:\Windows\SYSWOW64\en-US
2016-02-18 07:22:56 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-18 07:22:56 ----D---- C:\Windows\system32\en-US
2016-02-18 07:22:56 ----D---- C:\Windows\system32\cs-CZ
2016-02-18 07:22:56 ----D---- C:\Program Files\Internet Explorer
2016-02-18 07:22:56 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-18 07:22:30 ----D---- C:\Windows\cs-CZ
2016-02-18 07:22:29 ----D---- C:\Windows
2016-02-16 15:22:39 ----D---- C:\Windows\system32\MRT
2016-02-16 15:22:39 ----D---- C:\Windows\debug
2016-02-16 15:22:35 ----A---- C:\Windows\system32\MRT.exe
2016-02-16 15:20:43 ----SHD---- C:\Windows\Installer
2016-02-16 15:20:43 ----SHD---- C:\Config.Msi
2016-02-16 15:18:33 ----D---- C:\ProgramData\Microsoft Help
2016-02-16 11:07:52 ----D---- C:\Program Files
2016-02-16 10:30:05 ----D---- C:\Windows\system32\catroot2
2016-02-11 10:53:28 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-01-27 12:55:58 ----SD---- C:\Windows\SYSWOW64\GWX
2016-01-27 12:55:58 ----SD---- C:\Windows\system32\GWX
2016-01-26 12:06:13 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-01-26 12:05:05 ----D---- C:\Windows\system32\DriverStore
2016-01-26 11:28:39 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-01-26 11:09:23 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-01-26 11:09:07 ----D---- C:\Program Files (x86)\Mozilla Firefox.bak

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2009-10-14 35384]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-02-11 74544]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-02-11 287016]
R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2015-04-10 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-02-11 37144]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-02-11 103064]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-02-11 1065720]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-02-11 463744]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-04-10 26528]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [2007-07-24 14904]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-02-11 37656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-02-11 107792]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-02-11 165344]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-07-09 140800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-11-11 4613888]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2015-04-10 29800]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-11-11 981744]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
S3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2015-11-11 84480]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-06-16 110336]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2016-02-16 22704]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2013-01-23 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2013-01-23 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2013-01-23 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2013-01-23 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-10-17 26112]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-06-16 206080]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2013-01-23 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2013-01-23 9216]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2015-03-11 14464]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Professional.12.0;ABBYY FineReader 12 PE Licensing Service; C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe [2014-01-23 925904]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-15 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe [2008-08-14 100920]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2016-02-11 237096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 FastBootAgent;FastBootAgent; C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe [2009-07-24 306232]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-08-18 933168]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-04-10 293080]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 ADSMService;ADSM Service; C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2015-10-09 2934048]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-11 269504]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-01-22 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-01-21 146888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-30 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-11 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Falešná zpráva na fb, prosím kontrolu logu

#8 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Nikki
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 10 bře 2008 14:26

Re: Falešná zpráva na fb, prosím kontrolu logu

#9 Příspěvek od Nikki »

Provedeno,přijde mi, že je to už lepší. Něco se stále otevírá delší dobu - například Zoner photo studio, fungoval mi rychleji. Ale jinak vše šlape. Děkuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Falešná zpráva na fb, prosím kontrolu logu

#10 Příspěvek od Rudy »

Můžete ještě zkusit defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět