Prosím o kontrolu
Napsal: 10 kvě 2016 17:19
Krásný den přeji, mám problém. Když probudím počítač z režimu spánku, nechtějí mu fungovat lišty na boku internetových oken a přes dlaždicové menu se sice dostanu do nastavení, ale na konkrétní položky už ne, jsou jakoby "mrtvé". Po restartu většinou ožije. Tak nevím, jestli je to problém viru nebo nějakého chybějícího modulu či co. Zde log z RSIT.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vendy at 2016-05-10 18:03:30
Microsoft Windows 8.1 with Bing
System drive C: has 110 GB (25%) free of 435 GB
Total RAM: 3979 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:03:40, on 10. 5. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe
C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
C:\Program Files\trend micro\Vendy.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Catered to You - {b90183ad-1cf4-4d7b-9461-b89083957547} - (no file)
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BingSvc] C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files (x86)\PokerStars.NET\PokerStarsUpdate.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DeskTop DispalyName (DeskTop_F) - DeskTopService - C:\ProgramData\desktopfind\desktop244.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @oem8.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Processor Participant Service Application (DptfParticipantAcpiProcessorService) - Unknown owner - C:\windows\system32\DptfParticipantProcessorService.exe (file missing)
O23 - Service: @oem8.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Critical Service Application (DptfPolicyCriticalService) - Unknown owner - C:\windows\system32\DptfPolicyCriticalService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: ggbugreport - Unknown owner - C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: IhPul - tsvr.com - C:\Users\Vendy\AppData\Roaming\TSv\TSvr.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Lenovo EasyPlus Hotspot - Lenovo - C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\Lenovo\iMController\SystemAgentService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: VeriFaceSrv - Unknown owner - C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Winsere - Unknown owner - C:\Program Files (x86)\Winsere\Winsere\Winsere.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10667 bytes
======Listing Processes======
wininit.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\windows\System32\svchost.exe -k utcsvc
C:\windows\system32\DptfParticipantProcessorService.exe
C:\windows\system32\DptfPolicyCriticalService.exe
"C:\Program Files\Elantech\ETDService.exe"
C:\Users\Vendy\AppData\Roaming\TSv\TSvr.exe
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Lenovo\iMController\SystemAgentService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
C:\windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\Elantech\ETDCtrl.exe"
C:\windows\Explorer.EXE
taskhostex.exe
igfxHK.exe
"C:\windows\system32\igfxEM.exe" -Embedding
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
/QuitInfo:0000000000000FAC;0000000000000FC0;
/loadhooks /Parent:0000000000000c6c
C:\Windows\System32\skydrive.exe -Embedding
"C:\windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_DOLBYDRAGON
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_MICPKEY
"C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe"
"C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe"
"C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE" /tsr
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
"C:\Users\Vendy\AppData\Local\Apps\2.0\OLM4O8B3.WKT\2L8M9P4H.Y13\lsb...tion_91a10ba61c75c82d_0001.0005_a24d0d716055ed94\LSB.exe"
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
dashost.exe {0e62a1dd-b7ee-4cd8-9726428905742033}
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b572f966-5ae2-489d-86dd-203191ce2563 -SystemEventPortName:HostProcess-52d483a4-c155-4ce9-a6bf-4568e38b4897 -IoCancelEventPortName:HostProcess-5ac3df0f-942b-47ef-abdb-2d76b5b95e12 -NonStateChangingEventPortName:HostProcess-ff5c9061-ad38-4958-9679-12bc1689d69d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:307d6b8e-ae48-4f91-ac04-b2a98ce6b57c -DeviceGroupId:WpdFsGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-32b5c127-6b8a-4eda-af12-7d8c6592812f -SystemEventPortName:HostProcess-7c7bf117-3ee5-4f1c-b1d8-4e7649349b36 -IoCancelEventPortName:HostProcess-8480891b-a7f8-4dec-b793-f848f19e5d82 -NonStateChangingEventPortName:HostProcess-29a4d2fc-78d1-4105-ac1e-dd9251b95344 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6828e319-6fe2-4e7d-91c2-c0a1afbbe4b2 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\windows\system32\msiexec.exe /V
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Users\Vendy\Downloads\RSITx64.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
======Scheduled tasks folder======
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-03-15 228552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-25 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-04-29 2134648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-04-19 2348848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-25 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-04-29 1725056]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b90183ad-1cf4-4d7b-9461-b89083957547}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-21 13672304]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-04-07 1385840]
"RtHDVBg_LENOVO_DOLBYDRAGON"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-04-07 1385840]
"RtHDVBg_LENOVO_MICPKEY"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-04-07 1385840]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-04-02 3276104]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-10-11 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-10-11 10841584]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2014-03-25 134784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BingSvc"=C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2016-03-20 144008]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-03-01 4290240]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-25 7139256]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2014-03-25 134784]
C:\Users\Vendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Odeslat do OneNote.lnk - C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-05-10 18:03:31 ----D---- C:\Program Files\trend micro
2016-05-10 18:03:30 ----D---- C:\rsit
2016-04-25 19:05:04 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-04-25 19:02:53 ----SD---- C:\windows\SYSWOW64\Microsoft
2016-04-24 16:58:30 ----D---- C:\ProgramData\desktopfind
2016-04-23 22:53:23 ----D---- C:\Program Files (x86)\Electronic Arts
2016-04-18 19:52:25 ----D---- C:\Users\Vendy\AppData\Roaming\Mozilla
2016-04-14 07:55:42 ----D---- C:\Program Files (x86)\WinZipper
2016-04-14 07:55:38 ----D---- C:\Users\Vendy\AppData\Roaming\WinZiper
2016-04-14 07:55:38 ----D---- C:\Users\Vendy\AppData\Roaming\eCyber
2016-04-14 07:54:59 ----D---- C:\ProgramData\OwinpO
2016-04-14 07:54:55 ----D---- C:\Users\Vendy\AppData\Roaming\TSv
2016-04-14 07:54:54 ----D---- C:\Program Files (x86)\QQBrowser
2016-04-13 23:24:07 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\invagent.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\aepic.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 23:24:05 ----A---- C:\windows\system32\devinv.dll
2016-04-13 23:24:05 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 23:24:05 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 23:24:02 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 23:24:00 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 23:24:00 ----A---- C:\windows\explorer.exe
2016-04-13 23:23:59 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 23:23:59 ----A---- C:\windows\system32\shell32.dll
2016-04-13 23:23:57 ----A---- C:\windows\system32\twinui.dll
2016-04-13 23:23:52 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 23:23:51 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 23:23:50 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 23:23:49 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 23:23:49 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 23:23:48 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 23:23:48 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 23:23:48 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 23:23:47 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 23:23:47 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 23:23:47 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 23:23:47 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 23:23:47 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 23:23:46 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 23:23:46 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 23:23:45 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 23:23:45 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 23:23:45 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\stobject.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 23:23:41 ----A---- C:\windows\system32\winresume.exe
2016-04-13 23:23:41 ----A---- C:\windows\system32\winload.exe
2016-04-13 23:23:41 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 23:23:39 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 23:23:39 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 23:23:39 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 23:23:36 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 23:23:36 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 23:23:30 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 23:23:28 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 23:23:28 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 23:23:25 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 23:20:51 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 23:20:51 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 23:20:50 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 23:20:49 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 23:20:48 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 23:20:48 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 23:20:48 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 23:20:48 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 23:20:48 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 23:20:48 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 23:20:47 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 23:20:46 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 23:20:46 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 23:20:45 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 23:20:42 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 23:20:41 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 23:20:31 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 23:20:30 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 23:20:30 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 23:20:28 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 22:58:14 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 22:25:46 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 22:25:44 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 22:25:40 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 22:25:39 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 22:25:38 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 22:25:37 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 22:25:37 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 22:25:37 ----A---- C:\windows\system32\wininet.dll
2016-04-13 22:25:37 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 22:25:37 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 22:25:36 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 22:25:36 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 22:25:36 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 22:25:36 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 22:25:34 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 22:25:33 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\jscript.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 22:25:30 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 22:25:30 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 22:25:30 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 22:25:30 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 22:20:56 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 22:20:56 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 22:20:56 ----A---- C:\windows\system32\certcli.dll
2016-04-13 22:20:55 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 22:20:55 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 22:20:55 ----A---- C:\windows\system32\samlib.dll
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 22:20:41 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 22:20:41 ----A---- C:\windows\system32\ole32.dll
2016-04-13 22:20:36 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 22:20:36 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 22:20:17 ----A---- C:\windows\system32\win32k.sys
======List of files/folders modified in the last 1 month======
2016-05-10 18:03:37 ----D---- C:\windows\Prefetch
2016-05-10 18:03:31 ----RD---- C:\Program Files
2016-05-10 18:03:21 ----SHD---- C:\windows\Installer
2016-05-10 18:03:21 ----D---- C:\windows\Temp
2016-05-10 18:03:19 ----D---- C:\windows\system32\Tasks
2016-05-10 18:02:07 ----D---- C:\windows\SysWOW64
2016-05-10 18:00:00 ----D---- C:\windows\system32\sru
2016-05-10 13:30:44 ----RD---- C:\Program Files (x86)
2016-05-10 13:30:30 ----D---- C:\Program Files (x86)\Google
2016-05-10 12:18:47 ----D---- C:\windows\Inf
2016-05-10 08:03:26 ----D---- C:\ProgramData\Microsoft Help
2016-05-09 19:07:34 ----D---- C:\windows\system32\config
2016-05-09 18:54:04 ----D---- C:\windows\WinSxS
2016-05-09 18:52:42 ----D---- C:\windows\Microsoft.NET
2016-05-09 18:52:16 ----SD---- C:\windows\SYSWOW64\GWX
2016-05-09 18:52:16 ----SD---- C:\windows\system32\GWX
2016-05-09 18:51:42 ----D---- C:\windows\CbsTemp
2016-05-09 14:21:12 ----D---- C:\KMPlayer
2016-05-09 12:45:46 ----SHD---- C:\System Volume Information
2016-05-07 12:07:03 ----D---- C:\windows\system32\DriverStore
2016-05-07 12:02:32 ----D---- C:\windows\system32\appraiser
2016-05-07 10:25:38 ----D---- C:\Users\Vendy\AppData\Roaming\Skype
2016-05-06 07:00:27 ----RSD---- C:\windows\assembly
2016-05-06 07:00:17 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-05-06 06:57:23 ----D---- C:\Program Files\Microsoft Office 15
2016-05-05 21:28:49 ----RD---- C:\Program Files (x86)\Skype
2016-05-04 12:27:43 ----HD---- C:\Program Files\WindowsApps
2016-05-03 23:08:33 ----HD---- C:\ProgramData
2016-04-29 09:09:19 ----D---- C:\windows\rescache
2016-04-27 23:05:55 ----D---- C:\windows\AppReadiness
2016-04-25 19:08:55 ----RAD---- C:\windows\System32
2016-04-25 18:56:06 ----D---- C:\windows\system32\drivers
2016-04-25 18:56:06 ----D---- C:\windows\apppatch
2016-04-25 18:56:06 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-25 18:56:05 ----D---- C:\windows\SYSWOW64\en-US
2016-04-25 18:56:05 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-25 18:56:05 ----D---- C:\Program Files\Internet Explorer
2016-04-25 18:56:04 ----D---- C:\windows\system32\en-US
2016-04-25 18:56:04 ----D---- C:\windows\system32\cs-CZ
2016-04-25 18:55:59 ----RD---- C:\windows\ToastData
2016-04-25 18:55:57 ----D---- C:\windows\system32\wbem
2016-04-25 18:55:57 ----AD---- C:\Windows
2016-04-25 18:55:52 ----D---- C:\windows\system32\Boot
2016-04-24 16:58:13 ----HD---- C:\windows\system32\GroupPolicy
2016-04-24 16:58:13 ----D---- C:\windows\SYSWOW64\GroupPolicy
2016-04-23 22:51:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 19:52:29 ----D---- C:\Program Files (x86)\SearchesToYesbnd
2016-04-18 19:50:36 ----D---- C:\windows\LiveKernelReports
2016-04-17 14:10:00 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-13 23:55:42 ----D---- C:\windows\system32\MRT
2016-04-13 23:47:17 ----A---- C:\windows\system32\MRT.exe
2016-04-13 22:58:27 ----D---- C:\windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2016-03-25 74544]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2016-03-25 287016]
R0 BTATH_BUS;@oem14.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\windows\System32\drivers\btath_bus.sys [2014-03-25 35016]
R0 MBI;@oem5.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2016-03-25 103064]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-25 1070904]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-25 463744]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2016-03-25 37656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2016-03-25 107792]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2016-03-25 165344]
R2 atksgt;atksgt; C:\windows\system32\DRIVERS\atksgt.sys [2015-09-06 310728]
R2 lirsgt;lirsgt; C:\windows\system32\DRIVERS\lirsgt.sys [2015-09-06 42696]
R3 ACPIVPC;@oem20.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-10-11 35576]
R3 AthBTPort;@oem17.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\windows\system32\DRIVERS\btath_flt.sys [2014-03-25 89800]
R3 athr;@oem12.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athwbx.sys [2014-03-07 3892224]
R3 BTATH_A2DP;@oem16.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\windows\system32\drivers\btath_a2dp.sys [2014-03-25 355528]
R3 btath_avdt;@oem16.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\windows\system32\drivers\btath_avdt.sys [2014-03-25 118984]
R3 BTATH_HCRP;@oem19.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\windows\System32\drivers\btath_hcrp.sys [2014-03-25 179432]
R3 BTATH_LWFLT;@oem21.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\windows\system32\DRIVERS\btath_lwflt.sys [2014-03-25 77464]
R3 BTATH_RCP;@oem23.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\windows\System32\drivers\btath_rcp.sys [2014-03-25 137928]
R3 BtFilter;BtFilter; C:\windows\system32\DRIVERS\btfilter.sys [2014-03-25 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 DptfDevAcpiProc;DptfDevAcpiProc; C:\windows\system32\DRIVERS\DptfDevAcpiProc.sys [2013-09-17 198808]
R3 DptfManager;DptfManager; C:\windows\system32\DRIVERS\DptfManager.sys [2013-09-17 493240]
R3 dtlitescsibus;@oem50.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-11-18 30264]
R3 dtliteusbbus;@oem46.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\windows\System32\drivers\dtliteusbbus.sys [2016-04-04 47672]
R3 ETD;@oem13.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2014-04-01 401160]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-31 3785216]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2014-04-08 3917272]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-26 27032]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 RSUSBVSTOR;@oem10.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-07-09 329944]
R3 RTL8168;@oem11.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2014-03-17 843480]
R3 TXEIx64;@oem2.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\windows\system32\drivers\mfeelamk.sys [2015-07-02 80920]
S3 AX88772;@netax88772.inf,%AX88772.DeviceDesc%;ASIX AX88772 USB2.0 to Fast Ethernet Adapter; C:\windows\system32\DRIVERS\ax88772.sys [2013-07-18 113864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 dg_ssudbus;@oem43.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-26 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 ssudmdm;@oem32.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;USB RNDIS Adapter; C:\windows\System32\drivers\usb8023x.sys [2015-04-25 20992]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2014-03-25 319104]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-25 237096]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-04-29 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-04-29 1773696]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2016-03-08 2829552]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 DptfParticipantAcpiProcessorService;@oem8.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Processor Participant Service Application; C:\windows\system32\DptfParticipantProcessorService.exe [2013-09-17 117704]
R2 DptfPolicyCriticalService;@oem8.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Critical Service Application; C:\windows\system32\DptfPolicyCriticalService.exe [2013-09-17 150760]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2013-10-15 101680]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-27 144200]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-04-09 296432]
R2 IhPul;IhPul; C:\Users\Vendy\AppData\Roaming\TSv\TSvr.exe [2016-04-13 359680]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
R2 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [2014-10-11 68368]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2016-03-01 1444544]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S2 DeskTop_F;DeskTop DispalyName; C:\ProgramData\desktopfind\desktop244.exe [2016-03-16 236728]
S2 ggbugreport;ggbugreport; C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe [2016-03-29 1609280]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-03-23 327808]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-27 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S3 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-18 2099720]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-09-11 150600]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-19 838336]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vendy at 2016-05-10 18:03:30
Microsoft Windows 8.1 with Bing
System drive C: has 110 GB (25%) free of 435 GB
Total RAM: 3979 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:03:40, on 10. 5. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe
C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
C:\Program Files\trend micro\Vendy.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Catered to You - {b90183ad-1cf4-4d7b-9461-b89083957547} - (no file)
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BingSvc] C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files (x86)\PokerStars.NET\PokerStarsUpdate.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DeskTop DispalyName (DeskTop_F) - DeskTopService - C:\ProgramData\desktopfind\desktop244.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @oem8.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Processor Participant Service Application (DptfParticipantAcpiProcessorService) - Unknown owner - C:\windows\system32\DptfParticipantProcessorService.exe (file missing)
O23 - Service: @oem8.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Critical Service Application (DptfPolicyCriticalService) - Unknown owner - C:\windows\system32\DptfPolicyCriticalService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: ggbugreport - Unknown owner - C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: IhPul - tsvr.com - C:\Users\Vendy\AppData\Roaming\TSv\TSvr.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Lenovo EasyPlus Hotspot - Lenovo - C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\Lenovo\iMController\SystemAgentService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: VeriFaceSrv - Unknown owner - C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Winsere - Unknown owner - C:\Program Files (x86)\Winsere\Winsere\Winsere.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10667 bytes
======Listing Processes======
wininit.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\igfxCUIService.exe
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\windows\System32\svchost.exe -k utcsvc
C:\windows\system32\DptfParticipantProcessorService.exe
C:\windows\system32\DptfPolicyCriticalService.exe
"C:\Program Files\Elantech\ETDService.exe"
C:\Users\Vendy\AppData\Roaming\TSv\TSvr.exe
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Lenovo\iMController\SystemAgentService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
C:\windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\Elantech\ETDCtrl.exe"
C:\windows\Explorer.EXE
taskhostex.exe
igfxHK.exe
"C:\windows\system32\igfxEM.exe" -Embedding
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
/QuitInfo:0000000000000FAC;0000000000000FC0;
/loadhooks /Parent:0000000000000c6c
C:\Windows\System32\skydrive.exe -Embedding
"C:\windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_DOLBYDRAGON
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_MICPKEY
"C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe"
"C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe"
"C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE" /tsr
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
"C:\Users\Vendy\AppData\Local\Apps\2.0\OLM4O8B3.WKT\2L8M9P4H.Y13\lsb...tion_91a10ba61c75c82d_0001.0005_a24d0d716055ed94\LSB.exe"
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
dashost.exe {0e62a1dd-b7ee-4cd8-9726428905742033}
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b572f966-5ae2-489d-86dd-203191ce2563 -SystemEventPortName:HostProcess-52d483a4-c155-4ce9-a6bf-4568e38b4897 -IoCancelEventPortName:HostProcess-5ac3df0f-942b-47ef-abdb-2d76b5b95e12 -NonStateChangingEventPortName:HostProcess-ff5c9061-ad38-4958-9679-12bc1689d69d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:307d6b8e-ae48-4f91-ac04-b2a98ce6b57c -DeviceGroupId:WpdFsGroup
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-32b5c127-6b8a-4eda-af12-7d8c6592812f -SystemEventPortName:HostProcess-7c7bf117-3ee5-4f1c-b1d8-4e7649349b36 -IoCancelEventPortName:HostProcess-8480891b-a7f8-4dec-b793-f848f19e5d82 -NonStateChangingEventPortName:HostProcess-29a4d2fc-78d1-4105-ac1e-dd9251b95344 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6828e319-6fe2-4e7d-91c2-c0a1afbbe4b2 -DeviceGroupId:WudfDefaultDevicePool
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\windows\system32\msiexec.exe /V
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Users\Vendy\Downloads\RSITx64.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
======Scheduled tasks folder======
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-03-15 228552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-03-25 901600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-04-29 2134648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-04-19 2348848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-25 678656]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-04-29 1725056]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b90183ad-1cf4-4d7b-9461-b89083957547}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-03-21 13672304]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-04-07 1385840]
"RtHDVBg_LENOVO_DOLBYDRAGON"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-04-07 1385840]
"RtHDVBg_LENOVO_MICPKEY"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-04-07 1385840]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2014-04-02 3276104]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-10-11 16094704]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-10-11 10841584]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2014-03-25 134784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BingSvc"=C:\Users\Vendy\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2016-03-20 144008]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-03-01 4290240]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-03-25 7139256]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2014-03-25 134784]
C:\Users\Vendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Odeslat do OneNote.lnk - C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDWFP]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-05-10 18:03:31 ----D---- C:\Program Files\trend micro
2016-05-10 18:03:30 ----D---- C:\rsit
2016-04-25 19:05:04 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-04-25 19:02:53 ----SD---- C:\windows\SYSWOW64\Microsoft
2016-04-24 16:58:30 ----D---- C:\ProgramData\desktopfind
2016-04-23 22:53:23 ----D---- C:\Program Files (x86)\Electronic Arts
2016-04-18 19:52:25 ----D---- C:\Users\Vendy\AppData\Roaming\Mozilla
2016-04-14 07:55:42 ----D---- C:\Program Files (x86)\WinZipper
2016-04-14 07:55:38 ----D---- C:\Users\Vendy\AppData\Roaming\WinZiper
2016-04-14 07:55:38 ----D---- C:\Users\Vendy\AppData\Roaming\eCyber
2016-04-14 07:54:59 ----D---- C:\ProgramData\OwinpO
2016-04-14 07:54:55 ----D---- C:\Users\Vendy\AppData\Roaming\TSv
2016-04-14 07:54:54 ----D---- C:\Program Files (x86)\QQBrowser
2016-04-13 23:24:07 ----A---- C:\windows\system32\appraiser.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\invagent.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\generaltel.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\aepic.dll
2016-04-13 23:24:06 ----A---- C:\windows\system32\aeinv.dll
2016-04-13 23:24:05 ----A---- C:\windows\system32\devinv.dll
2016-04-13 23:24:05 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-04-13 23:24:05 ----A---- C:\windows\system32\acmigration.dll
2016-04-13 23:24:02 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2016-04-13 23:24:00 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-04-13 23:24:00 ----A---- C:\windows\explorer.exe
2016-04-13 23:23:59 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2016-04-13 23:23:59 ----A---- C:\windows\system32\shell32.dll
2016-04-13 23:23:57 ----A---- C:\windows\system32\twinui.dll
2016-04-13 23:23:52 ----A---- C:\windows\SYSWOW64\twinui.dll
2016-04-13 23:23:51 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-04-13 23:23:50 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-04-13 23:23:49 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-04-13 23:23:49 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2016-04-13 23:23:48 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2016-04-13 23:23:48 ----A---- C:\windows\system32\twinui.appcore.dll
2016-04-13 23:23:48 ----A---- C:\windows\system32\SettingsHandlers.dll
2016-04-13 23:23:47 ----A---- C:\windows\SYSWOW64\AppxAllUserStore.dll
2016-04-13 23:23:47 ----A---- C:\windows\system32\SettingSyncHost.exe
2016-04-13 23:23:47 ----A---- C:\windows\system32\SettingSyncCore.dll
2016-04-13 23:23:47 ----A---- C:\windows\system32\SettingSync.dll
2016-04-13 23:23:47 ----A---- C:\windows\system32\AppxAllUserStore.dll
2016-04-13 23:23:46 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2016-04-13 23:23:46 ----A---- C:\windows\system32\hgcpl.dll
2016-04-13 23:23:45 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2016-04-13 23:23:45 ----A---- C:\windows\system32\usercpl.dll
2016-04-13 23:23:45 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\usercpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\themecpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\stobject.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\SettingMonitor.dll
2016-04-13 23:23:44 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\themecpl.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\stobject.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\SettingMonitor.dll
2016-04-13 23:23:44 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2016-04-13 23:23:41 ----A---- C:\windows\system32\winresume.exe
2016-04-13 23:23:41 ----A---- C:\windows\system32\winload.exe
2016-04-13 23:23:41 ----A---- C:\windows\system32\ntoskrnl.exe
2016-04-13 23:23:39 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-04-13 23:23:39 ----A---- C:\windows\system32\mtxoci.dll
2016-04-13 23:23:39 ----A---- C:\windows\system32\KernelBase.dll
2016-04-13 23:23:36 ----A---- C:\windows\SYSWOW64\mtxoci.dll
2016-04-13 23:23:36 ----A---- C:\windows\SYSWOW64\msorcl32.dll
2016-04-13 23:23:30 ----A---- C:\windows\system32\drivers\vpci.sys
2016-04-13 23:23:28 ----A---- C:\windows\SYSWOW64\dhcpsapi.dll
2016-04-13 23:23:28 ----A---- C:\windows\system32\dhcpsapi.dll
2016-04-13 23:23:25 ----A---- C:\windows\system32\WindowsAnytimeUpgradeui.exe
2016-04-13 23:20:51 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2016-04-13 23:20:51 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2016-04-13 23:20:50 ----A---- C:\windows\system32\drivers\rasl2tp.sys
2016-04-13 23:20:49 ----A---- C:\windows\system32\rpcss.dll
2016-04-13 23:20:48 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2016-04-13 23:20:48 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2016-04-13 23:20:48 ----A---- C:\windows\system32\nshwfp.dll
2016-04-13 23:20:48 ----A---- C:\windows\system32\IKEEXT.DLL
2016-04-13 23:20:48 ----A---- C:\windows\system32\FWPUCLNT.DLL
2016-04-13 23:20:48 ----A---- C:\windows\system32\BFE.DLL
2016-04-13 23:20:47 ----A---- C:\windows\system32\workfolderssvc.dll
2016-04-13 23:20:46 ----A---- C:\windows\system32\WorkfoldersControl.dll
2016-04-13 23:20:46 ----A---- C:\windows\system32\VSSVC.exe
2016-04-13 23:20:45 ----A---- C:\windows\system32\drivers\storport.sys
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmAuto.dll
2016-04-13 23:20:44 ----A---- C:\windows\SYSWOW64\WsmAgent.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmWmiPl.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmSvc.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmAuto.dll
2016-04-13 23:20:44 ----A---- C:\windows\system32\WsmAgent.dll
2016-04-13 23:20:42 ----A---- C:\windows\system32\storagewmi.dll
2016-04-13 23:20:41 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2016-04-13 23:20:31 ----A---- C:\windows\system32\wbengine.exe
2016-04-13 23:20:30 ----A---- C:\windows\system32\drivers\volsnap.sys
2016-04-13 23:20:30 ----A---- C:\windows\system32\drivers\vhdmp.sys
2016-04-13 23:20:28 ----A---- C:\windows\system32\drivers\disk.sys
2016-04-13 22:58:14 ----A---- C:\windows\system32\basesrv.dll
2016-04-13 22:25:46 ----A---- C:\windows\system32\mshtml.dll
2016-04-13 22:25:44 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-04-13 22:25:40 ----A---- C:\windows\system32\ieframe.dll
2016-04-13 22:25:39 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-04-13 22:25:38 ----A---- C:\windows\system32\iertutil.dll
2016-04-13 22:25:37 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-04-13 22:25:37 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-04-13 22:25:37 ----A---- C:\windows\system32\wininet.dll
2016-04-13 22:25:37 ----A---- C:\windows\system32\jscript9.dll
2016-04-13 22:25:37 ----A---- C:\windows\system32\iedkcs32.dll
2016-04-13 22:25:36 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-04-13 22:25:36 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-04-13 22:25:36 ----A---- C:\windows\system32\msfeeds.dll
2016-04-13 22:25:36 ----A---- C:\windows\system32\ie4uinit.exe
2016-04-13 22:25:34 ----A---- C:\windows\system32\urlmon.dll
2016-04-13 22:25:33 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\iepeers.dll
2016-04-13 22:25:31 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\webcheck.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\vbscript.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\mshtmled.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\jscript.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\inetcomm.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\iepeers.dll
2016-04-13 22:25:31 ----A---- C:\windows\system32\dxtrans.dll
2016-04-13 22:25:30 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-04-13 22:25:30 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-04-13 22:25:30 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-04-13 22:25:30 ----A---- C:\windows\system32\ieapfltr.dll
2016-04-13 22:20:56 ----A---- C:\windows\system32\samsrv.dll
2016-04-13 22:20:56 ----A---- C:\windows\system32\lsasrv.dll
2016-04-13 22:20:56 ----A---- C:\windows\system32\certcli.dll
2016-04-13 22:20:55 ----A---- C:\windows\SYSWOW64\samlib.dll
2016-04-13 22:20:55 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-04-13 22:20:55 ----A---- C:\windows\system32\samlib.dll
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-04-13 22:20:55 ----A---- C:\windows\system32\drivers\cng.sys
2016-04-13 22:20:41 ----A---- C:\windows\SYSWOW64\ole32.dll
2016-04-13 22:20:41 ----A---- C:\windows\system32\ole32.dll
2016-04-13 22:20:36 ----A---- C:\windows\SYSWOW64\msxml3.dll
2016-04-13 22:20:36 ----A---- C:\windows\system32\msxml3.dll
2016-04-13 22:20:17 ----A---- C:\windows\system32\win32k.sys
======List of files/folders modified in the last 1 month======
2016-05-10 18:03:37 ----D---- C:\windows\Prefetch
2016-05-10 18:03:31 ----RD---- C:\Program Files
2016-05-10 18:03:21 ----SHD---- C:\windows\Installer
2016-05-10 18:03:21 ----D---- C:\windows\Temp
2016-05-10 18:03:19 ----D---- C:\windows\system32\Tasks
2016-05-10 18:02:07 ----D---- C:\windows\SysWOW64
2016-05-10 18:00:00 ----D---- C:\windows\system32\sru
2016-05-10 13:30:44 ----RD---- C:\Program Files (x86)
2016-05-10 13:30:30 ----D---- C:\Program Files (x86)\Google
2016-05-10 12:18:47 ----D---- C:\windows\Inf
2016-05-10 08:03:26 ----D---- C:\ProgramData\Microsoft Help
2016-05-09 19:07:34 ----D---- C:\windows\system32\config
2016-05-09 18:54:04 ----D---- C:\windows\WinSxS
2016-05-09 18:52:42 ----D---- C:\windows\Microsoft.NET
2016-05-09 18:52:16 ----SD---- C:\windows\SYSWOW64\GWX
2016-05-09 18:52:16 ----SD---- C:\windows\system32\GWX
2016-05-09 18:51:42 ----D---- C:\windows\CbsTemp
2016-05-09 14:21:12 ----D---- C:\KMPlayer
2016-05-09 12:45:46 ----SHD---- C:\System Volume Information
2016-05-07 12:07:03 ----D---- C:\windows\system32\DriverStore
2016-05-07 12:02:32 ----D---- C:\windows\system32\appraiser
2016-05-07 10:25:38 ----D---- C:\Users\Vendy\AppData\Roaming\Skype
2016-05-06 07:00:27 ----RSD---- C:\windows\assembly
2016-05-06 07:00:17 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-05-06 06:57:23 ----D---- C:\Program Files\Microsoft Office 15
2016-05-05 21:28:49 ----RD---- C:\Program Files (x86)\Skype
2016-05-04 12:27:43 ----HD---- C:\Program Files\WindowsApps
2016-05-03 23:08:33 ----HD---- C:\ProgramData
2016-04-29 09:09:19 ----D---- C:\windows\rescache
2016-04-27 23:05:55 ----D---- C:\windows\AppReadiness
2016-04-25 19:08:55 ----RAD---- C:\windows\System32
2016-04-25 18:56:06 ----D---- C:\windows\system32\drivers
2016-04-25 18:56:06 ----D---- C:\windows\apppatch
2016-04-25 18:56:06 ----D---- C:\Program Files (x86)\Internet Explorer
2016-04-25 18:56:05 ----D---- C:\windows\SYSWOW64\en-US
2016-04-25 18:56:05 ----D---- C:\windows\SYSWOW64\cs-CZ
2016-04-25 18:56:05 ----D---- C:\Program Files\Internet Explorer
2016-04-25 18:56:04 ----D---- C:\windows\system32\en-US
2016-04-25 18:56:04 ----D---- C:\windows\system32\cs-CZ
2016-04-25 18:55:59 ----RD---- C:\windows\ToastData
2016-04-25 18:55:57 ----D---- C:\windows\system32\wbem
2016-04-25 18:55:57 ----AD---- C:\Windows
2016-04-25 18:55:52 ----D---- C:\windows\system32\Boot
2016-04-24 16:58:13 ----HD---- C:\windows\system32\GroupPolicy
2016-04-24 16:58:13 ----D---- C:\windows\SYSWOW64\GroupPolicy
2016-04-23 22:51:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-04-18 19:52:29 ----D---- C:\Program Files (x86)\SearchesToYesbnd
2016-04-18 19:50:36 ----D---- C:\windows\LiveKernelReports
2016-04-17 14:10:00 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-04-13 23:55:42 ----D---- C:\windows\system32\MRT
2016-04-13 23:47:17 ----A---- C:\windows\system32\MRT.exe
2016-04-13 22:58:27 ----D---- C:\windows\system32\catroot2
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2016-03-25 74544]
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2016-03-25 287016]
R0 BTATH_BUS;@oem14.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\windows\System32\drivers\btath_bus.sys [2014-03-25 35016]
R0 MBI;@oem5.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\windows\System32\drivers\MBI.sys [2013-10-10 29464]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr2.sys [2016-03-25 103064]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2016-03-25 1070904]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2016-03-25 463744]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\windows\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 aswHwid;avast! HardwareID; C:\windows\system32\drivers\aswHwid.sys [2016-03-25 37656]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2016-03-25 107792]
R2 aswStm;aswStm; C:\windows\system32\drivers\aswStm.sys [2016-03-25 165344]
R2 atksgt;atksgt; C:\windows\system32\DRIVERS\atksgt.sys [2015-09-06 310728]
R2 lirsgt;lirsgt; C:\windows\system32\DRIVERS\lirsgt.sys [2015-09-06 42696]
R3 ACPIVPC;@oem20.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\windows\System32\drivers\AcpiVpc.sys [2014-10-11 35576]
R3 AthBTPort;@oem17.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\windows\system32\DRIVERS\btath_flt.sys [2014-03-25 89800]
R3 athr;@oem12.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athwbx.sys [2014-03-07 3892224]
R3 BTATH_A2DP;@oem16.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\windows\system32\drivers\btath_a2dp.sys [2014-03-25 355528]
R3 btath_avdt;@oem16.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\windows\system32\drivers\btath_avdt.sys [2014-03-25 118984]
R3 BTATH_HCRP;@oem19.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\windows\System32\drivers\btath_hcrp.sys [2014-03-25 179432]
R3 BTATH_LWFLT;@oem21.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\windows\system32\DRIVERS\btath_lwflt.sys [2014-03-25 77464]
R3 BTATH_RCP;@oem23.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\windows\System32\drivers\btath_rcp.sys [2014-03-25 137928]
R3 BtFilter;BtFilter; C:\windows\system32\DRIVERS\btfilter.sys [2014-03-25 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\windows\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\windows\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\windows\System32\drivers\bthpan.sys [2015-07-10 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 DptfDevAcpiProc;DptfDevAcpiProc; C:\windows\system32\DRIVERS\DptfDevAcpiProc.sys [2013-09-17 198808]
R3 DptfManager;DptfManager; C:\windows\system32\DRIVERS\DptfManager.sys [2013-09-17 493240]
R3 dtlitescsibus;@oem50.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\windows\System32\drivers\dtlitescsibus.sys [2015-11-18 30264]
R3 dtliteusbbus;@oem46.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\windows\System32\drivers\dtliteusbbus.sys [2016-04-04 47672]
R3 ETD;@oem13.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2014-04-01 401160]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2014-03-31 3785216]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2014-04-08 3917272]
R3 IntcDAud;@oem3.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2014-03-31 450520]
R3 iwdbus;@oem7.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\windows\System32\drivers\iwdbus.sys [2014-03-26 27032]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 RSUSBVSTOR;@oem10.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2013-07-09 329944]
R3 RTL8168;@oem11.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys [2014-03-17 843480]
R3 TXEIx64;@oem2.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\windows\System32\drivers\TXEIx64.sys [2014-01-15 88592]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\windows\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\windows\system32\drivers\mfeelamk.sys [2015-07-02 80920]
S3 AX88772;@netax88772.inf,%AX88772.DeviceDesc%;ASIX AX88772 USB2.0 to Fast Ethernet Adapter; C:\windows\system32\DRIVERS\ax88772.sys [2013-07-18 113864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 dg_ssudbus;@oem43.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudbus.sys [2015-12-08 122160]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem6.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\windows\system32\drivers\intelaud.sys [2014-03-26 38296]
S3 NETwNe64;@netwew02.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\windows\system32\DRIVERS\NETwew02.sys [2013-06-18 4649440]
S3 ssudmdm;@oem32.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 usb_rndisx;@netrndis.inf,%usb_rndis.Service.DispName%;USB RNDIS Adapter; C:\windows\System32\drivers\usb8023x.sys [2015-04-25 20992]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2014-03-25 319104]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-03-25 237096]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-04-29 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-04-29 1773696]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2016-03-08 2829552]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2014-10-29 38792]
R2 DptfParticipantAcpiProcessorService;@oem8.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Processor Participant Service Application; C:\windows\system32\DptfParticipantProcessorService.exe [2013-09-17 117704]
R2 DptfPolicyCriticalService;@oem8.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Critical Service Application; C:\windows\system32\DptfPolicyCriticalService.exe [2013-09-17 150760]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2013-10-15 101680]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-27 144200]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe [2014-04-09 296432]
R2 IhPul;IhPul; C:\Users\Vendy\AppData\Roaming\TSv\TSvr.exe [2016-04-13 359680]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-02 733696]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
R2 VeriFaceSrv;VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [2014-10-11 68368]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2016-03-01 1444544]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
S2 DeskTop_F;DeskTop DispalyName; C:\ProgramData\desktopfind\desktop244.exe [2016-03-16 236728]
S2 ggbugreport;ggbugreport; C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe [2016-03-29 1609280]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-03-23 327808]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\windows\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-27 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-02 822232]
S3 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-18 2099720]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-09-11 150600]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-19 838336]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
-----------------EOF-----------------