
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu - moc děkuji
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu logu - moc děkuji
Logfile of random's system information tool 1.16 (written by random/random)
Run by jitka at 2017-05-31 20:02:21
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 24 GB (8%) free of 291 GB
Total RAM: 5815 MB (66% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:02:30, on 31.5.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18666)
Boot mode: Normal
Running processes:
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\jitka_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x47m2q499
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\jitka\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.111.2.158/activex/AxisCamControl.cab
O16 - DPF: {9F1C0B35-8230-4176-8B99-5C2485121A4E} (SNCActiveXViewerControl Class) - http://213.29.153.37:50000/program/SNCActiveXViewer.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10249 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
C:\Windows\system32\taskhost.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe" -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\taskeng.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\jitka\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Ad-Aware Update (Weekly) - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1426097062 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1450287372 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458837682 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{1888EE0E-E553-4023-AACB-D24BF91B3955} - C:\Windows\system32\pcalua.exe -a "C:\Users\jitka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTG3KAGM\Instaluj.cz - 33.exe" -d C:\Users\jitka\Desktop
C:\Windows\system32\tasks\{43A92CBD-74CA-411F-8169-C7990CEF262B} - "c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/7.0.0.102/cs/a ... age=tsMain
C:\Windows\system32\tasks\{7702BAFA-1984-4302-8F97-C37BC0DF0E52} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\{BF768279-FF71-4A4B-B69E-AC996DA45F2A} - C:\Windows\system32\pcalua.exe -a C:\Users\jitka\Documents\anniversed.exe -d C:\Windows\system32
C:\Windows\system32\tasks\{F93BE66F-F93C-474E-B1AD-C8730FB166FB} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-757923092-4267684374-3086449644-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
=========Mozilla firefox=========
ProfilePath - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default
prefs.js - "browser.startup.homepage" - "www.google.com"
prefs.js - "keyword.URL" - "https://www.google.com/search"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.5.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\addons.json
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
YouTube mp3 - extension - info@youtube-mp3.org
Mozilla Firefox hotfix - extension - firefox-hotfix@mozilla.org
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions.json
YouTube mp3 - extension - info@youtube-mp3.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\info@youtube-mp3.org.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\features\{5819bc43-bcc2-4e2d-8bae-abd0216f2846}\shield-recipe-client@mozilla.org.xpi
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.30
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 0 Adobe Acrobat 15.1.0.6
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.google.com/
default_search_provider.search_url:
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.3.31.232 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
Plugin 11,4,402,265 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\gcswf32.dll
Plugin 11,3,300,271 Shockwave Flash C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll
Plugin Remoting Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\pdf.dll
Plugin 10.1.4.38 Adobe Acrobat C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1.3.21.115 Google Update C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
Plugin 14.0.8081.0709_ship.wlx.w3m3 (ship) Windows Live® Photo Gallery C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 5.1.10411.0 Silverlight Plug-In c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
Homepage:
default_search_provider.search_url:
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={afdbddaa-5d3f-42ee-b79c-185a7020515b}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}]
"URL"=http://www.google.com/search?sourceid=i ... lz=1I7ACAW
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}]
"URL"=http://search.conduit.com/ResultsExt.as ... =CT2269050
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-10 1890088]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-06-10 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2010-06-11 861216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-05-29 213824]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-05-16 153136]
"cz.seznam.software.autoupdate"=C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-04-13 284696]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-05-31 20:02:21 ----D---- C:\rsit
2017-05-31 19:29:29 ----D---- C:\ProgramData\SWCUTemp
2017-05-30 21:46:31 ----HD---- C:\$AV_ASW
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wudriver.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuauclt.exe
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuapi.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\UtcResources.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\inseng.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\ie4uinit.exe
2017-05-29 21:23:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\wuwebv.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\urlmon.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\occache.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\iedkcs32.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\diagtrack.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-05-29 21:23:05 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-29 21:23:05 ----A---- C:\Windows\system32\dxtrans.dll
2017-05-29 21:23:04 ----A---- C:\Windows\system32\wucltux.dll
2017-05-29 21:23:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\msfeeds.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\iesetup.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\iertutil.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\vbscript.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\jsproxy.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\ieUnatt.exe
2017-05-29 21:22:59 ----A---- C:\Windows\system32\wuaueng.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpudd.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpcorets.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieui.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieframe.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\webcheck.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\wininet.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\msrating.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-05-29 21:22:54 ----A---- C:\Windows\system32\mshtml.dll
2017-05-29 21:22:51 ----A---- C:\Windows\system32\wmp.dll
2017-05-29 21:22:49 ----A---- C:\Windows\SYSWOW64\wmp.dll
2017-05-29 21:22:48 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\mf.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\FntCache.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\DWrite.dll
2017-05-29 21:22:47 ----A---- C:\Windows\SYSWOW64\mf.dll
2017-05-29 21:22:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-05-29 21:22:47 ----A---- C:\Windows\system32\blackbox.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups2.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\MSVidCtl.dll
2017-05-29 21:22:45 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\WsmSvc.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\drmv2clt.dll
2017-05-29 21:22:44 ----A---- C:\Windows\system32\win32k.sys
2017-05-29 21:22:44 ----A---- C:\Windows\system32\msxml3.dll
2017-05-29 21:22:43 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2017-05-29 21:22:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2017-05-29 21:22:42 ----A---- C:\Windows\SYSWOW64\msi.dll
2017-05-29 21:22:42 ----A---- C:\Windows\system32\msi.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ole32.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ntdll.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\scavengeui.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\quartz.dll
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-05-29 21:22:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2017-05-29 21:22:38 ----A---- C:\Windows\system32\lsasrv.dll
2017-05-29 21:22:37 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-05-29 21:22:37 ----A---- C:\Windows\system32\rpcrt4.dll
2017-05-29 21:22:36 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\win32spl.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\samsrv.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\msctf.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\audiosrv.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\schannel.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\kerberos.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\authui.dll
2017-05-29 21:22:35 ----A---- C:\Windows\HelpPane.exe
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\msctf.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\authui.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\IMJP10K.DLL
2017-05-29 21:22:34 ----A---- C:\Windows\system32\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\AUDIOKSE.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\atmfd.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\WebClnt.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\usp10.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\crypt32.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\advapi32.dll
2017-05-29 21:22:32 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\winload.exe
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drmmgrtn.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\user32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\oleaut32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\msv1_0.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\KernelBase.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\drivers\srv.sys
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2017-05-29 21:22:29 ----A---- C:\Windows\system32\qdvd.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\pla.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\kernel32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2017-05-29 21:22:29 ----A---- C:\Windows\system32\cryptui.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\clfs.sys
2017-05-29 21:22:28 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-05-29 21:22:28 ----A---- C:\Windows\system32\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\cng.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\cryptsvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\WsmAuto.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\wintrust.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\pcasvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2017-05-29 21:22:26 ----A---- C:\Windows\system32\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\rpchttp.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-05-29 21:22:25 ----A---- C:\Windows\system32\cdosys.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-05-29 21:22:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\msiexec.exe
2017-05-29 21:22:23 ----A---- C:\Windows\system32\EncDump.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\pla.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\ncrypt.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\mscms.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\gdi32.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\fastfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\exfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\consent.exe
2017-05-29 21:22:21 ----A---- C:\Windows\system32\certcli.dll
2017-05-29 21:22:21 ----A---- C:\Windows\system32\bcdedit.exe
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\netio.sys
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-05-29 21:22:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\system32\cryptnet.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\adtschema.dll
2017-05-29 21:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-05-29 21:22:15 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\wow64win.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-05-29 21:22:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-05-29 21:22:13 ----A---- C:\Windows\system32\drivers\bowser.sys
2017-05-29 21:22:13 ----A---- C:\Windows\system32\audiodg.exe
2017-05-29 21:22:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-05-29 21:22:12 ----A---- C:\Windows\system32\pdh.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\winsrv.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\mfps.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-05-29 21:22:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-05-29 21:22:08 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2017-05-29 21:22:07 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\wow64.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\cryptsp.dll
2017-05-29 21:22:04 ----A---- C:\Windows\system32\rpcss.dll
2017-05-29 21:22:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\wdigest.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\TSpkg.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\drivers\afd.sys
2017-05-29 21:22:03 ----A---- C:\Windows\system32\appinfo.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\SYSWOW64\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\srcore.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\drivers\tdx.sys
2017-05-29 21:21:59 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\input.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2017-05-29 21:21:56 ----A---- C:\Windows\system32\conhost.exe
2017-05-29 21:21:56 ----A---- C:\Windows\system32\bcrypt.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\appidsvc.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\icm32.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-05-29 21:21:55 ----A---- C:\Windows\system32\asycfilt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mfps.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\input.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2017-05-29 21:21:53 ----A---- C:\Windows\system32\msscp.dll
2017-05-29 21:21:53 ----A---- C:\Windows\system32\drivers\appid.sys
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\csrsrv.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\appidapi.dll
2017-05-29 21:21:51 ----A---- C:\Windows\system32\samlib.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\smss.exe
2017-05-29 21:21:50 ----A---- C:\Windows\system32\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\cryptbase.dll
2017-05-29 21:21:49 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\rstrui.exe
2017-05-29 21:21:49 ----A---- C:\Windows\system32\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\msihnd.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-05-29 21:21:47 ----A---- C:\Windows\system32\secur32.dll
2017-05-29 21:21:47 ----A---- C:\Windows\system32\lsass.exe
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\msscp.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\msnetobj.dll
2017-05-29 21:21:45 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\system32\srclient.dll
2017-05-29 21:21:43 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2017-05-29 21:21:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\pcadm.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\mfpmp.exe
2017-05-29 21:21:41 ----A---- C:\Windows\system32\credssp.dll
2017-05-29 21:21:39 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2017-05-29 21:21:38 ----A---- C:\Windows\system32\rrinstaller.exe
2017-05-29 21:21:37 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:36 ----A---- C:\Windows\system32\cdd.dll
2017-05-29 21:21:35 ----A---- C:\Windows\SYSWOW64\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcawrk.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcalua.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\atmlib.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\lpk.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\sspisrv.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\msmmsp.dll
2017-05-29 21:21:32 ----A---- C:\Windows\system32\plasrv.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\lpk.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\wow64cpu.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\spwmp.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\comcat.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\dxmasf.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\apisetschema.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\user.exe
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\mferror.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\pcaevts.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\INETRES.dll
2017-05-29 21:21:28 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\mferror.dll
2017-05-29 21:21:27 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-05-29 21:21:27 ----A---- C:\Windows\system32\msxml3r.dll
2017-05-29 20:21:13 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2017-05-29 19:59:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbhub.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2017-05-29 19:59:39 ----A---- C:\Windows\system32\drivers\usbd.sys
2017-05-29 19:59:25 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-05-29 19:59:25 ----A---- C:\Windows\system32\shell32.dll
2017-05-29 19:59:24 ----A---- C:\Windows\SYSWOW64\explorer.exe
2017-05-29 19:59:24 ----A---- C:\Windows\explorer.exe
2017-05-29 19:59:23 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-05-29 19:59:23 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\invagent.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\generaltel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\devinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-05-29 19:59:12 ----A---- C:\Windows\system32\centel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\appraiser.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aepic.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aeinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\acmigration.dll
2017-05-29 19:58:48 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2017-05-29 19:58:48 ----A---- C:\Windows\system32\poqexec.exe
2017-05-29 19:31:41 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-05-31 20:02:29 ----D---- C:\Program Files\trend micro
2017-05-31 20:02:05 ----D---- C:\Windows\Temp
2017-05-31 19:58:24 ----D---- C:\Windows\system32\config
2017-05-31 19:43:53 ----D---- C:\Windows\system32\Tasks
2017-05-31 19:36:08 ----D---- C:\Program Files (x86)\Opera
2017-05-31 19:35:00 ----D---- C:\Users\jitka\AppData\Roaming\Seznam.cz
2017-05-31 19:34:13 ----D---- C:\Windows\system32\Macromed
2017-05-31 19:29:29 ----HD---- C:\ProgramData
2017-05-31 19:28:19 ----A---- C:\Windows\SYSWOW64\log.txt
2017-05-30 23:21:43 ----D---- C:\Windows\SysWOW64
2017-05-30 23:21:43 ----D---- C:\Windows\System32
2017-05-30 23:21:14 ----SHD---- C:\System Volume Information
2017-05-30 23:11:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-05-30 21:57:22 ----D---- C:\Windows\system32\drivers
2017-05-30 21:56:40 ----D---- C:\Windows\winsxs
2017-05-30 21:30:50 ----D---- C:\Windows\Microsoft.NET
2017-05-30 21:27:01 ----RSD---- C:\Windows\assembly
2017-05-30 21:22:22 ----D---- C:\Windows\inf
2017-05-30 21:22:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-05-30 21:05:55 ----D---- C:\Program Files\Internet Explorer
2017-05-30 21:05:53 ----D---- C:\Program Files\Windows Media Player
2017-05-30 21:05:53 ----D---- C:\Program Files\DVD Maker
2017-05-30 21:05:52 ----D---- C:\Program Files (x86)\Internet Explorer
2017-05-30 21:05:51 ----D---- C:\Windows\SYSWOW64\migration
2017-05-30 21:05:51 ----D---- C:\Program Files (x86)\Windows Media Player
2017-05-30 21:05:50 ----D---- C:\Windows\SYSWOW64\Dism
2017-05-30 21:05:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-05-30 21:05:47 ----D---- C:\Windows\SYSWOW64\en-US
2017-05-30 21:05:37 ----D---- C:\Windows\PolicyDefinitions
2017-05-30 21:05:36 ----D---- C:\Windows\system32\migration
2017-05-30 21:05:36 ----D---- C:\Windows\system32\Dism
2017-05-30 21:05:35 ----D---- C:\Windows\system32\cs-CZ
2017-05-30 21:05:33 ----D---- C:\Windows\system32\en-US
2017-05-30 21:05:20 ----D---- C:\Windows\AppPatch
2017-05-30 21:05:20 ----AD---- C:\Windows
2017-05-30 21:05:16 ----D---- C:\Windows\system32\Boot
2017-05-30 20:55:45 ----SHD---- C:\Windows\Installer
2017-05-30 20:55:41 ----SHD---- C:\Config.Msi
2017-05-30 20:51:50 ----RD---- C:\Program Files (x86)
2017-05-30 20:25:51 ----D---- C:\Windows\Logs
2017-05-30 20:17:17 ----D---- C:\Program Files\Windows Journal
2017-05-30 20:17:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2017-05-30 20:17:08 ----D---- C:\Windows\cs-CZ
2017-05-30 20:17:07 ----SD---- C:\Windows\system32\CompatTel
2017-05-30 20:17:06 ----D---- C:\Windows\system32\appraiser
2017-05-30 20:17:02 ----D---- C:\Windows\system32\DriverStore
2017-05-30 20:16:11 ----D---- C:\Program Files\Microsoft Silverlight
2017-05-30 20:16:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wfp
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wbem
2017-05-30 05:16:26 ----D---- C:\Windows\system32\NDF
2017-05-30 05:16:24 ----D---- C:\Windows\system32\drivers\UMDF
2017-05-30 05:16:24 ----D---- C:\Users\jitka\AppData\Roaming\vlc
2017-05-30 05:16:06 ----D---- C:\Program Files
2017-05-30 05:15:49 ----D---- C:\Program Files (x86)\AcerCrystalEye
2017-05-30 05:15:10 ----D---- C:\Windows\registration
2017-05-30 05:12:27 ----D---- C:\ProgramData\AVAST Software
2017-05-30 05:09:11 ----D---- C:\Program Files (x86)\Google
2017-05-29 21:35:26 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-05-29 21:31:59 ----D---- C:\Windows\system32\catroot2
2017-05-29 21:28:19 ----D---- C:\Windows\system32\MRT
2017-05-29 21:25:30 ----D---- C:\Windows\debug
2017-05-29 21:25:10 ----AC---- C:\Windows\system32\MRT.exe
2017-05-29 20:31:35 ----D---- C:\Windows\Tasks
2017-05-29 20:31:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-05-29 20:31:19 ----D---- C:\Windows\SYSWOW64\Macromed
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-05-29 190256]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-05-29 334576]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-05-29 49016]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-05-29 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-05-29 339696]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-13 540696]
R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2009-03-09 69664]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-05-29 311808]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-05-29 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-05-29 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-05-29 1007160]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-05-29 569192]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-05-29 128648]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-05-29 158880]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-06-22 2399848]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-28 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-12-10 301104]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-04-28 17408]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-05-29 38296]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-06-03 4171328]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-06-25 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-06-25 102952]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-06-25 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-06-25 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-06-25 21544]
S3 netr28ux;RT2870 USB Wireless LAN Card Driver pro systém Windows Vista; C:\Windows\system32\DRIVERS\netr28ux.sys [2009-06-10 867328]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-06-17 246376]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-05-29 263304]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-25 952096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-06-11 868896]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-05-29 7346208]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-16 271920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-03-26 105096]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-03-26 125064]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-29 271864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-02-09 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-04-16 116224]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-11-24 172488]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-04-13 792112]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-26 51320]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
-----------------EOF-----------------
Run by jitka at 2017-05-31 20:02:21
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 24 GB (8%) free of 291 GB
Total RAM: 5815 MB (66% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:02:30, on 31.5.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18666)
Boot mode: Normal
Running processes:
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\jitka_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x47m2q499
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\jitka\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.111.2.158/activex/AxisCamControl.cab
O16 - DPF: {9F1C0B35-8230-4176-8B99-5C2485121A4E} (SNCActiveXViewerControl Class) - http://213.29.153.37:50000/program/SNCActiveXViewer.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10249 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
C:\Windows\system32\taskhost.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe" -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\taskeng.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\jitka\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Ad-Aware Update (Weekly) - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1426097062 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1450287372 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458837682 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{1888EE0E-E553-4023-AACB-D24BF91B3955} - C:\Windows\system32\pcalua.exe -a "C:\Users\jitka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTG3KAGM\Instaluj.cz - 33.exe" -d C:\Users\jitka\Desktop
C:\Windows\system32\tasks\{43A92CBD-74CA-411F-8169-C7990CEF262B} - "c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/7.0.0.102/cs/a ... age=tsMain
C:\Windows\system32\tasks\{7702BAFA-1984-4302-8F97-C37BC0DF0E52} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\{BF768279-FF71-4A4B-B69E-AC996DA45F2A} - C:\Windows\system32\pcalua.exe -a C:\Users\jitka\Documents\anniversed.exe -d C:\Windows\system32
C:\Windows\system32\tasks\{F93BE66F-F93C-474E-B1AD-C8730FB166FB} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-757923092-4267684374-3086449644-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
=========Mozilla firefox=========
ProfilePath - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default
prefs.js - "browser.startup.homepage" - "www.google.com"
prefs.js - "keyword.URL" - "https://www.google.com/search"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.5.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\addons.json
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
YouTube mp3 - extension - info@youtube-mp3.org
Mozilla Firefox hotfix - extension - firefox-hotfix@mozilla.org
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions.json
YouTube mp3 - extension - info@youtube-mp3.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\info@youtube-mp3.org.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\features\{5819bc43-bcc2-4e2d-8bae-abd0216f2846}\shield-recipe-client@mozilla.org.xpi
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.30
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 0 Adobe Acrobat 15.1.0.6
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.google.com/
default_search_provider.search_url:
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.3.31.232 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
Plugin 11,4,402,265 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\gcswf32.dll
Plugin 11,3,300,271 Shockwave Flash C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll
Plugin Remoting Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\pdf.dll
Plugin 10.1.4.38 Adobe Acrobat C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1.3.21.115 Google Update C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
Plugin 14.0.8081.0709_ship.wlx.w3m3 (ship) Windows Live® Photo Gallery C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 5.1.10411.0 Silverlight Plug-In c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
Homepage:
default_search_provider.search_url:
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={afdbddaa-5d3f-42ee-b79c-185a7020515b}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}]
"URL"=http://www.google.com/search?sourceid=i ... lz=1I7ACAW
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}]
"URL"=http://search.conduit.com/ResultsExt.as ... =CT2269050
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-10 1890088]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-06-10 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2010-06-11 861216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-05-29 213824]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-05-16 153136]
"cz.seznam.software.autoupdate"=C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-04-13 284696]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-05-31 20:02:21 ----D---- C:\rsit
2017-05-31 19:29:29 ----D---- C:\ProgramData\SWCUTemp
2017-05-30 21:46:31 ----HD---- C:\$AV_ASW
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wudriver.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuauclt.exe
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuapi.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\UtcResources.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\inseng.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\ie4uinit.exe
2017-05-29 21:23:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\wuwebv.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\urlmon.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\occache.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\iedkcs32.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\diagtrack.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-05-29 21:23:05 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-29 21:23:05 ----A---- C:\Windows\system32\dxtrans.dll
2017-05-29 21:23:04 ----A---- C:\Windows\system32\wucltux.dll
2017-05-29 21:23:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\msfeeds.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\iesetup.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\iertutil.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\vbscript.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\jsproxy.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\ieUnatt.exe
2017-05-29 21:22:59 ----A---- C:\Windows\system32\wuaueng.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpudd.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpcorets.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieui.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieframe.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\webcheck.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\wininet.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\msrating.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-05-29 21:22:54 ----A---- C:\Windows\system32\mshtml.dll
2017-05-29 21:22:51 ----A---- C:\Windows\system32\wmp.dll
2017-05-29 21:22:49 ----A---- C:\Windows\SYSWOW64\wmp.dll
2017-05-29 21:22:48 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\mf.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\FntCache.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\DWrite.dll
2017-05-29 21:22:47 ----A---- C:\Windows\SYSWOW64\mf.dll
2017-05-29 21:22:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-05-29 21:22:47 ----A---- C:\Windows\system32\blackbox.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups2.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\MSVidCtl.dll
2017-05-29 21:22:45 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\WsmSvc.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\drmv2clt.dll
2017-05-29 21:22:44 ----A---- C:\Windows\system32\win32k.sys
2017-05-29 21:22:44 ----A---- C:\Windows\system32\msxml3.dll
2017-05-29 21:22:43 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2017-05-29 21:22:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2017-05-29 21:22:42 ----A---- C:\Windows\SYSWOW64\msi.dll
2017-05-29 21:22:42 ----A---- C:\Windows\system32\msi.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ole32.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ntdll.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\scavengeui.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\quartz.dll
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-05-29 21:22:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2017-05-29 21:22:38 ----A---- C:\Windows\system32\lsasrv.dll
2017-05-29 21:22:37 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-05-29 21:22:37 ----A---- C:\Windows\system32\rpcrt4.dll
2017-05-29 21:22:36 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\win32spl.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\samsrv.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\msctf.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\audiosrv.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\schannel.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\kerberos.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\authui.dll
2017-05-29 21:22:35 ----A---- C:\Windows\HelpPane.exe
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\msctf.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\authui.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\IMJP10K.DLL
2017-05-29 21:22:34 ----A---- C:\Windows\system32\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\AUDIOKSE.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\atmfd.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\WebClnt.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\usp10.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\crypt32.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\advapi32.dll
2017-05-29 21:22:32 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\winload.exe
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drmmgrtn.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\user32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\oleaut32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\msv1_0.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\KernelBase.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\drivers\srv.sys
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2017-05-29 21:22:29 ----A---- C:\Windows\system32\qdvd.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\pla.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\kernel32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2017-05-29 21:22:29 ----A---- C:\Windows\system32\cryptui.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\clfs.sys
2017-05-29 21:22:28 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-05-29 21:22:28 ----A---- C:\Windows\system32\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\cng.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\cryptsvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\WsmAuto.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\wintrust.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\pcasvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2017-05-29 21:22:26 ----A---- C:\Windows\system32\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\rpchttp.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-05-29 21:22:25 ----A---- C:\Windows\system32\cdosys.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-05-29 21:22:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\msiexec.exe
2017-05-29 21:22:23 ----A---- C:\Windows\system32\EncDump.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\pla.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\ncrypt.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\mscms.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\gdi32.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\fastfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\exfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\consent.exe
2017-05-29 21:22:21 ----A---- C:\Windows\system32\certcli.dll
2017-05-29 21:22:21 ----A---- C:\Windows\system32\bcdedit.exe
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\netio.sys
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-05-29 21:22:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\system32\cryptnet.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\adtschema.dll
2017-05-29 21:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-05-29 21:22:15 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\wow64win.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-05-29 21:22:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-05-29 21:22:13 ----A---- C:\Windows\system32\drivers\bowser.sys
2017-05-29 21:22:13 ----A---- C:\Windows\system32\audiodg.exe
2017-05-29 21:22:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-05-29 21:22:12 ----A---- C:\Windows\system32\pdh.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\winsrv.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\mfps.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-05-29 21:22:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-05-29 21:22:08 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2017-05-29 21:22:07 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\wow64.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\cryptsp.dll
2017-05-29 21:22:04 ----A---- C:\Windows\system32\rpcss.dll
2017-05-29 21:22:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\wdigest.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\TSpkg.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\drivers\afd.sys
2017-05-29 21:22:03 ----A---- C:\Windows\system32\appinfo.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\SYSWOW64\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\srcore.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\drivers\tdx.sys
2017-05-29 21:21:59 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\input.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2017-05-29 21:21:56 ----A---- C:\Windows\system32\conhost.exe
2017-05-29 21:21:56 ----A---- C:\Windows\system32\bcrypt.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\appidsvc.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\icm32.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-05-29 21:21:55 ----A---- C:\Windows\system32\asycfilt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mfps.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\input.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2017-05-29 21:21:53 ----A---- C:\Windows\system32\msscp.dll
2017-05-29 21:21:53 ----A---- C:\Windows\system32\drivers\appid.sys
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\csrsrv.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\appidapi.dll
2017-05-29 21:21:51 ----A---- C:\Windows\system32\samlib.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\smss.exe
2017-05-29 21:21:50 ----A---- C:\Windows\system32\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\cryptbase.dll
2017-05-29 21:21:49 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\rstrui.exe
2017-05-29 21:21:49 ----A---- C:\Windows\system32\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\msihnd.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-05-29 21:21:47 ----A---- C:\Windows\system32\secur32.dll
2017-05-29 21:21:47 ----A---- C:\Windows\system32\lsass.exe
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\msscp.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\msnetobj.dll
2017-05-29 21:21:45 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\system32\srclient.dll
2017-05-29 21:21:43 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2017-05-29 21:21:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\pcadm.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\mfpmp.exe
2017-05-29 21:21:41 ----A---- C:\Windows\system32\credssp.dll
2017-05-29 21:21:39 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2017-05-29 21:21:38 ----A---- C:\Windows\system32\rrinstaller.exe
2017-05-29 21:21:37 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:36 ----A---- C:\Windows\system32\cdd.dll
2017-05-29 21:21:35 ----A---- C:\Windows\SYSWOW64\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcawrk.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcalua.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\atmlib.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\lpk.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\sspisrv.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\msmmsp.dll
2017-05-29 21:21:32 ----A---- C:\Windows\system32\plasrv.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\lpk.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\wow64cpu.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\spwmp.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\comcat.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\dxmasf.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\apisetschema.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\user.exe
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\mferror.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\pcaevts.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\INETRES.dll
2017-05-29 21:21:28 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\mferror.dll
2017-05-29 21:21:27 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-05-29 21:21:27 ----A---- C:\Windows\system32\msxml3r.dll
2017-05-29 20:21:13 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2017-05-29 19:59:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbhub.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2017-05-29 19:59:39 ----A---- C:\Windows\system32\drivers\usbd.sys
2017-05-29 19:59:25 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-05-29 19:59:25 ----A---- C:\Windows\system32\shell32.dll
2017-05-29 19:59:24 ----A---- C:\Windows\SYSWOW64\explorer.exe
2017-05-29 19:59:24 ----A---- C:\Windows\explorer.exe
2017-05-29 19:59:23 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-05-29 19:59:23 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\invagent.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\generaltel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\devinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-05-29 19:59:12 ----A---- C:\Windows\system32\centel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\appraiser.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aepic.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aeinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\acmigration.dll
2017-05-29 19:58:48 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2017-05-29 19:58:48 ----A---- C:\Windows\system32\poqexec.exe
2017-05-29 19:31:41 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-05-31 20:02:29 ----D---- C:\Program Files\trend micro
2017-05-31 20:02:05 ----D---- C:\Windows\Temp
2017-05-31 19:58:24 ----D---- C:\Windows\system32\config
2017-05-31 19:43:53 ----D---- C:\Windows\system32\Tasks
2017-05-31 19:36:08 ----D---- C:\Program Files (x86)\Opera
2017-05-31 19:35:00 ----D---- C:\Users\jitka\AppData\Roaming\Seznam.cz
2017-05-31 19:34:13 ----D---- C:\Windows\system32\Macromed
2017-05-31 19:29:29 ----HD---- C:\ProgramData
2017-05-31 19:28:19 ----A---- C:\Windows\SYSWOW64\log.txt
2017-05-30 23:21:43 ----D---- C:\Windows\SysWOW64
2017-05-30 23:21:43 ----D---- C:\Windows\System32
2017-05-30 23:21:14 ----SHD---- C:\System Volume Information
2017-05-30 23:11:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-05-30 21:57:22 ----D---- C:\Windows\system32\drivers
2017-05-30 21:56:40 ----D---- C:\Windows\winsxs
2017-05-30 21:30:50 ----D---- C:\Windows\Microsoft.NET
2017-05-30 21:27:01 ----RSD---- C:\Windows\assembly
2017-05-30 21:22:22 ----D---- C:\Windows\inf
2017-05-30 21:22:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-05-30 21:05:55 ----D---- C:\Program Files\Internet Explorer
2017-05-30 21:05:53 ----D---- C:\Program Files\Windows Media Player
2017-05-30 21:05:53 ----D---- C:\Program Files\DVD Maker
2017-05-30 21:05:52 ----D---- C:\Program Files (x86)\Internet Explorer
2017-05-30 21:05:51 ----D---- C:\Windows\SYSWOW64\migration
2017-05-30 21:05:51 ----D---- C:\Program Files (x86)\Windows Media Player
2017-05-30 21:05:50 ----D---- C:\Windows\SYSWOW64\Dism
2017-05-30 21:05:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-05-30 21:05:47 ----D---- C:\Windows\SYSWOW64\en-US
2017-05-30 21:05:37 ----D---- C:\Windows\PolicyDefinitions
2017-05-30 21:05:36 ----D---- C:\Windows\system32\migration
2017-05-30 21:05:36 ----D---- C:\Windows\system32\Dism
2017-05-30 21:05:35 ----D---- C:\Windows\system32\cs-CZ
2017-05-30 21:05:33 ----D---- C:\Windows\system32\en-US
2017-05-30 21:05:20 ----D---- C:\Windows\AppPatch
2017-05-30 21:05:20 ----AD---- C:\Windows
2017-05-30 21:05:16 ----D---- C:\Windows\system32\Boot
2017-05-30 20:55:45 ----SHD---- C:\Windows\Installer
2017-05-30 20:55:41 ----SHD---- C:\Config.Msi
2017-05-30 20:51:50 ----RD---- C:\Program Files (x86)
2017-05-30 20:25:51 ----D---- C:\Windows\Logs
2017-05-30 20:17:17 ----D---- C:\Program Files\Windows Journal
2017-05-30 20:17:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2017-05-30 20:17:08 ----D---- C:\Windows\cs-CZ
2017-05-30 20:17:07 ----SD---- C:\Windows\system32\CompatTel
2017-05-30 20:17:06 ----D---- C:\Windows\system32\appraiser
2017-05-30 20:17:02 ----D---- C:\Windows\system32\DriverStore
2017-05-30 20:16:11 ----D---- C:\Program Files\Microsoft Silverlight
2017-05-30 20:16:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wfp
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wbem
2017-05-30 05:16:26 ----D---- C:\Windows\system32\NDF
2017-05-30 05:16:24 ----D---- C:\Windows\system32\drivers\UMDF
2017-05-30 05:16:24 ----D---- C:\Users\jitka\AppData\Roaming\vlc
2017-05-30 05:16:06 ----D---- C:\Program Files
2017-05-30 05:15:49 ----D---- C:\Program Files (x86)\AcerCrystalEye
2017-05-30 05:15:10 ----D---- C:\Windows\registration
2017-05-30 05:12:27 ----D---- C:\ProgramData\AVAST Software
2017-05-30 05:09:11 ----D---- C:\Program Files (x86)\Google
2017-05-29 21:35:26 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-05-29 21:31:59 ----D---- C:\Windows\system32\catroot2
2017-05-29 21:28:19 ----D---- C:\Windows\system32\MRT
2017-05-29 21:25:30 ----D---- C:\Windows\debug
2017-05-29 21:25:10 ----AC---- C:\Windows\system32\MRT.exe
2017-05-29 20:31:35 ----D---- C:\Windows\Tasks
2017-05-29 20:31:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-05-29 20:31:19 ----D---- C:\Windows\SYSWOW64\Macromed
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-05-29 190256]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-05-29 334576]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-05-29 49016]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-05-29 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-05-29 339696]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-13 540696]
R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2009-03-09 69664]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-05-29 311808]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-05-29 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-05-29 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-05-29 1007160]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-05-29 569192]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-05-29 128648]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-05-29 158880]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-06-22 2399848]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-28 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-12-10 301104]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-04-28 17408]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-05-29 38296]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-06-03 4171328]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-06-25 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-06-25 102952]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-06-25 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-06-25 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-06-25 21544]
S3 netr28ux;RT2870 USB Wireless LAN Card Driver pro systém Windows Vista; C:\Windows\system32\DRIVERS\netr28ux.sys [2009-06-10 867328]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-06-17 246376]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-05-29 263304]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-25 952096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-06-11 868896]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-05-29 7346208]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-16 271920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-03-26 105096]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-03-26 125064]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-29 271864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-02-09 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-04-16 116224]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-11-24 172488]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-04-13 792112]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-26 51320]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - moc děkuji
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - moc děkuji
# AdwCleaner v6.047 - Log vytvořen 01/06/2017 v 18:35:29
# Aktualizováno dne 19/05/2017 z Malwarebytes
# Databáze : 2017-05-31.2 [Server]
# Operační systém : Windows 7 Home Premium Service Pack 1 (X64)
# Uživatelské jméno : jitka - JITKA-PC
# Spuštěno z : C:\Users\jitka\Desktop\adwcleaner_6.047.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka smazána: C:\Users\jitka\AppData\LocalLow\Conduit
[-] Složka smazána: C:\Users\jitka\AppData\Roaming\dvdvideosoftiehelpers
[-] Složka smazána: C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.Protector
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[-] Klíč smazán: HKU\S-1-5-21-757923092-4267684374-3086449644-1000\Software\Classes\TypeLib\{157B1AA6-3E5C-404A-9118-C1D91F537040}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[#] Klíč smazán po restartu: HKCU\Software\Classes\TypeLib\{157B1AA6-3E5C-404A-9118-C1D91F537040}
[-] Klíč smazán: HKU\S-1-5-21-757923092-4267684374-3086449644-1000\Software\Appscion
[#] Klíč smazán po restartu: HKCU\Software\Appscion
[-] Klíč smazán: HKLM\SOFTWARE\AskTBar
[#] Klíč smazán po restartu: [x64] HKCU\Software\Appscion
[-] Klíč smazán: HKU\S-1-5-21-757923092-4267684374-3086449644-1000\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[#] Klíč smazán po restartu: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Klíč smazán: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Data obnovena: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[#] Klíč smazán po restartu: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
***** [ Prohlížeče ] *****
[-] Firefox předvolby vyčištěny: "extensions.fvd_single.__surfcanyon_disable_time" - "1413044006080"
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [2623 Bajty] - [15/12/2015 19:23:08]
C:\AdwCleaner\AdwCleaner[C2].txt - [3314 Bajty] - [01/06/2017 18:35:29]
C:\AdwCleaner\AdwCleaner[S1].txt - [2389 Bajty] - [15/12/2015 19:21:36]
C:\AdwCleaner\AdwCleaner[S2].txt - [3641 Bajty] - [01/06/2017 18:34:53]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [3533 Bajty] ##########
# Aktualizováno dne 19/05/2017 z Malwarebytes
# Databáze : 2017-05-31.2 [Server]
# Operační systém : Windows 7 Home Premium Service Pack 1 (X64)
# Uživatelské jméno : jitka - JITKA-PC
# Spuštěno z : C:\Users\jitka\Desktop\adwcleaner_6.047.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka smazána: C:\Users\jitka\AppData\LocalLow\Conduit
[-] Složka smazána: C:\Users\jitka\AppData\Roaming\dvdvideosoftiehelpers
[-] Složka smazána: C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.Protector
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[-] Klíč smazán: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
[-] Klíč smazán: HKU\S-1-5-21-757923092-4267684374-3086449644-1000\Software\Classes\TypeLib\{157B1AA6-3E5C-404A-9118-C1D91F537040}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[#] Klíč smazán po restartu: HKCU\Software\Classes\TypeLib\{157B1AA6-3E5C-404A-9118-C1D91F537040}
[-] Klíč smazán: HKU\S-1-5-21-757923092-4267684374-3086449644-1000\Software\Appscion
[#] Klíč smazán po restartu: HKCU\Software\Appscion
[-] Klíč smazán: HKLM\SOFTWARE\AskTBar
[#] Klíč smazán po restartu: [x64] HKCU\Software\Appscion
[-] Klíč smazán: HKU\S-1-5-21-757923092-4267684374-3086449644-1000\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[#] Klíč smazán po restartu: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Klíč smazán: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Data obnovena: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[#] Klíč smazán po restartu: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
***** [ Prohlížeče ] *****
[-] Firefox předvolby vyčištěny: "extensions.fvd_single.__surfcanyon_disable_time" - "1413044006080"
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [2623 Bajty] - [15/12/2015 19:23:08]
C:\AdwCleaner\AdwCleaner[C2].txt - [3314 Bajty] - [01/06/2017 18:35:29]
C:\AdwCleaner\AdwCleaner[S1].txt - [2389 Bajty] - [15/12/2015 19:21:36]
C:\AdwCleaner\AdwCleaner[S2].txt - [3641 Bajty] - [01/06/2017 18:34:53]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [3533 Bajty] ##########
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - moc děkuji
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - moc děkuji
Zasílám log a v příloze scan hlášky co se objevila na obrazovce.
Logfile of random's system information tool 1.16 (written by random/random)
Run by jitka at 2017-06-01 19:00:19
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 25 GB (9%) free of 291 GB
Total RAM: 5815 MB (68% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:00:20, on 1.6.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18666)
Boot mode: Normal
Running processes:
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\jitka_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x47m2q499
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\jitka\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.111.2.158/activex/AxisCamControl.cab
O16 - DPF: {9F1C0B35-8230-4176-8B99-5C2485121A4E} (SNCActiveXViewerControl Class) - http://213.29.153.37:50000/program/SNCActiveXViewer.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10248 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
C:\Windows\system32\taskhost.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe" -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\taskeng.exe
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\jitka\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Ad-Aware Update (Weekly) - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1426097062 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1450287372 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458837682 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{1888EE0E-E553-4023-AACB-D24BF91B3955} - C:\Windows\system32\pcalua.exe -a "C:\Users\jitka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTG3KAGM\Instaluj.cz - 33.exe" -d C:\Users\jitka\Desktop
C:\Windows\system32\tasks\{43A92CBD-74CA-411F-8169-C7990CEF262B} - "c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/7.0.0.102/cs/a ... age=tsMain
C:\Windows\system32\tasks\{7702BAFA-1984-4302-8F97-C37BC0DF0E52} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\{BF768279-FF71-4A4B-B69E-AC996DA45F2A} - C:\Windows\system32\pcalua.exe -a C:\Users\jitka\Documents\anniversed.exe -d C:\Windows\system32
C:\Windows\system32\tasks\{F93BE66F-F93C-474E-B1AD-C8730FB166FB} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-757923092-4267684374-3086449644-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
=========Mozilla firefox=========
ProfilePath - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default
prefs.js - "browser.startup.homepage" - "www.google.com"
prefs.js - "keyword.URL" - "https://www.google.com/search"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.5.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\addons.json
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
YouTube mp3 - extension - info@youtube-mp3.org
Mozilla Firefox hotfix - extension - firefox-hotfix@mozilla.org
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions.json
YouTube mp3 - extension - info@youtube-mp3.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\info@youtube-mp3.org.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\features\{5819bc43-bcc2-4e2d-8bae-abd0216f2846}\shield-recipe-client@mozilla.org.xpi
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.30
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 0 Adobe Acrobat 15.1.0.6
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.google.com/
default_search_provider.search_url:
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.3.31.232 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
Plugin 11,4,402,265 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\gcswf32.dll
Plugin 11,3,300,271 Shockwave Flash C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll
Plugin Remoting Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\pdf.dll
Plugin 10.1.4.38 Adobe Acrobat C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1.3.21.115 Google Update C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
Plugin 14.0.8081.0709_ship.wlx.w3m3 (ship) Windows Live® Photo Gallery C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 5.1.10411.0 Silverlight Plug-In c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
Homepage:
default_search_provider.search_url:
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}]
"URL"=http://www.google.com/search?sourceid=i ... lz=1I7ACAW
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-10 1890088]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-06-10 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2010-06-11 861216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-05-29 213824]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-05-16 153136]
"cz.seznam.software.autoupdate"=C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-04-13 284696]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-06-01 18:39:31 ----D---- C:\ProgramData\SWCUTemp
2017-05-31 20:02:21 ----D---- C:\rsit
2017-05-30 21:46:31 ----HD---- C:\$AV_ASW
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wudriver.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuauclt.exe
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuapi.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\UtcResources.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\inseng.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\ie4uinit.exe
2017-05-29 21:23:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\wuwebv.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\urlmon.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\occache.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\iedkcs32.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\diagtrack.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-05-29 21:23:05 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-29 21:23:05 ----A---- C:\Windows\system32\dxtrans.dll
2017-05-29 21:23:04 ----A---- C:\Windows\system32\wucltux.dll
2017-05-29 21:23:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\msfeeds.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\iesetup.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\iertutil.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\vbscript.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\jsproxy.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\ieUnatt.exe
2017-05-29 21:22:59 ----A---- C:\Windows\system32\wuaueng.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpudd.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpcorets.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieui.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieframe.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\webcheck.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\wininet.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\msrating.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-05-29 21:22:54 ----A---- C:\Windows\system32\mshtml.dll
2017-05-29 21:22:51 ----A---- C:\Windows\system32\wmp.dll
2017-05-29 21:22:49 ----A---- C:\Windows\SYSWOW64\wmp.dll
2017-05-29 21:22:48 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\mf.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\FntCache.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\DWrite.dll
2017-05-29 21:22:47 ----A---- C:\Windows\SYSWOW64\mf.dll
2017-05-29 21:22:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-05-29 21:22:47 ----A---- C:\Windows\system32\blackbox.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups2.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\MSVidCtl.dll
2017-05-29 21:22:45 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\WsmSvc.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\drmv2clt.dll
2017-05-29 21:22:44 ----A---- C:\Windows\system32\win32k.sys
2017-05-29 21:22:44 ----A---- C:\Windows\system32\msxml3.dll
2017-05-29 21:22:43 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2017-05-29 21:22:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2017-05-29 21:22:42 ----A---- C:\Windows\SYSWOW64\msi.dll
2017-05-29 21:22:42 ----A---- C:\Windows\system32\msi.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ole32.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ntdll.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\scavengeui.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\quartz.dll
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-05-29 21:22:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2017-05-29 21:22:38 ----A---- C:\Windows\system32\lsasrv.dll
2017-05-29 21:22:37 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-05-29 21:22:37 ----A---- C:\Windows\system32\rpcrt4.dll
2017-05-29 21:22:36 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\win32spl.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\samsrv.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\msctf.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\audiosrv.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\schannel.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\kerberos.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\authui.dll
2017-05-29 21:22:35 ----A---- C:\Windows\HelpPane.exe
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\msctf.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\authui.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\IMJP10K.DLL
2017-05-29 21:22:34 ----A---- C:\Windows\system32\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\AUDIOKSE.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\atmfd.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\WebClnt.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\usp10.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\crypt32.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\advapi32.dll
2017-05-29 21:22:32 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\winload.exe
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drmmgrtn.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\user32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\oleaut32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\msv1_0.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\KernelBase.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\drivers\srv.sys
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2017-05-29 21:22:29 ----A---- C:\Windows\system32\qdvd.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\pla.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\kernel32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2017-05-29 21:22:29 ----A---- C:\Windows\system32\cryptui.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\clfs.sys
2017-05-29 21:22:28 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-05-29 21:22:28 ----A---- C:\Windows\system32\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\cng.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\cryptsvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\WsmAuto.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\wintrust.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\pcasvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2017-05-29 21:22:26 ----A---- C:\Windows\system32\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\rpchttp.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-05-29 21:22:25 ----A---- C:\Windows\system32\cdosys.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-05-29 21:22:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\msiexec.exe
2017-05-29 21:22:23 ----A---- C:\Windows\system32\EncDump.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\pla.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\ncrypt.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\mscms.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\gdi32.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\fastfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\exfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\consent.exe
2017-05-29 21:22:21 ----A---- C:\Windows\system32\certcli.dll
2017-05-29 21:22:21 ----A---- C:\Windows\system32\bcdedit.exe
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\netio.sys
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-05-29 21:22:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\system32\cryptnet.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\adtschema.dll
2017-05-29 21:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-05-29 21:22:15 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\wow64win.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-05-29 21:22:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-05-29 21:22:13 ----A---- C:\Windows\system32\drivers\bowser.sys
2017-05-29 21:22:13 ----A---- C:\Windows\system32\audiodg.exe
2017-05-29 21:22:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-05-29 21:22:12 ----A---- C:\Windows\system32\pdh.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\winsrv.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\mfps.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-05-29 21:22:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-05-29 21:22:08 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2017-05-29 21:22:07 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\wow64.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\cryptsp.dll
2017-05-29 21:22:04 ----A---- C:\Windows\system32\rpcss.dll
2017-05-29 21:22:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\wdigest.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\TSpkg.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\drivers\afd.sys
2017-05-29 21:22:03 ----A---- C:\Windows\system32\appinfo.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\SYSWOW64\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\srcore.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\drivers\tdx.sys
2017-05-29 21:21:59 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\input.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2017-05-29 21:21:56 ----A---- C:\Windows\system32\conhost.exe
2017-05-29 21:21:56 ----A---- C:\Windows\system32\bcrypt.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\appidsvc.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\icm32.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-05-29 21:21:55 ----A---- C:\Windows\system32\asycfilt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mfps.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\input.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2017-05-29 21:21:53 ----A---- C:\Windows\system32\msscp.dll
2017-05-29 21:21:53 ----A---- C:\Windows\system32\drivers\appid.sys
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\csrsrv.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\appidapi.dll
2017-05-29 21:21:51 ----A---- C:\Windows\system32\samlib.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\smss.exe
2017-05-29 21:21:50 ----A---- C:\Windows\system32\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\cryptbase.dll
2017-05-29 21:21:49 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\rstrui.exe
2017-05-29 21:21:49 ----A---- C:\Windows\system32\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\msihnd.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-05-29 21:21:47 ----A---- C:\Windows\system32\secur32.dll
2017-05-29 21:21:47 ----A---- C:\Windows\system32\lsass.exe
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\msscp.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\msnetobj.dll
2017-05-29 21:21:45 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\system32\srclient.dll
2017-05-29 21:21:43 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2017-05-29 21:21:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\pcadm.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\mfpmp.exe
2017-05-29 21:21:41 ----A---- C:\Windows\system32\credssp.dll
2017-05-29 21:21:39 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2017-05-29 21:21:38 ----A---- C:\Windows\system32\rrinstaller.exe
2017-05-29 21:21:37 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:36 ----A---- C:\Windows\system32\cdd.dll
2017-05-29 21:21:35 ----A---- C:\Windows\SYSWOW64\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcawrk.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcalua.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\atmlib.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\lpk.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\sspisrv.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\msmmsp.dll
2017-05-29 21:21:32 ----A---- C:\Windows\system32\plasrv.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\lpk.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\wow64cpu.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\spwmp.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\comcat.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\dxmasf.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\apisetschema.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\user.exe
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\mferror.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\pcaevts.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\INETRES.dll
2017-05-29 21:21:28 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\mferror.dll
2017-05-29 21:21:27 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-05-29 21:21:27 ----A---- C:\Windows\system32\msxml3r.dll
2017-05-29 20:21:13 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2017-05-29 19:59:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbhub.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2017-05-29 19:59:39 ----A---- C:\Windows\system32\drivers\usbd.sys
2017-05-29 19:59:25 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-05-29 19:59:25 ----A---- C:\Windows\system32\shell32.dll
2017-05-29 19:59:24 ----A---- C:\Windows\SYSWOW64\explorer.exe
2017-05-29 19:59:24 ----A---- C:\Windows\explorer.exe
2017-05-29 19:59:23 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-05-29 19:59:23 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\invagent.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\generaltel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\devinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-05-29 19:59:12 ----A---- C:\Windows\system32\centel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\appraiser.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aepic.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aeinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\acmigration.dll
2017-05-29 19:58:48 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2017-05-29 19:58:48 ----A---- C:\Windows\system32\poqexec.exe
2017-05-29 19:31:41 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-06-01 19:00:20 ----D---- C:\Program Files\trend micro
2017-06-01 18:59:24 ----D---- C:\Windows\Temp
2017-06-01 18:48:02 ----D---- C:\Windows\system32\config
2017-06-01 18:42:52 ----D---- C:\Users\jitka\AppData\Roaming\Seznam.cz
2017-06-01 18:39:31 ----HD---- C:\ProgramData
2017-06-01 18:36:58 ----A---- C:\Windows\SYSWOW64\log.txt
2017-06-01 18:35:29 ----D---- C:\AdwCleaner
2017-05-31 20:33:47 ----D---- C:\Windows\system32\drivers
2017-05-31 19:43:53 ----D---- C:\Windows\system32\Tasks
2017-05-31 19:36:08 ----D---- C:\Program Files (x86)\Opera
2017-05-31 19:34:13 ----D---- C:\Windows\system32\Macromed
2017-05-30 23:21:43 ----D---- C:\Windows\SysWOW64
2017-05-30 23:21:43 ----D---- C:\Windows\System32
2017-05-30 23:21:14 ----SHD---- C:\System Volume Information
2017-05-30 23:11:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-05-30 21:56:40 ----D---- C:\Windows\winsxs
2017-05-30 21:30:50 ----D---- C:\Windows\Microsoft.NET
2017-05-30 21:27:01 ----RSD---- C:\Windows\assembly
2017-05-30 21:22:22 ----D---- C:\Windows\inf
2017-05-30 21:22:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-05-30 21:05:55 ----D---- C:\Program Files\Internet Explorer
2017-05-30 21:05:53 ----D---- C:\Program Files\Windows Media Player
2017-05-30 21:05:53 ----D---- C:\Program Files\DVD Maker
2017-05-30 21:05:52 ----D---- C:\Program Files (x86)\Internet Explorer
2017-05-30 21:05:51 ----D---- C:\Windows\SYSWOW64\migration
2017-05-30 21:05:51 ----D---- C:\Program Files (x86)\Windows Media Player
2017-05-30 21:05:50 ----D---- C:\Windows\SYSWOW64\Dism
2017-05-30 21:05:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-05-30 21:05:47 ----D---- C:\Windows\SYSWOW64\en-US
2017-05-30 21:05:37 ----D---- C:\Windows\PolicyDefinitions
2017-05-30 21:05:36 ----D---- C:\Windows\system32\migration
2017-05-30 21:05:36 ----D---- C:\Windows\system32\Dism
2017-05-30 21:05:35 ----D---- C:\Windows\system32\cs-CZ
2017-05-30 21:05:33 ----D---- C:\Windows\system32\en-US
2017-05-30 21:05:20 ----D---- C:\Windows\AppPatch
2017-05-30 21:05:20 ----AD---- C:\Windows
2017-05-30 21:05:16 ----D---- C:\Windows\system32\Boot
2017-05-30 20:55:45 ----SHD---- C:\Windows\Installer
2017-05-30 20:55:41 ----SHD---- C:\Config.Msi
2017-05-30 20:51:50 ----RD---- C:\Program Files (x86)
2017-05-30 20:25:51 ----D---- C:\Windows\Logs
2017-05-30 20:17:17 ----D---- C:\Program Files\Windows Journal
2017-05-30 20:17:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2017-05-30 20:17:08 ----D---- C:\Windows\cs-CZ
2017-05-30 20:17:07 ----SD---- C:\Windows\system32\CompatTel
2017-05-30 20:17:06 ----D---- C:\Windows\system32\appraiser
2017-05-30 20:17:02 ----D---- C:\Windows\system32\DriverStore
2017-05-30 20:16:11 ----D---- C:\Program Files\Microsoft Silverlight
2017-05-30 20:16:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wfp
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wbem
2017-05-30 05:16:26 ----D---- C:\Windows\system32\NDF
2017-05-30 05:16:24 ----D---- C:\Windows\system32\drivers\UMDF
2017-05-30 05:16:24 ----D---- C:\Users\jitka\AppData\Roaming\vlc
2017-05-30 05:16:06 ----D---- C:\Program Files
2017-05-30 05:15:49 ----D---- C:\Program Files (x86)\AcerCrystalEye
2017-05-30 05:15:10 ----D---- C:\Windows\registration
2017-05-30 05:12:27 ----D---- C:\ProgramData\AVAST Software
2017-05-30 05:09:11 ----D---- C:\Program Files (x86)\Google
2017-05-29 21:35:26 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-05-29 21:31:59 ----D---- C:\Windows\system32\catroot2
2017-05-29 21:28:19 ----D---- C:\Windows\system32\MRT
2017-05-29 21:25:30 ----D---- C:\Windows\debug
2017-05-29 21:25:10 ----AC---- C:\Windows\system32\MRT.exe
2017-05-29 20:31:35 ----D---- C:\Windows\Tasks
2017-05-29 20:31:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-05-29 20:31:19 ----D---- C:\Windows\SYSWOW64\Macromed
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-05-29 190256]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-05-29 334576]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-05-29 49016]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-05-29 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-05-29 339696]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-13 540696]
R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2009-03-09 69664]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-05-29 311808]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-05-29 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-05-29 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-05-29 1007160]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-05-29 569192]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-05-29 128648]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-05-29 158880]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-06-22 2399848]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-28 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-12-10 301104]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-04-28 17408]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-05-29 38296]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-06-03 4171328]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-06-25 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-06-25 102952]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-06-25 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-06-25 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-06-25 21544]
S3 netr28ux;RT2870 USB Wireless LAN Card Driver pro systém Windows Vista; C:\Windows\system32\DRIVERS\netr28ux.sys [2009-06-10 867328]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-06-17 246376]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-05-29 263304]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-25 952096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-06-11 868896]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-05-29 7346208]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-16 271920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-03-26 105096]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-03-26 125064]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-29 271864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-02-09 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-04-16 116224]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-11-24 172488]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-04-13 792112]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-26 51320]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
-----------------EOF-----------------
Logfile of random's system information tool 1.16 (written by random/random)
Run by jitka at 2017-06-01 19:00:19
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 25 GB (9%) free of 291 GB
Total RAM: 5815 MB (68% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:00:20, on 1.6.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18666)
Boot mode: Normal
Running processes:
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\jitka_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x47m2q499
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\jitka\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.111.2.158/activex/AxisCamControl.cab
O16 - DPF: {9F1C0B35-8230-4176-8B99-5C2485121A4E} (SNCActiveXViewerControl Class) - http://213.29.153.37:50000/program/SNCActiveXViewer.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10248 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
C:\Windows\system32\taskhost.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe" -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\taskeng.exe
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\jitka\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Ad-Aware Update (Weekly) - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1426097062 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1450287372 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458837682 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{1888EE0E-E553-4023-AACB-D24BF91B3955} - C:\Windows\system32\pcalua.exe -a "C:\Users\jitka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTG3KAGM\Instaluj.cz - 33.exe" -d C:\Users\jitka\Desktop
C:\Windows\system32\tasks\{43A92CBD-74CA-411F-8169-C7990CEF262B} - "c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/7.0.0.102/cs/a ... age=tsMain
C:\Windows\system32\tasks\{7702BAFA-1984-4302-8F97-C37BC0DF0E52} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\{BF768279-FF71-4A4B-B69E-AC996DA45F2A} - C:\Windows\system32\pcalua.exe -a C:\Users\jitka\Documents\anniversed.exe -d C:\Windows\system32
C:\Windows\system32\tasks\{F93BE66F-F93C-474E-B1AD-C8730FB166FB} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-757923092-4267684374-3086449644-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
=========Mozilla firefox=========
ProfilePath - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default
prefs.js - "browser.startup.homepage" - "www.google.com"
prefs.js - "keyword.URL" - "https://www.google.com/search"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.5.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\addons.json
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
YouTube mp3 - extension - info@youtube-mp3.org
Mozilla Firefox hotfix - extension - firefox-hotfix@mozilla.org
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions.json
YouTube mp3 - extension - info@youtube-mp3.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\info@youtube-mp3.org.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\features\{5819bc43-bcc2-4e2d-8bae-abd0216f2846}\shield-recipe-client@mozilla.org.xpi
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.30
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 0 Adobe Acrobat 15.1.0.6
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.google.com/
default_search_provider.search_url:
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.3.31.232 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
Plugin 11,4,402,265 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\gcswf32.dll
Plugin 11,3,300,271 Shockwave Flash C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll
Plugin Remoting Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\pdf.dll
Plugin 10.1.4.38 Adobe Acrobat C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1.3.21.115 Google Update C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
Plugin 14.0.8081.0709_ship.wlx.w3m3 (ship) Windows Live® Photo Gallery C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 5.1.10411.0 Silverlight Plug-In c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
Homepage:
default_search_provider.search_url:
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}]
"URL"=http://www.google.com/search?sourceid=i ... lz=1I7ACAW
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01 193136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-10 1890088]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-06-10 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2010-06-11 861216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-05-29 213824]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-05-16 153136]
"cz.seznam.software.autoupdate"=C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-04-13 284696]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-06-01 18:39:31 ----D---- C:\ProgramData\SWCUTemp
2017-05-31 20:02:21 ----D---- C:\rsit
2017-05-30 21:46:31 ----HD---- C:\$AV_ASW
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wudriver.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuauclt.exe
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuapi.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\UtcResources.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\inseng.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\ie4uinit.exe
2017-05-29 21:23:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\wuwebv.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\urlmon.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\occache.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\iedkcs32.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\diagtrack.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-05-29 21:23:05 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-29 21:23:05 ----A---- C:\Windows\system32\dxtrans.dll
2017-05-29 21:23:04 ----A---- C:\Windows\system32\wucltux.dll
2017-05-29 21:23:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\msfeeds.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\iesetup.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\iertutil.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\vbscript.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\jsproxy.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\ieUnatt.exe
2017-05-29 21:22:59 ----A---- C:\Windows\system32\wuaueng.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpudd.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpcorets.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieui.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieframe.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\webcheck.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\wininet.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\msrating.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-05-29 21:22:54 ----A---- C:\Windows\system32\mshtml.dll
2017-05-29 21:22:51 ----A---- C:\Windows\system32\wmp.dll
2017-05-29 21:22:49 ----A---- C:\Windows\SYSWOW64\wmp.dll
2017-05-29 21:22:48 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\mf.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\FntCache.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\DWrite.dll
2017-05-29 21:22:47 ----A---- C:\Windows\SYSWOW64\mf.dll
2017-05-29 21:22:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-05-29 21:22:47 ----A---- C:\Windows\system32\blackbox.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups2.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\MSVidCtl.dll
2017-05-29 21:22:45 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\WsmSvc.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\drmv2clt.dll
2017-05-29 21:22:44 ----A---- C:\Windows\system32\win32k.sys
2017-05-29 21:22:44 ----A---- C:\Windows\system32\msxml3.dll
2017-05-29 21:22:43 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2017-05-29 21:22:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2017-05-29 21:22:42 ----A---- C:\Windows\SYSWOW64\msi.dll
2017-05-29 21:22:42 ----A---- C:\Windows\system32\msi.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ole32.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ntdll.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\scavengeui.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\quartz.dll
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-05-29 21:22:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2017-05-29 21:22:38 ----A---- C:\Windows\system32\lsasrv.dll
2017-05-29 21:22:37 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-05-29 21:22:37 ----A---- C:\Windows\system32\rpcrt4.dll
2017-05-29 21:22:36 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\win32spl.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\samsrv.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\msctf.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\audiosrv.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\schannel.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\kerberos.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\authui.dll
2017-05-29 21:22:35 ----A---- C:\Windows\HelpPane.exe
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\msctf.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\authui.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\IMJP10K.DLL
2017-05-29 21:22:34 ----A---- C:\Windows\system32\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\AUDIOKSE.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\atmfd.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\WebClnt.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\usp10.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\crypt32.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\advapi32.dll
2017-05-29 21:22:32 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\winload.exe
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drmmgrtn.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\user32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\oleaut32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\msv1_0.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\KernelBase.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\drivers\srv.sys
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2017-05-29 21:22:29 ----A---- C:\Windows\system32\qdvd.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\pla.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\kernel32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2017-05-29 21:22:29 ----A---- C:\Windows\system32\cryptui.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\clfs.sys
2017-05-29 21:22:28 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-05-29 21:22:28 ----A---- C:\Windows\system32\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\cng.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\cryptsvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\WsmAuto.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\wintrust.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\pcasvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2017-05-29 21:22:26 ----A---- C:\Windows\system32\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\rpchttp.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-05-29 21:22:25 ----A---- C:\Windows\system32\cdosys.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-05-29 21:22:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\msiexec.exe
2017-05-29 21:22:23 ----A---- C:\Windows\system32\EncDump.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\pla.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\ncrypt.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\mscms.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\gdi32.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\fastfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\exfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\consent.exe
2017-05-29 21:22:21 ----A---- C:\Windows\system32\certcli.dll
2017-05-29 21:22:21 ----A---- C:\Windows\system32\bcdedit.exe
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\netio.sys
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-05-29 21:22:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\system32\cryptnet.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\adtschema.dll
2017-05-29 21:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-05-29 21:22:15 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\wow64win.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-05-29 21:22:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-05-29 21:22:13 ----A---- C:\Windows\system32\drivers\bowser.sys
2017-05-29 21:22:13 ----A---- C:\Windows\system32\audiodg.exe
2017-05-29 21:22:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-05-29 21:22:12 ----A---- C:\Windows\system32\pdh.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\winsrv.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\mfps.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-05-29 21:22:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-05-29 21:22:08 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2017-05-29 21:22:07 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\wow64.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\cryptsp.dll
2017-05-29 21:22:04 ----A---- C:\Windows\system32\rpcss.dll
2017-05-29 21:22:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\wdigest.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\TSpkg.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\drivers\afd.sys
2017-05-29 21:22:03 ----A---- C:\Windows\system32\appinfo.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\SYSWOW64\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\srcore.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\drivers\tdx.sys
2017-05-29 21:21:59 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\input.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2017-05-29 21:21:56 ----A---- C:\Windows\system32\conhost.exe
2017-05-29 21:21:56 ----A---- C:\Windows\system32\bcrypt.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\appidsvc.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\icm32.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-05-29 21:21:55 ----A---- C:\Windows\system32\asycfilt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mfps.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\input.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2017-05-29 21:21:53 ----A---- C:\Windows\system32\msscp.dll
2017-05-29 21:21:53 ----A---- C:\Windows\system32\drivers\appid.sys
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\csrsrv.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\appidapi.dll
2017-05-29 21:21:51 ----A---- C:\Windows\system32\samlib.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\smss.exe
2017-05-29 21:21:50 ----A---- C:\Windows\system32\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\cryptbase.dll
2017-05-29 21:21:49 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\rstrui.exe
2017-05-29 21:21:49 ----A---- C:\Windows\system32\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\msihnd.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-05-29 21:21:47 ----A---- C:\Windows\system32\secur32.dll
2017-05-29 21:21:47 ----A---- C:\Windows\system32\lsass.exe
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\msscp.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\msnetobj.dll
2017-05-29 21:21:45 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\system32\srclient.dll
2017-05-29 21:21:43 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2017-05-29 21:21:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\pcadm.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\mfpmp.exe
2017-05-29 21:21:41 ----A---- C:\Windows\system32\credssp.dll
2017-05-29 21:21:39 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2017-05-29 21:21:38 ----A---- C:\Windows\system32\rrinstaller.exe
2017-05-29 21:21:37 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:36 ----A---- C:\Windows\system32\cdd.dll
2017-05-29 21:21:35 ----A---- C:\Windows\SYSWOW64\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcawrk.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcalua.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\atmlib.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\lpk.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\sspisrv.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\msmmsp.dll
2017-05-29 21:21:32 ----A---- C:\Windows\system32\plasrv.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\lpk.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\wow64cpu.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\spwmp.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\comcat.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\dxmasf.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\apisetschema.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\user.exe
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\mferror.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\pcaevts.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\INETRES.dll
2017-05-29 21:21:28 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\mferror.dll
2017-05-29 21:21:27 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-05-29 21:21:27 ----A---- C:\Windows\system32\msxml3r.dll
2017-05-29 20:21:13 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2017-05-29 19:59:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbhub.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2017-05-29 19:59:39 ----A---- C:\Windows\system32\drivers\usbd.sys
2017-05-29 19:59:25 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-05-29 19:59:25 ----A---- C:\Windows\system32\shell32.dll
2017-05-29 19:59:24 ----A---- C:\Windows\SYSWOW64\explorer.exe
2017-05-29 19:59:24 ----A---- C:\Windows\explorer.exe
2017-05-29 19:59:23 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-05-29 19:59:23 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\invagent.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\generaltel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\devinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-05-29 19:59:12 ----A---- C:\Windows\system32\centel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\appraiser.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aepic.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aeinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\acmigration.dll
2017-05-29 19:58:48 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2017-05-29 19:58:48 ----A---- C:\Windows\system32\poqexec.exe
2017-05-29 19:31:41 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-06-01 19:00:20 ----D---- C:\Program Files\trend micro
2017-06-01 18:59:24 ----D---- C:\Windows\Temp
2017-06-01 18:48:02 ----D---- C:\Windows\system32\config
2017-06-01 18:42:52 ----D---- C:\Users\jitka\AppData\Roaming\Seznam.cz
2017-06-01 18:39:31 ----HD---- C:\ProgramData
2017-06-01 18:36:58 ----A---- C:\Windows\SYSWOW64\log.txt
2017-06-01 18:35:29 ----D---- C:\AdwCleaner
2017-05-31 20:33:47 ----D---- C:\Windows\system32\drivers
2017-05-31 19:43:53 ----D---- C:\Windows\system32\Tasks
2017-05-31 19:36:08 ----D---- C:\Program Files (x86)\Opera
2017-05-31 19:34:13 ----D---- C:\Windows\system32\Macromed
2017-05-30 23:21:43 ----D---- C:\Windows\SysWOW64
2017-05-30 23:21:43 ----D---- C:\Windows\System32
2017-05-30 23:21:14 ----SHD---- C:\System Volume Information
2017-05-30 23:11:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-05-30 21:56:40 ----D---- C:\Windows\winsxs
2017-05-30 21:30:50 ----D---- C:\Windows\Microsoft.NET
2017-05-30 21:27:01 ----RSD---- C:\Windows\assembly
2017-05-30 21:22:22 ----D---- C:\Windows\inf
2017-05-30 21:22:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-05-30 21:05:55 ----D---- C:\Program Files\Internet Explorer
2017-05-30 21:05:53 ----D---- C:\Program Files\Windows Media Player
2017-05-30 21:05:53 ----D---- C:\Program Files\DVD Maker
2017-05-30 21:05:52 ----D---- C:\Program Files (x86)\Internet Explorer
2017-05-30 21:05:51 ----D---- C:\Windows\SYSWOW64\migration
2017-05-30 21:05:51 ----D---- C:\Program Files (x86)\Windows Media Player
2017-05-30 21:05:50 ----D---- C:\Windows\SYSWOW64\Dism
2017-05-30 21:05:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-05-30 21:05:47 ----D---- C:\Windows\SYSWOW64\en-US
2017-05-30 21:05:37 ----D---- C:\Windows\PolicyDefinitions
2017-05-30 21:05:36 ----D---- C:\Windows\system32\migration
2017-05-30 21:05:36 ----D---- C:\Windows\system32\Dism
2017-05-30 21:05:35 ----D---- C:\Windows\system32\cs-CZ
2017-05-30 21:05:33 ----D---- C:\Windows\system32\en-US
2017-05-30 21:05:20 ----D---- C:\Windows\AppPatch
2017-05-30 21:05:20 ----AD---- C:\Windows
2017-05-30 21:05:16 ----D---- C:\Windows\system32\Boot
2017-05-30 20:55:45 ----SHD---- C:\Windows\Installer
2017-05-30 20:55:41 ----SHD---- C:\Config.Msi
2017-05-30 20:51:50 ----RD---- C:\Program Files (x86)
2017-05-30 20:25:51 ----D---- C:\Windows\Logs
2017-05-30 20:17:17 ----D---- C:\Program Files\Windows Journal
2017-05-30 20:17:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2017-05-30 20:17:08 ----D---- C:\Windows\cs-CZ
2017-05-30 20:17:07 ----SD---- C:\Windows\system32\CompatTel
2017-05-30 20:17:06 ----D---- C:\Windows\system32\appraiser
2017-05-30 20:17:02 ----D---- C:\Windows\system32\DriverStore
2017-05-30 20:16:11 ----D---- C:\Program Files\Microsoft Silverlight
2017-05-30 20:16:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wfp
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wbem
2017-05-30 05:16:26 ----D---- C:\Windows\system32\NDF
2017-05-30 05:16:24 ----D---- C:\Windows\system32\drivers\UMDF
2017-05-30 05:16:24 ----D---- C:\Users\jitka\AppData\Roaming\vlc
2017-05-30 05:16:06 ----D---- C:\Program Files
2017-05-30 05:15:49 ----D---- C:\Program Files (x86)\AcerCrystalEye
2017-05-30 05:15:10 ----D---- C:\Windows\registration
2017-05-30 05:12:27 ----D---- C:\ProgramData\AVAST Software
2017-05-30 05:09:11 ----D---- C:\Program Files (x86)\Google
2017-05-29 21:35:26 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-05-29 21:31:59 ----D---- C:\Windows\system32\catroot2
2017-05-29 21:28:19 ----D---- C:\Windows\system32\MRT
2017-05-29 21:25:30 ----D---- C:\Windows\debug
2017-05-29 21:25:10 ----AC---- C:\Windows\system32\MRT.exe
2017-05-29 20:31:35 ----D---- C:\Windows\Tasks
2017-05-29 20:31:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-05-29 20:31:19 ----D---- C:\Windows\SYSWOW64\Macromed
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-05-29 190256]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-05-29 334576]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-05-29 49016]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-05-29 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-05-29 339696]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-13 540696]
R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2009-03-09 69664]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-05-29 311808]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-05-29 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-05-29 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-05-29 1007160]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-05-29 569192]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-05-29 128648]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-05-29 158880]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-06-22 2399848]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-28 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-12-10 301104]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-04-28 17408]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-05-29 38296]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-06-03 4171328]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-06-25 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-06-25 102952]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-06-25 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-06-25 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-06-25 21544]
S3 netr28ux;RT2870 USB Wireless LAN Card Driver pro systém Windows Vista; C:\Windows\system32\DRIVERS\netr28ux.sys [2009-06-10 867328]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-06-17 246376]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-05-29 263304]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-25 952096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-06-11 868896]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-05-29 7346208]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-16 271920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-03-26 105096]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-03-26 125064]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-29 271864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-02-09 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-04-16 116224]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-11-24 172488]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-04-13 792112]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-26 51320]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
-----------------EOF-----------------
- Přílohy
-
- priloha.png (44.11 KiB) Zobrazeno 2789 x
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - moc děkuji
Ta hláška se týká softwaru od seznamu. Pokud ho používáte, zkuste přeinstalovat. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.:files
C:\Program Files (x86)\Google\Google Toolbar
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - moc děkuji
Logfile of random's system information tool 1.16 (written by random/random)
Run by jitka at 2017-06-01 20:16:42
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 27 GB (9%) free of 291 GB
Total RAM: 5815 MB (74% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:16:44, on 1.6.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18666)
Boot mode: Normal
Running processes:
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\trend micro\jitka_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x47m2q499
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\jitka\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.111.2.158/activex/AxisCamControl.cab
O16 - DPF: {9F1C0B35-8230-4176-8B99-5C2485121A4E} (SNCActiveXViewerControl Class) - http://213.29.153.37:50000/program/SNCActiveXViewer.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9915 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\taskeng.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
C:\Windows\system32\taskhost.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Windows\System32\igfxtray.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\jitka\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Ad-Aware Update (Weekly) - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1426097062 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1450287372 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458837682 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{1888EE0E-E553-4023-AACB-D24BF91B3955} - C:\Windows\system32\pcalua.exe -a "C:\Users\jitka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTG3KAGM\Instaluj.cz - 33.exe" -d C:\Users\jitka\Desktop
C:\Windows\system32\tasks\{43A92CBD-74CA-411F-8169-C7990CEF262B} - "c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/7.0.0.102/cs/a ... age=tsMain
C:\Windows\system32\tasks\{7702BAFA-1984-4302-8F97-C37BC0DF0E52} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\{BF768279-FF71-4A4B-B69E-AC996DA45F2A} - C:\Windows\system32\pcalua.exe -a C:\Users\jitka\Documents\anniversed.exe -d C:\Windows\system32
C:\Windows\system32\tasks\{F93BE66F-F93C-474E-B1AD-C8730FB166FB} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-757923092-4267684374-3086449644-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
=========Mozilla firefox=========
ProfilePath - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default
prefs.js - "browser.startup.homepage" - "www.google.com"
prefs.js - "keyword.URL" - "https://www.google.com/search"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.5.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\addons.json
YouTube mp3 - extension - info@youtube-mp3.org
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions.json
YouTube mp3 - extension - info@youtube-mp3.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\info@youtube-mp3.org.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\features\{5819bc43-bcc2-4e2d-8bae-abd0216f2846}\shield-recipe-client@mozilla.org.xpi
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.30
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 0 Adobe Acrobat 15.1.0.6
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.google.com/
default_search_provider.search_url:
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.3.31.232 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
Plugin 11,4,402,265 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\gcswf32.dll
Plugin 11,3,300,271 Shockwave Flash C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll
Plugin Remoting Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\pdf.dll
Plugin 10.1.4.38 Adobe Acrobat C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1.3.21.115 Google Update C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
Plugin 14.0.8081.0709_ship.wlx.w3m3 (ship) Windows Live® Photo Gallery C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 5.1.10411.0 Silverlight Plug-In c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
Homepage:
default_search_provider.search_url:
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}]
"URL"=http://www.google.com/search?sourceid=i ... lz=1I7ACAW
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-10 1890088]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-06-10 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2010-06-11 861216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-05-29 213824]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-05-16 153136]
"cz.seznam.software.autoupdate"=C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-04-13 284696]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-06-01 20:06:48 ----D---- C:\_OTM
2017-06-01 18:39:31 ----D---- C:\ProgramData\SWCUTemp
2017-05-31 20:02:21 ----D---- C:\rsit
2017-05-30 21:46:31 ----HD---- C:\$AV_ASW
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wudriver.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuauclt.exe
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuapi.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\UtcResources.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\inseng.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\ie4uinit.exe
2017-05-29 21:23:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\wuwebv.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\urlmon.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\occache.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\iedkcs32.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\diagtrack.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-05-29 21:23:05 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-29 21:23:05 ----A---- C:\Windows\system32\dxtrans.dll
2017-05-29 21:23:04 ----A---- C:\Windows\system32\wucltux.dll
2017-05-29 21:23:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\msfeeds.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\iesetup.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\iertutil.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\vbscript.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\jsproxy.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\ieUnatt.exe
2017-05-29 21:22:59 ----A---- C:\Windows\system32\wuaueng.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpudd.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpcorets.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieui.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieframe.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\webcheck.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\wininet.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\msrating.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-05-29 21:22:54 ----A---- C:\Windows\system32\mshtml.dll
2017-05-29 21:22:51 ----A---- C:\Windows\system32\wmp.dll
2017-05-29 21:22:49 ----A---- C:\Windows\SYSWOW64\wmp.dll
2017-05-29 21:22:48 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\mf.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\FntCache.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\DWrite.dll
2017-05-29 21:22:47 ----A---- C:\Windows\SYSWOW64\mf.dll
2017-05-29 21:22:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-05-29 21:22:47 ----A---- C:\Windows\system32\blackbox.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups2.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\MSVidCtl.dll
2017-05-29 21:22:45 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\WsmSvc.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\drmv2clt.dll
2017-05-29 21:22:44 ----A---- C:\Windows\system32\win32k.sys
2017-05-29 21:22:44 ----A---- C:\Windows\system32\msxml3.dll
2017-05-29 21:22:43 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2017-05-29 21:22:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2017-05-29 21:22:42 ----A---- C:\Windows\SYSWOW64\msi.dll
2017-05-29 21:22:42 ----A---- C:\Windows\system32\msi.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ole32.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ntdll.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\scavengeui.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\quartz.dll
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-05-29 21:22:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2017-05-29 21:22:38 ----A---- C:\Windows\system32\lsasrv.dll
2017-05-29 21:22:37 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-05-29 21:22:37 ----A---- C:\Windows\system32\rpcrt4.dll
2017-05-29 21:22:36 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\win32spl.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\samsrv.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\msctf.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\audiosrv.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\schannel.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\kerberos.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\authui.dll
2017-05-29 21:22:35 ----A---- C:\Windows\HelpPane.exe
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\msctf.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\authui.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\IMJP10K.DLL
2017-05-29 21:22:34 ----A---- C:\Windows\system32\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\AUDIOKSE.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\atmfd.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\WebClnt.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\usp10.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\crypt32.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\advapi32.dll
2017-05-29 21:22:32 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\winload.exe
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drmmgrtn.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\user32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\oleaut32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\msv1_0.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\KernelBase.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\drivers\srv.sys
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2017-05-29 21:22:29 ----A---- C:\Windows\system32\qdvd.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\pla.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\kernel32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2017-05-29 21:22:29 ----A---- C:\Windows\system32\cryptui.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\clfs.sys
2017-05-29 21:22:28 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-05-29 21:22:28 ----A---- C:\Windows\system32\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\cng.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\cryptsvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\WsmAuto.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\wintrust.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\pcasvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2017-05-29 21:22:26 ----A---- C:\Windows\system32\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\rpchttp.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-05-29 21:22:25 ----A---- C:\Windows\system32\cdosys.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-05-29 21:22:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\msiexec.exe
2017-05-29 21:22:23 ----A---- C:\Windows\system32\EncDump.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\pla.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\ncrypt.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\mscms.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\gdi32.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\fastfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\exfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\consent.exe
2017-05-29 21:22:21 ----A---- C:\Windows\system32\certcli.dll
2017-05-29 21:22:21 ----A---- C:\Windows\system32\bcdedit.exe
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\netio.sys
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-05-29 21:22:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\system32\cryptnet.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\adtschema.dll
2017-05-29 21:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-05-29 21:22:15 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\wow64win.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-05-29 21:22:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-05-29 21:22:13 ----A---- C:\Windows\system32\drivers\bowser.sys
2017-05-29 21:22:13 ----A---- C:\Windows\system32\audiodg.exe
2017-05-29 21:22:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-05-29 21:22:12 ----A---- C:\Windows\system32\pdh.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\winsrv.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\mfps.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-05-29 21:22:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-05-29 21:22:08 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2017-05-29 21:22:07 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\wow64.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\cryptsp.dll
2017-05-29 21:22:04 ----A---- C:\Windows\system32\rpcss.dll
2017-05-29 21:22:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\wdigest.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\TSpkg.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\drivers\afd.sys
2017-05-29 21:22:03 ----A---- C:\Windows\system32\appinfo.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\SYSWOW64\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\srcore.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\drivers\tdx.sys
2017-05-29 21:21:59 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\input.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2017-05-29 21:21:56 ----A---- C:\Windows\system32\conhost.exe
2017-05-29 21:21:56 ----A---- C:\Windows\system32\bcrypt.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\appidsvc.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\icm32.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-05-29 21:21:55 ----A---- C:\Windows\system32\asycfilt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mfps.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\input.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2017-05-29 21:21:53 ----A---- C:\Windows\system32\msscp.dll
2017-05-29 21:21:53 ----A---- C:\Windows\system32\drivers\appid.sys
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\csrsrv.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\appidapi.dll
2017-05-29 21:21:51 ----A---- C:\Windows\system32\samlib.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\smss.exe
2017-05-29 21:21:50 ----A---- C:\Windows\system32\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\cryptbase.dll
2017-05-29 21:21:49 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\rstrui.exe
2017-05-29 21:21:49 ----A---- C:\Windows\system32\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\msihnd.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-05-29 21:21:47 ----A---- C:\Windows\system32\secur32.dll
2017-05-29 21:21:47 ----A---- C:\Windows\system32\lsass.exe
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\msscp.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\msnetobj.dll
2017-05-29 21:21:45 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\system32\srclient.dll
2017-05-29 21:21:43 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2017-05-29 21:21:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\pcadm.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\mfpmp.exe
2017-05-29 21:21:41 ----A---- C:\Windows\system32\credssp.dll
2017-05-29 21:21:39 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2017-05-29 21:21:38 ----A---- C:\Windows\system32\rrinstaller.exe
2017-05-29 21:21:37 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:36 ----A---- C:\Windows\system32\cdd.dll
2017-05-29 21:21:35 ----A---- C:\Windows\SYSWOW64\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcawrk.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcalua.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\atmlib.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\lpk.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\sspisrv.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\msmmsp.dll
2017-05-29 21:21:32 ----A---- C:\Windows\system32\plasrv.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\lpk.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\wow64cpu.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\spwmp.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\comcat.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\dxmasf.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\apisetschema.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\user.exe
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\mferror.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\pcaevts.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\INETRES.dll
2017-05-29 21:21:28 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\mferror.dll
2017-05-29 21:21:27 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-05-29 21:21:27 ----A---- C:\Windows\system32\msxml3r.dll
2017-05-29 20:21:13 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2017-05-29 19:59:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbhub.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2017-05-29 19:59:39 ----A---- C:\Windows\system32\drivers\usbd.sys
2017-05-29 19:59:25 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-05-29 19:59:25 ----A---- C:\Windows\system32\shell32.dll
2017-05-29 19:59:24 ----A---- C:\Windows\SYSWOW64\explorer.exe
2017-05-29 19:59:24 ----A---- C:\Windows\explorer.exe
2017-05-29 19:59:23 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-05-29 19:59:23 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\invagent.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\generaltel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\devinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-05-29 19:59:12 ----A---- C:\Windows\system32\centel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\appraiser.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aepic.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aeinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\acmigration.dll
2017-05-29 19:58:48 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2017-05-29 19:58:48 ----A---- C:\Windows\system32\poqexec.exe
2017-05-29 19:31:41 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-06-01 20:16:43 ----D---- C:\Program Files\trend micro
2017-06-01 20:16:37 ----D---- C:\Users\jitka\AppData\Roaming\Seznam.cz
2017-06-01 20:16:27 ----D---- C:\Windows\Temp
2017-06-01 20:09:42 ----D---- C:\Windows\system32\config
2017-06-01 20:09:04 ----A---- C:\Windows\SYSWOW64\log.txt
2017-06-01 20:07:05 ----D---- C:\Program Files (x86)\Google
2017-06-01 18:39:31 ----HD---- C:\ProgramData
2017-06-01 18:35:29 ----D---- C:\AdwCleaner
2017-05-31 20:33:47 ----D---- C:\Windows\system32\drivers
2017-05-31 19:43:53 ----D---- C:\Windows\system32\Tasks
2017-05-31 19:36:08 ----D---- C:\Program Files (x86)\Opera
2017-05-31 19:34:13 ----D---- C:\Windows\system32\Macromed
2017-05-30 23:21:43 ----D---- C:\Windows\SysWOW64
2017-05-30 23:21:43 ----D---- C:\Windows\System32
2017-05-30 23:21:14 ----SHD---- C:\System Volume Information
2017-05-30 23:11:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-05-30 21:56:40 ----D---- C:\Windows\winsxs
2017-05-30 21:30:50 ----D---- C:\Windows\Microsoft.NET
2017-05-30 21:27:01 ----RSD---- C:\Windows\assembly
2017-05-30 21:22:22 ----D---- C:\Windows\inf
2017-05-30 21:22:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-05-30 21:05:55 ----D---- C:\Program Files\Internet Explorer
2017-05-30 21:05:53 ----D---- C:\Program Files\Windows Media Player
2017-05-30 21:05:53 ----D---- C:\Program Files\DVD Maker
2017-05-30 21:05:52 ----D---- C:\Program Files (x86)\Internet Explorer
2017-05-30 21:05:51 ----D---- C:\Windows\SYSWOW64\migration
2017-05-30 21:05:51 ----D---- C:\Program Files (x86)\Windows Media Player
2017-05-30 21:05:50 ----D---- C:\Windows\SYSWOW64\Dism
2017-05-30 21:05:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-05-30 21:05:47 ----D---- C:\Windows\SYSWOW64\en-US
2017-05-30 21:05:37 ----D---- C:\Windows\PolicyDefinitions
2017-05-30 21:05:36 ----D---- C:\Windows\system32\migration
2017-05-30 21:05:36 ----D---- C:\Windows\system32\Dism
2017-05-30 21:05:35 ----D---- C:\Windows\system32\cs-CZ
2017-05-30 21:05:33 ----D---- C:\Windows\system32\en-US
2017-05-30 21:05:20 ----D---- C:\Windows\AppPatch
2017-05-30 21:05:20 ----AD---- C:\Windows
2017-05-30 21:05:16 ----D---- C:\Windows\system32\Boot
2017-05-30 20:55:45 ----SHD---- C:\Windows\Installer
2017-05-30 20:55:41 ----SHD---- C:\Config.Msi
2017-05-30 20:51:50 ----RD---- C:\Program Files (x86)
2017-05-30 20:25:51 ----D---- C:\Windows\Logs
2017-05-30 20:17:17 ----D---- C:\Program Files\Windows Journal
2017-05-30 20:17:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2017-05-30 20:17:08 ----D---- C:\Windows\cs-CZ
2017-05-30 20:17:07 ----SD---- C:\Windows\system32\CompatTel
2017-05-30 20:17:06 ----D---- C:\Windows\system32\appraiser
2017-05-30 20:17:02 ----D---- C:\Windows\system32\DriverStore
2017-05-30 20:16:11 ----D---- C:\Program Files\Microsoft Silverlight
2017-05-30 20:16:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wfp
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wbem
2017-05-30 05:16:26 ----D---- C:\Windows\system32\NDF
2017-05-30 05:16:24 ----D---- C:\Windows\system32\drivers\UMDF
2017-05-30 05:16:24 ----D---- C:\Users\jitka\AppData\Roaming\vlc
2017-05-30 05:16:06 ----D---- C:\Program Files
2017-05-30 05:15:49 ----D---- C:\Program Files (x86)\AcerCrystalEye
2017-05-30 05:15:10 ----D---- C:\Windows\registration
2017-05-30 05:12:27 ----D---- C:\ProgramData\AVAST Software
2017-05-29 21:35:26 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-05-29 21:31:59 ----D---- C:\Windows\system32\catroot2
2017-05-29 21:28:19 ----D---- C:\Windows\system32\MRT
2017-05-29 21:25:30 ----D---- C:\Windows\debug
2017-05-29 21:25:10 ----AC---- C:\Windows\system32\MRT.exe
2017-05-29 20:31:35 ----D---- C:\Windows\Tasks
2017-05-29 20:31:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-05-29 20:31:19 ----D---- C:\Windows\SYSWOW64\Macromed
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-05-29 190256]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-05-29 334576]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-05-29 49016]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-05-29 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-05-29 339696]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-13 540696]
R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2009-03-09 69664]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-05-29 311808]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-05-29 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-05-29 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-05-29 1007160]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-05-29 569192]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-05-29 128648]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-06-22 2399848]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-28 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-12-10 301104]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-04-28 17408]
S2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-05-29 158880]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-05-29 38296]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-06-03 4171328]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-06-25 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-06-25 102952]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-06-25 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-06-25 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-06-25 21544]
S3 netr28ux;RT2870 USB Wireless LAN Card Driver pro systém Windows Vista; C:\Windows\system32\DRIVERS\netr28ux.sys [2009-06-10 867328]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-06-17 246376]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-05-29 263304]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-25 952096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-06-11 868896]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-16 271920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-03-26 105096]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-03-26 125064]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-29 271864]
S3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-05-29 7346208]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-02-09 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-04-16 116224]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-11-24 172488]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-04-13 792112]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-26 51320]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
-----------------EOF-----------------
Run by jitka at 2017-06-01 20:16:42
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 27 GB (9%) free of 291 GB
Total RAM: 5815 MB (74% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:16:44, on 1.6.2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18666)
Boot mode: Normal
Running processes:
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\trend micro\jitka_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5x47m2q499
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Acer VCM.lnk = ?
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\jitka\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.111.2.158/activex/AxisCamControl.cab
O16 - DPF: {9F1C0B35-8230-4176-8B99-5C2485121A4E} (SNCActiveXViewerControl Class) - http://213.29.153.37:50000/program/SNCActiveXViewer.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9915 bytes
====== Enumerating Processes ======
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\taskeng.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
C:\Windows\system32\taskhost.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Windows\System32\igfxtray.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe"
"C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe" -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\jitka\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\Windows\tasks\Ad-Aware Update (Weekly).job - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Ad-Aware Update (Weekly) - C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe update all silent
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1426097062 - C:\Program Files (x86)\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1450287372 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458837682 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{1888EE0E-E553-4023-AACB-D24BF91B3955} - C:\Windows\system32\pcalua.exe -a "C:\Users\jitka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTG3KAGM\Instaluj.cz - 33.exe" -d C:\Users\jitka\Desktop
C:\Windows\system32\tasks\{43A92CBD-74CA-411F-8169-C7990CEF262B} - "c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/7.0.0.102/cs/a ... age=tsMain
C:\Windows\system32\tasks\{7702BAFA-1984-4302-8F97-C37BC0DF0E52} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\{BF768279-FF71-4A4B-B69E-AC996DA45F2A} - C:\Windows\system32\pcalua.exe -a C:\Users\jitka\Documents\anniversed.exe -d C:\Windows\system32
C:\Windows\system32\tasks\{F93BE66F-F93C-474E-B1AD-C8730FB166FB} - "c:\program files (x86)\opera\opera.exe" http://ui.skype.com/ui/0/5.5.0.113/cs/g ... Error=1618
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-757923092-4267684374-3086449644-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows Defender\MpIdleTask - c:\program files\windows defender\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
=========Mozilla firefox=========
ProfilePath - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default
prefs.js - "browser.startup.homepage" - "www.google.com"
prefs.js - "keyword.URL" - "https://www.google.com/search"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.5.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\addons.json
YouTube mp3 - extension - info@youtube-mp3.org
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions.json
YouTube mp3 - extension - info@youtube-mp3.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\info@youtube-mp3.org.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\features\{5819bc43-bcc2-4e2d-8bae-abd0216f2846}\shield-recipe-client@mozilla.org.xpi
C:\Users\jitka\AppData\Roaming\Mozilla\Firefox\Profiles\iuto5sum.default\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.4.2
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.6
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.30
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 0 Adobe Acrobat 15.1.0.6
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.7
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh 1 Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5717.116.0.4
Homepage: http://www.google.com/
default_search_provider.search_url:
C:\Users\jitka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.3.31.232 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
Plugin 11,4,402,265 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\gcswf32.dll
Plugin 11,3,300,271 Shockwave Flash C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll
Plugin Remoting Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\pdf.dll
Plugin 10.1.4.38 Adobe Acrobat C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1.3.21.115 Google Update C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
Plugin 14.0.8081.0709_ship.wlx.w3m3 (ship) Windows Live® Photo Gallery C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 5.1.10411.0 Silverlight Plug-In c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
Homepage:
default_search_provider.search_url:
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={6A1806CD-94D4-4689-BA73-E35EA1EA9990}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}]
"URL"=http://www.google.com/search?sourceid=i ... lz=1I7ACAW
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-10 1890088]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-06-10 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2010-06-11 861216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-01-10 167704]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-01-10 392984]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-01-10 417560]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-05-29 213824]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-05-16 153136]
"cz.seznam.software.autoupdate"=C:\Users\jitka\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\jitka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-04-13 284696]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acer VCM.lnk - C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-01-10 390656]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-06-01 20:06:48 ----D---- C:\_OTM
2017-06-01 18:39:31 ----D---- C:\ProgramData\SWCUTemp
2017-05-31 20:02:21 ----D---- C:\rsit
2017-05-30 21:46:31 ----HD---- C:\$AV_ASW
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\wuapp.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ucrtbase.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\iernonce.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-05-29 21:23:09 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-05-29 21:23:08 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wudriver.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuauclt.exe
2017-05-29 21:23:08 ----A---- C:\Windows\system32\wuapi.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\UtcResources.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\inseng.dll
2017-05-29 21:23:08 ----A---- C:\Windows\system32\ie4uinit.exe
2017-05-29 21:23:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-05-29 21:23:06 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\wuwebv.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\urlmon.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\occache.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\iedkcs32.dll
2017-05-29 21:23:06 ----A---- C:\Windows\system32\diagtrack.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-05-29 21:23:05 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-05-29 21:23:05 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-29 21:23:05 ----A---- C:\Windows\system32\dxtrans.dll
2017-05-29 21:23:04 ----A---- C:\Windows\system32\wucltux.dll
2017-05-29 21:23:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\msfeeds.dll
2017-05-29 21:23:02 ----A---- C:\Windows\system32\iesetup.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\iertutil.dll
2017-05-29 21:23:01 ----A---- C:\Windows\system32\ieapfltr.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-05-29 21:23:00 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\vbscript.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\jsproxy.dll
2017-05-29 21:23:00 ----A---- C:\Windows\system32\ieUnatt.exe
2017-05-29 21:22:59 ----A---- C:\Windows\system32\wuaueng.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpudd.dll
2017-05-29 21:22:59 ----A---- C:\Windows\system32\rdpcorets.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieui.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\ieframe.dll
2017-05-29 21:22:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\webcheck.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript9.dll
2017-05-29 21:22:57 ----A---- C:\Windows\system32\jscript.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\wininet.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\msrating.dll
2017-05-29 21:22:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-05-29 21:22:54 ----A---- C:\Windows\system32\mshtml.dll
2017-05-29 21:22:51 ----A---- C:\Windows\system32\wmp.dll
2017-05-29 21:22:49 ----A---- C:\Windows\SYSWOW64\wmp.dll
2017-05-29 21:22:48 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\mf.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\FntCache.dll
2017-05-29 21:22:48 ----A---- C:\Windows\system32\DWrite.dll
2017-05-29 21:22:47 ----A---- C:\Windows\SYSWOW64\mf.dll
2017-05-29 21:22:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-05-29 21:22:47 ----A---- C:\Windows\system32\blackbox.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups2.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wups.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-05-29 21:22:46 ----A---- C:\Windows\system32\MSVidCtl.dll
2017-05-29 21:22:45 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\WsmSvc.dll
2017-05-29 21:22:45 ----A---- C:\Windows\system32\drmv2clt.dll
2017-05-29 21:22:44 ----A---- C:\Windows\system32\win32k.sys
2017-05-29 21:22:44 ----A---- C:\Windows\system32\msxml3.dll
2017-05-29 21:22:43 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2017-05-29 21:22:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2017-05-29 21:22:42 ----A---- C:\Windows\SYSWOW64\msi.dll
2017-05-29 21:22:42 ----A---- C:\Windows\system32\msi.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-05-29 21:22:40 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ole32.dll
2017-05-29 21:22:40 ----A---- C:\Windows\system32\ntdll.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\scavengeui.dll
2017-05-29 21:22:39 ----A---- C:\Windows\system32\quartz.dll
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-05-29 21:22:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-05-29 21:22:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2017-05-29 21:22:38 ----A---- C:\Windows\system32\lsasrv.dll
2017-05-29 21:22:37 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-05-29 21:22:37 ----A---- C:\Windows\system32\rpcrt4.dll
2017-05-29 21:22:36 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\win32spl.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\samsrv.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\msctf.dll
2017-05-29 21:22:36 ----A---- C:\Windows\system32\audiosrv.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\UIAnimation.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\schannel.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\kerberos.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\inetcomm.dll
2017-05-29 21:22:35 ----A---- C:\Windows\system32\authui.dll
2017-05-29 21:22:35 ----A---- C:\Windows\HelpPane.exe
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\msctf.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\SYSWOW64\authui.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\IMJP10K.DLL
2017-05-29 21:22:34 ----A---- C:\Windows\system32\evr.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\AUDIOKSE.dll
2017-05-29 21:22:34 ----A---- C:\Windows\system32\atmfd.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\WebClnt.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\usp10.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\crypt32.dll
2017-05-29 21:22:33 ----A---- C:\Windows\system32\advapi32.dll
2017-05-29 21:22:32 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\winload.exe
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drmmgrtn.dll
2017-05-29 21:22:32 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2017-05-29 21:22:30 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\user32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\oleaut32.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\msv1_0.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\KernelBase.dll
2017-05-29 21:22:30 ----A---- C:\Windows\system32\drivers\srv.sys
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2017-05-29 21:22:29 ----A---- C:\Windows\system32\qdvd.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\pla.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\kernel32.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2017-05-29 21:22:29 ----A---- C:\Windows\system32\cryptui.dll
2017-05-29 21:22:29 ----A---- C:\Windows\system32\clfs.sys
2017-05-29 21:22:28 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-05-29 21:22:28 ----A---- C:\Windows\system32\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-05-29 21:22:27 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\drivers\cng.sys
2017-05-29 21:22:27 ----A---- C:\Windows\system32\cryptsvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\WsmAuto.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\wintrust.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\pcasvc.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\mfplat.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2017-05-29 21:22:26 ----A---- C:\Windows\system32\davclnt.dll
2017-05-29 21:22:26 ----A---- C:\Windows\system32\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2017-05-29 21:22:25 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\rpchttp.dll
2017-05-29 21:22:25 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-05-29 21:22:25 ----A---- C:\Windows\system32\cdosys.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ole32.dll
2017-05-29 21:22:24 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-05-29 21:22:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\msiexec.exe
2017-05-29 21:22:23 ----A---- C:\Windows\system32\EncDump.dll
2017-05-29 21:22:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-05-29 21:22:22 ----A---- C:\Windows\SYSWOW64\pla.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\ncrypt.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\mscms.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\gdi32.dll
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\fastfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\drivers\exfat.sys
2017-05-29 21:22:22 ----A---- C:\Windows\system32\consent.exe
2017-05-29 21:22:21 ----A---- C:\Windows\system32\certcli.dll
2017-05-29 21:22:21 ----A---- C:\Windows\system32\bcdedit.exe
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\netio.sys
2017-05-29 21:22:20 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-05-29 21:22:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\wmploc.DLL
2017-05-29 21:22:18 ----A---- C:\Windows\system32\cryptnet.dll
2017-05-29 21:22:18 ----A---- C:\Windows\system32\adtschema.dll
2017-05-29 21:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-05-29 21:22:15 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\wow64win.dll
2017-05-29 21:22:15 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-05-29 21:22:13 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-05-29 21:22:13 ----A---- C:\Windows\system32\drivers\bowser.sys
2017-05-29 21:22:13 ----A---- C:\Windows\system32\audiodg.exe
2017-05-29 21:22:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-05-29 21:22:12 ----A---- C:\Windows\system32\pdh.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-05-29 21:22:11 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\winsrv.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\mfps.dll
2017-05-29 21:22:11 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-05-29 21:22:09 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-05-29 21:22:08 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2017-05-29 21:22:07 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\wow64.dll
2017-05-29 21:22:05 ----A---- C:\Windows\system32\cryptsp.dll
2017-05-29 21:22:04 ----A---- C:\Windows\system32\rpcss.dll
2017-05-29 21:22:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\wdigest.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\TSpkg.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\drivers\afd.sys
2017-05-29 21:22:03 ----A---- C:\Windows\system32\appinfo.dll
2017-05-29 21:22:03 ----A---- C:\Windows\system32\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\SYSWOW64\adsmsext.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\srcore.dll
2017-05-29 21:22:02 ----A---- C:\Windows\system32\drivers\tdx.sys
2017-05-29 21:21:59 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-05-29 21:21:56 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\input.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2017-05-29 21:21:56 ----A---- C:\Windows\system32\conhost.exe
2017-05-29 21:21:56 ----A---- C:\Windows\system32\bcrypt.dll
2017-05-29 21:21:56 ----A---- C:\Windows\system32\appidsvc.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\icm32.dll
2017-05-29 21:21:55 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-05-29 21:21:55 ----A---- C:\Windows\system32\asycfilt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\mfps.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\input.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-05-29 21:21:54 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-05-29 21:21:53 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2017-05-29 21:21:53 ----A---- C:\Windows\system32\msscp.dll
2017-05-29 21:21:53 ----A---- C:\Windows\system32\drivers\appid.sys
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\mfmjpegdec.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\hlink.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\csrsrv.dll
2017-05-29 21:21:52 ----A---- C:\Windows\system32\appidapi.dll
2017-05-29 21:21:51 ----A---- C:\Windows\system32\samlib.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\smss.exe
2017-05-29 21:21:50 ----A---- C:\Windows\system32\oleres.dll
2017-05-29 21:21:50 ----A---- C:\Windows\system32\cryptbase.dll
2017-05-29 21:21:49 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\rstrui.exe
2017-05-29 21:21:49 ----A---- C:\Windows\system32\nlsbres.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\msihnd.dll
2017-05-29 21:21:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-05-29 21:21:47 ----A---- C:\Windows\system32\secur32.dll
2017-05-29 21:21:47 ----A---- C:\Windows\system32\lsass.exe
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\SYSWOW64\msscp.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\sspicli.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\ntvdm64.dll
2017-05-29 21:21:46 ----A---- C:\Windows\system32\msnetobj.dll
2017-05-29 21:21:45 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\msaudite.dll
2017-05-29 21:21:45 ----A---- C:\Windows\system32\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-05-29 21:21:44 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-05-29 21:21:44 ----A---- C:\Windows\system32\srclient.dll
2017-05-29 21:21:43 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2017-05-29 21:21:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-05-29 21:21:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\pcadm.dll
2017-05-29 21:21:41 ----A---- C:\Windows\system32\mfpmp.exe
2017-05-29 21:21:41 ----A---- C:\Windows\system32\credssp.dll
2017-05-29 21:21:39 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2017-05-29 21:21:38 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2017-05-29 21:21:38 ----A---- C:\Windows\system32\rrinstaller.exe
2017-05-29 21:21:37 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-29 21:21:36 ----A---- C:\Windows\system32\cdd.dll
2017-05-29 21:21:35 ----A---- C:\Windows\SYSWOW64\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\wsmprovhost.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcawrk.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\pcalua.exe
2017-05-29 21:21:35 ----A---- C:\Windows\system32\atmlib.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\lpk.dll
2017-05-29 21:21:34 ----A---- C:\Windows\system32\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2017-05-29 21:21:33 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\wsmplpxy.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\sspisrv.dll
2017-05-29 21:21:33 ----A---- C:\Windows\system32\msmmsp.dll
2017-05-29 21:21:32 ----A---- C:\Windows\system32\plasrv.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\lpk.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\SYSWOW64\comcat.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\wow64cpu.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\spwmp.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\fontsub.dll
2017-05-29 21:21:31 ----A---- C:\Windows\system32\comcat.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-29 21:21:30 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2017-05-29 21:21:30 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\dxmasf.dll
2017-05-29 21:21:30 ----A---- C:\Windows\system32\apisetschema.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-29 21:21:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\user.exe
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\mferror.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-05-29 21:21:29 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\WsmRes.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\pcaevts.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msobjs.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\msimsg.dll
2017-05-29 21:21:29 ----A---- C:\Windows\system32\INETRES.dll
2017-05-29 21:21:28 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\tzres.dll
2017-05-29 21:21:28 ----A---- C:\Windows\system32\mferror.dll
2017-05-29 21:21:27 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-05-29 21:21:27 ----A---- C:\Windows\system32\msxml3r.dll
2017-05-29 20:21:13 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2017-05-29 19:59:42 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbhub.sys
2017-05-29 19:59:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2017-05-29 19:59:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2017-05-29 19:59:39 ----A---- C:\Windows\system32\drivers\usbd.sys
2017-05-29 19:59:25 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-05-29 19:59:25 ----A---- C:\Windows\system32\shell32.dll
2017-05-29 19:59:24 ----A---- C:\Windows\SYSWOW64\explorer.exe
2017-05-29 19:59:24 ----A---- C:\Windows\explorer.exe
2017-05-29 19:59:23 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2017-05-29 19:59:23 ----A---- C:\Windows\system32\ExplorerFrame.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\invagent.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\generaltel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\devinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-05-29 19:59:12 ----A---- C:\Windows\system32\centel.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\appraiser.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aepic.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\aeinv.dll
2017-05-29 19:59:12 ----A---- C:\Windows\system32\acmigration.dll
2017-05-29 19:58:48 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2017-05-29 19:58:48 ----A---- C:\Windows\system32\poqexec.exe
2017-05-29 19:31:41 ----A---- C:\Windows\system32\aswBoot.exe
====== List of files/folders modified in the last 1 month ======
2017-06-01 20:16:43 ----D---- C:\Program Files\trend micro
2017-06-01 20:16:37 ----D---- C:\Users\jitka\AppData\Roaming\Seznam.cz
2017-06-01 20:16:27 ----D---- C:\Windows\Temp
2017-06-01 20:09:42 ----D---- C:\Windows\system32\config
2017-06-01 20:09:04 ----A---- C:\Windows\SYSWOW64\log.txt
2017-06-01 20:07:05 ----D---- C:\Program Files (x86)\Google
2017-06-01 18:39:31 ----HD---- C:\ProgramData
2017-06-01 18:35:29 ----D---- C:\AdwCleaner
2017-05-31 20:33:47 ----D---- C:\Windows\system32\drivers
2017-05-31 19:43:53 ----D---- C:\Windows\system32\Tasks
2017-05-31 19:36:08 ----D---- C:\Program Files (x86)\Opera
2017-05-31 19:34:13 ----D---- C:\Windows\system32\Macromed
2017-05-30 23:21:43 ----D---- C:\Windows\SysWOW64
2017-05-30 23:21:43 ----D---- C:\Windows\System32
2017-05-30 23:21:14 ----SHD---- C:\System Volume Information
2017-05-30 23:11:21 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-05-30 21:56:40 ----D---- C:\Windows\winsxs
2017-05-30 21:30:50 ----D---- C:\Windows\Microsoft.NET
2017-05-30 21:27:01 ----RSD---- C:\Windows\assembly
2017-05-30 21:22:22 ----D---- C:\Windows\inf
2017-05-30 21:22:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-05-30 21:05:55 ----D---- C:\Program Files\Internet Explorer
2017-05-30 21:05:53 ----D---- C:\Program Files\Windows Media Player
2017-05-30 21:05:53 ----D---- C:\Program Files\DVD Maker
2017-05-30 21:05:52 ----D---- C:\Program Files (x86)\Internet Explorer
2017-05-30 21:05:51 ----D---- C:\Windows\SYSWOW64\migration
2017-05-30 21:05:51 ----D---- C:\Program Files (x86)\Windows Media Player
2017-05-30 21:05:50 ----D---- C:\Windows\SYSWOW64\Dism
2017-05-30 21:05:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-05-30 21:05:47 ----D---- C:\Windows\SYSWOW64\en-US
2017-05-30 21:05:37 ----D---- C:\Windows\PolicyDefinitions
2017-05-30 21:05:36 ----D---- C:\Windows\system32\migration
2017-05-30 21:05:36 ----D---- C:\Windows\system32\Dism
2017-05-30 21:05:35 ----D---- C:\Windows\system32\cs-CZ
2017-05-30 21:05:33 ----D---- C:\Windows\system32\en-US
2017-05-30 21:05:20 ----D---- C:\Windows\AppPatch
2017-05-30 21:05:20 ----AD---- C:\Windows
2017-05-30 21:05:16 ----D---- C:\Windows\system32\Boot
2017-05-30 20:55:45 ----SHD---- C:\Windows\Installer
2017-05-30 20:55:41 ----SHD---- C:\Config.Msi
2017-05-30 20:51:50 ----RD---- C:\Program Files (x86)
2017-05-30 20:25:51 ----D---- C:\Windows\Logs
2017-05-30 20:17:17 ----D---- C:\Program Files\Windows Journal
2017-05-30 20:17:11 ----D---- C:\Windows\system32\drivers\cs-CZ
2017-05-30 20:17:08 ----D---- C:\Windows\cs-CZ
2017-05-30 20:17:07 ----SD---- C:\Windows\system32\CompatTel
2017-05-30 20:17:06 ----D---- C:\Windows\system32\appraiser
2017-05-30 20:17:02 ----D---- C:\Windows\system32\DriverStore
2017-05-30 20:16:11 ----D---- C:\Program Files\Microsoft Silverlight
2017-05-30 20:16:10 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wfp
2017-05-30 05:16:26 ----D---- C:\Windows\system32\wbem
2017-05-30 05:16:26 ----D---- C:\Windows\system32\NDF
2017-05-30 05:16:24 ----D---- C:\Windows\system32\drivers\UMDF
2017-05-30 05:16:24 ----D---- C:\Users\jitka\AppData\Roaming\vlc
2017-05-30 05:16:06 ----D---- C:\Program Files
2017-05-30 05:15:49 ----D---- C:\Program Files (x86)\AcerCrystalEye
2017-05-30 05:15:10 ----D---- C:\Windows\registration
2017-05-30 05:12:27 ----D---- C:\ProgramData\AVAST Software
2017-05-29 21:35:26 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-05-29 21:31:59 ----D---- C:\Windows\system32\catroot2
2017-05-29 21:28:19 ----D---- C:\Windows\system32\MRT
2017-05-29 21:25:30 ----D---- C:\Windows\debug
2017-05-29 21:25:10 ----AC---- C:\Windows\system32\MRT.exe
2017-05-29 20:31:35 ----D---- C:\Windows\Tasks
2017-05-29 20:31:35 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-05-29 20:31:19 ----D---- C:\Windows\SYSWOW64\Macromed
File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\SysWOW64\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\SysWOW64\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\SysWOW64\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\SysWOW64\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-05-29 190256]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-05-29 334576]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-05-29 49016]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-05-29 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-05-29 339696]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-04-13 540696]
R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2009-03-09 69664]
R0 NBVol;Nero Backup Volume Filter Driver; C:\Windows\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
R0 NBVolUp;Nero Backup Volume Upper Filter Driver; C:\Windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-05-29 311808]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-05-29 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-05-29 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-05-29 1007160]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-05-29 569192]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-05-29 128648]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-01-10 12311904]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2010-02-27 158976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-06-22 2399848]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-02-03 271872]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2010-05-15 384040]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-28 18432]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-12-10 301104]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-04-28 17408]
S2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-05-29 158880]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-05-29 38296]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-06-03 4171328]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-06-25 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-06-25 102952]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-06-25 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-06-25 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-06-25 21544]
S3 netr28ux;RT2870 USB Wireless LAN Card Driver pro systém Windows Vista; C:\Windows\system32\DRIVERS\netr28ux.sys [2009-06-10 867328]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2011-08-17 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2011-08-17 171008]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-06-17 246376]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-05-29 263304]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-25 952096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll" = %SystemRoot%\system32\diagtrack.dll
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-06-11 868896]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-04-13 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-18 2320920]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-16 271920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-03-26 105096]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-03-26 125064]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-29 271864]
S3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-05-29 7346208]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-02-09 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-04-16 116224]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-11-24 172488]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-04-13 792112]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-13 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-26 51320]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-26 135800]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - moc děkuji
Smazáno. Dvouklikem na soubor spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.111.2.158/activex/AxisCamControl.cab
O16 - DPF: {9F1C0B35-8230-4176-8B99-5C2485121A4E} (SNCActiveXViewerControl Class) - http://213.29.153.37:50000/program/SNCActiveXViewer.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - moc děkuji
Vypadá to, že je problém vyřešen. Děkuji
- Rudy
- Site Admin

- Příspěvky: 119670
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - moc děkuji
Tak to jsem rád.
Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?