Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

vyskakujuce okno v prohlizeci a spousteni cmd okna

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
3S0
Návštěvník
Návštěvník
Příspěvky: 39
Registrován: 20 črc 2007 10:04

vyskakujuce okno v prohlizeci a spousteni cmd okna

#1 Příspěvek od 3S0 »

Dobry den, od vcera mam problem s vyskakujucim oknom chrome so spamom. Zaroven sa mi nahodne otvara cmd window s vysledkami prikazu ipconfig. Podarilo sa mi najst a odstranit dva trojany. Prikladam sem pre istotu log na kontrolu. Dakujem.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Filip at 2014-10-19 17:36:20
Microsoft Windows 8.1
System drive C: has 423 GB (61%) free of 695 GB
Total RAM: 8081 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:36:21, on 19.10.2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
C:\Users\Filip\AppData\Local\Temp\notepad .exe
C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\HP SimplePass\TouchControl.exe
C:\Program Files\trend micro\Filip.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=HPNTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: STATISTICA Browser Helper - {990A8747-93BF-4EF7-B72E-94A6884B98C2} - C:\Program Files\StatSoft\STATISTICA 12\Support\StaBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Filip\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [VMware Workstation] C:\Users\Filip\AppData\Local\Temp\svchost.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_5E2962162D4B072B6E1EFC2A5EDAF262] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem22.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TrueAPI Service component (TrueService) - AuthenTec, Inc. - C:\Program Files\Common Files\AuthenTec\TrueService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Validity WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\Windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 12551 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-11a116d1-0e0d-42b8-b28c-89580f017021 -SystemEventPortName:HostProcess-3e74d5dd-7ebb-46b8-9336-5a53ee0dbbc1 -IoCancelEventPortName:HostProcess-923e9efa-e0ff-4829-a4b3-30ba697e38dd -NonStateChangingEventPortName:HostProcess-eb9d24b7-13da-413a-bcc6-3c1aac38a4ef -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:743ab9af-60af-4948-ba3c-e5500a311f52 -DeviceGroupId:WudfDefaultDevicePool
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-0412b2e5-3a35-4c46-9c7b-6635094a9e43 -SystemEventPortName:HostProcess-b6e412d7-0f6a-4dd3-8790-490019058037 -IoCancelEventPortName:HostProcess-32e64a41-70eb-4560-af29-9b232e52d17c -NonStateChangingEventPortName:HostProcess-b55e2712-c844-41f3-a0bd-c044cc9606cb -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:0f2ab444-6bba-42d8-8233-d34244787acf -DeviceGroupId:
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 940446612016
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {eca99316-beb0-44c0-93d1c1b8f8b88f93}
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
C:\WINDOWS\SysWOW64\PnkBstrB.exe
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Windows\system32\valWBFPolicyService.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs

"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe" /byrunkey
C:\WINDOWS\explorer.exe
"C:\Users\Filip\AppData\Local\Temp\notepad .exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation

igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\TortoiseSVN\bin\TSVNCache.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="8208.0.139504006\1210223922" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,16 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3621 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="8208.2.1767568730\440400203" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="8208.3.746728901\361466675" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_15/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="8208.4.1190687443\437137524" /prefetch:673131151

"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.4.9600.16384_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\HP SimplePass\TouchControl.exe"
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Filip\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForFilip.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForFilip (null)
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Filip\AppData\Roaming\Mozilla\Firefox\Profiles\kw7qhech.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1206147.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@authentec.com/ffwloplugin]
"Description"=
"Path"=C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.0.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.0.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre8\bin\ssv.dll [2014-03-20 553368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2}]
STATISTICA Browser Helper - C:\Program Files\StatSoft\STATISTICA 12\StaBHO.dll [2013-04-02 281088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre8\bin\jp2ssv.dll [2014-03-20 210840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{432dd630-7e03-4c97-9d62-b99f52df4fc2}]
Microsoft Web Test Recorder 12.0 Helper - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2013-10-05 71520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2}]
STATISTICA Browser Helper - C:\Program Files\StatSoft\STATISTICA 12\Support\StaBHO.dll [2013-04-01 232448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-04-12 7770936]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-25 2916152]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-11-02 1664000]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2013-11-29 2273056]
"IntelPROSet"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2014-01-08 4876016]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-10-07 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Filip\AppData\Roaming\uTorrent\uTorrent.exe [2014-10-08 1385808]
""= []
"VMware Workstation"=C:\Users\Filip\AppData\Local\Temp\svchost.exe [2014-10-03 477696]
"GoogleChromeAutoLaunch_5E2962162D4B072B6E1EFC2A5EDAF262"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2014-10-01 854344]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-09-07 581024]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2013-03-10 88984]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-21 959904]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-03-04 224128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-10-18 22:23:38 ----D---- C:\Users\Filip\AppData\Roaming\QuickScan
2014-10-18 22:07:12 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-10-16 21:45:37 ----D---- C:\Users\Filip\AppData\Roaming\24A5DA5E-7353-4BA2-8679-BB01F14135F8
2014-10-16 20:18:16 ----D---- C:\Program Files (x86)\SP68425
2014-10-16 20:04:06 ----D---- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-10-16 19:01:25 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-10-16 19:01:25 ----A---- C:\WINDOWS\system32\packager.dll
2014-10-16 19:00:33 ----A---- C:\WINDOWS\system32\win32k.sys
2014-10-16 18:59:45 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-10-16 18:59:44 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-10-16 18:59:40 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-10-16 18:59:39 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-10-16 18:59:38 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-10-16 18:59:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\system32\wininet.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-10-16 18:59:34 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-10-16 18:59:32 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-10-16 18:58:19 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-10-16 18:58:18 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-10-16 18:58:17 ----A---- C:\WINDOWS\system32\winbici.dll
2014-10-16 18:58:05 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-10-16 18:58:05 ----A---- C:\WINDOWS\system32\rastls.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wups2.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wups.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-10-16 18:57:12 ----A---- C:\WINDOWS\system32\shell32.dll
2014-10-16 18:57:11 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-10-16 18:57:10 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-10-16 18:57:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-10-16 18:57:07 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-10-16 18:57:06 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-10-16 18:57:06 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-10-16 18:57:05 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-10-16 18:57:03 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-10-16 18:57:03 ----A---- C:\WINDOWS\system32\propsys.dll
2014-10-16 18:56:59 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-10-16 18:56:58 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-10-16 18:56:52 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-10-16 18:56:51 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-10-16 18:56:50 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\system32\msi.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\system32\authui.dll
2014-10-16 18:56:35 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-10-16 18:56:35 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-10-05 20:38:21 ----D---- C:\Users\Filip\AppData\Roaming\Steam
2014-10-05 12:34:14 ----D---- C:\Program Files (x86)\Middle Earth Shadow of Mordor
2014-10-03 19:28:50 ----A---- C:\WINDOWS\RomeTW.ini
2014-10-02 18:15:15 ----D---- C:\Users\Filip\AppData\Roaming\Imminent
2014-10-02 17:48:22 ----D---- C:\Program Files (x86)\OpenAL
2014-10-02 17:48:22 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2014-10-02 17:48:22 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2014-09-27 16:37:26 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2014-09-27 16:06:41 ----D---- C:\Program Files (x86)\Lionhead Studios
2014-09-27 15:52:34 ----D---- C:\Users\Filip\AppData\Roaming\Seznam.cz
2014-09-25 20:13:48 ----RD---- C:\Program Files (x86)\Skype

======List of files/folders modified in the last 1 month======

2014-10-19 17:36:21 ----D---- C:\Program Files\trend micro
2014-10-19 17:34:16 ----D---- C:\WINDOWS\Prefetch
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\TeamViewer
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\Media Player Classic
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\DAEMON Tools Lite
2014-10-19 17:26:31 ----D---- C:\Program Files (x86)\Steam
2014-10-19 17:26:30 ----D---- C:\Users\Filip\AppData\Roaming\uTorrent
2014-10-19 17:26:30 ----D---- C:\Users\Filip\AppData\Roaming\TS3Client
2014-10-19 17:26:19 ----DC---- C:\WINDOWS\Panther
2014-10-19 17:26:19 ----D---- C:\WINDOWS\SoftwareDistribution
2014-10-19 17:26:19 ----D---- C:\WINDOWS\Minidump
2014-10-19 17:26:19 ----D---- C:\WINDOWS\Logs
2014-10-19 17:26:19 ----D---- C:\WINDOWS\Inf
2014-10-19 17:26:19 ----D---- C:\WINDOWS\debug
2014-10-19 17:26:19 ----D---- C:\Windows
2014-10-19 17:26:16 ----D---- C:\WINDOWS\Temp
2014-10-19 17:17:51 ----D---- C:\WINDOWS\system32\sru
2014-10-19 17:11:04 ----D---- C:\Program Files\CCleaner
2014-10-19 17:07:43 ----D---- C:\WINDOWS\system32\config
2014-10-19 17:07:36 ----RD---- C:\WINDOWS\System32
2014-10-19 17:07:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-19 17:03:16 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-10-19 17:00:26 ----D---- C:\WINDOWS\system32\catroot2
2014-10-19 16:59:34 ----D---- C:\WINDOWS\SYSWOW64\NV
2014-10-19 16:59:34 ----D---- C:\WINDOWS\system32\NV
2014-10-19 16:44:51 ----RD---- C:\Program Files (x86)
2014-10-19 16:42:43 ----D---- C:\Program Files\SASHome
2014-10-19 16:34:44 ----RD---- C:\Program Files
2014-10-19 16:34:42 ----D---- C:\Program Files\OpenVPN
2014-10-19 16:25:21 ----HD---- C:\ProgramData
2014-10-19 16:24:30 ----D---- C:\Program Files (x86)\Apache Software Foundation
2014-10-18 22:15:34 ----D---- C:\WINDOWS\pss
2014-10-18 22:07:22 ----D---- C:\WINDOWS\Microsoft.NET
2014-10-18 22:07:18 ----D---- C:\WINDOWS\WinSxS
2014-10-18 22:07:12 ----D---- C:\WINDOWS\SysWOW64
2014-10-18 22:00:47 ----D---- C:\WINDOWS\MediaViewer
2014-10-18 22:00:47 ----D---- C:\WINDOWS\FileManager
2014-10-18 22:00:47 ----D---- C:\WINDOWS\Camera
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-10-18 22:00:38 ----D---- C:\WINDOWS\system32\en-GB
2014-10-18 22:00:38 ----D---- C:\WINDOWS\system32\cs-CZ
2014-10-18 22:00:38 ----D---- C:\Program Files\Internet Explorer
2014-10-18 22:00:38 ----D---- C:\Program Files (x86)\Internet Explorer
2014-10-18 22:00:37 ----D---- C:\WINDOWS\system32\en-US
2014-10-18 22:00:35 ----RD---- C:\WINDOWS\ToastData
2014-10-18 22:00:30 ----D---- C:\WINDOWS\WinStore
2014-10-18 22:00:28 ----D---- C:\WINDOWS\system32\drivers
2014-10-18 22:00:26 ----D---- C:\WINDOWS\system32\DriverStore
2014-10-18 21:50:53 ----D---- C:\Users\Filip\AppData\Roaming\Skype
2014-10-18 17:46:11 ----RSD---- C:\WINDOWS\assembly
2014-10-18 17:41:47 ----D---- C:\WINDOWS\CbsTemp
2014-10-18 17:37:34 ----D---- C:\WINDOWS\system32\MRT
2014-10-18 17:30:10 ----A---- C:\WINDOWS\system32\MRT.exe
2014-10-16 20:10:14 ----D---- C:\SWSetup
2014-10-16 20:09:38 ----D---- C:\WINDOWS\Tasks
2014-10-16 20:09:38 ----D---- C:\WINDOWS\system32\Tasks
2014-10-16 20:08:35 ----A---- C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-16 20:06:34 ----SHD---- C:\WINDOWS\Installer
2014-10-16 20:06:04 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-10-16 20:05:26 ----D---- C:\Program Files (x86)\Hewlett-Packard
2014-10-16 20:02:01 ----D---- C:\ProgramData\Hewlett-Packard
2014-10-16 19:58:04 ----SHD---- C:\System Volume Information
2014-10-11 07:53:25 ----HD---- C:\WINDOWS\system32\WLANProfiles
2014-10-03 19:38:11 ----D---- C:\Program Files (x86)\Activision
2014-10-02 18:09:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-10-02 18:09:07 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-02 17:48:22 ----A---- C:\WINDOWS\SYSWOW64\wrap_oal.dll
2014-10-02 17:48:22 ----A---- C:\WINDOWS\SYSWOW64\OpenAL32.dll
2014-10-02 17:45:30 ----D---- C:\ProgramData\Package Cache
2014-09-27 15:52:04 ----D---- C:\WINDOWS\system32\catroot
2014-09-25 20:13:50 ----D---- C:\ProgramData\Skype
2014-09-25 20:13:49 ----D---- C:\Program Files (x86)\Common Files
2014-09-25 17:56:36 ----D---- C:\WINDOWS\rescache
2014-09-22 08:42:39 ----N---- C:\WINDOWS\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;@oem22.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-11-14 32544]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2013-03-04 40344]
R1 VBoxDrv;VirtualBox Service; C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys [2014-03-26 254240]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys [2014-03-26 128288]
R3 Accelerometer;@oem22.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2013-03-28 1366328]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2013-01-15 69240]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-05-21 3791872]
R3 IntcDAud;@oem47.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-05-07 27032]
R3 MEIx64;@oem25.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-01-11 64624]
R3 NETwNe64;@oem66.inf,%NIC_Service_DispName_WIN8_64%;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2014-04-26 3349984]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-11-14 12613408]
R3 pppop;@oem24.inf,%VER_DEVICE_STR% Adapter;PPPoP WAN Adapter; C:\WINDOWS\system32\DRIVERS\pppop64.sys [2011-03-21 42528]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsSimulatorDriver;@oem38.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-08-25 43832]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-11-02 542208]
R3 SynTP;@oem3.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-08-25 448312]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 VBoxNetFlt;@oem49.inf,%VBoxNetFltService_Desc%;VirtualBox Bridged Networking Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys [2014-03-26 156448]
R3 VClone;VClone; C:\WINDOWS\System32\drivers\VClone.sys [2013-07-24 34816]
S0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
S3 AMPPAL;Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed Virtual Adapter; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-04-11 165344]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys []
S3 ggflt;@oem16.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-07-09 16088]
S3 ggsomc;@oem16.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-07-09 30424]
S3 intaud_WaveExtensible;@oem28.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-05-07 38296]
S3 ManyCam;@oem63.inf,%ManyCam.DeviceDesc%;ManyCam Virtual Webcam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [2013-11-27 52128]
S3 mcaudrv_simple;@oem64.inf,%mcaudrv_simple.SvcDesc%;ManyCam Virtual Microphone; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [2013-12-06 35232]
S3 mdareDriver_43;mdareDriver_43; \??\C:\Program Files (x86)\Fortinet\FortiClient\mdare64_43.sys []
S3 RSP2STOR;@oem5.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2012-06-14 266896]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-25 41272]
S3 tap0901;@oem56.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 tapoas;@oem61.inf,%DeviceDescription%;TAP-Win32 Adapter OAS; C:\WINDOWS\system32\DRIVERS\tapoas.sys [2010-08-03 30720]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
S3 VBoxNetAdp;@oem55.inf,%VBoxNetAdp_Desc%;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2014-03-26 141600]
S4 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-03-18 1124728]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-03-18 1161592]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-08 631024]
R2 FPLService;TrueSuiteService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [2013-02-07 1641768]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 hpsrv;@oem22.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-09-24 31040]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-09-07 35232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-05-21 314696]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-18 128896]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-04-15 161736]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-10 139856]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-11-29 1370912]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2013-11-11 922912]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2014-05-29 75136]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\syswow64\PnkBstrB.exe [2014-05-29 189248]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-08 154864]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2013-11-02 323072]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R2 valWBFPolicyService;Validity WBF Policy Service; C:\Windows\system32\valWBFPolicyService.exe [2012-09-06 28160]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-06-07 1129760]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2013-10-19 5632]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-05-21 278344]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2013-08-22 142336]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-06 119408]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-08 284912]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-09-23 833728]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-22 119808]
S3 TrueService;TrueAPI Service component; C:\Program Files\Common Files\AuthenTec\TrueService.exe [2013-01-07 401856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#2 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

3S0
Návštěvník
Návštěvník
Příspěvky: 39
Registrován: 20 črc 2007 10:04

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#3 Příspěvek od 3S0 »

Vystup z logu

# AdwCleaner v4.000 - Report created 19/10/2014 at 18:47:44
# DB v2014-10-19.11
# Updated 12/10/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Filip - SOOY
# Running from : C:\Users\Filip\Downloads\adwcleaner_4.000.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : valWBFPolicyService

***** [ Files / Folders ] *****

File Deleted : C:\WINDOWS\System32\valWBFPolicyService.exe
File Deleted : C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Trymedia Systems
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\lucky leap

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17344


-\\ Mozilla Firefox v30.0 (en-US)


-\\ Google Chrome v38.0.2125.101

Deleted [Search Provider] : hxxp://www.daemon-search.com/search?q={searchTerms}

*************************

AdwCleaner[R0].txt - [2451 octets] - [19/10/2014 18:44:12]
AdwCleaner[S0].txt - [2113 octets] - [19/10/2014 18:47:44]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2173 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

3S0
Návštěvník
Návštěvník
Příspěvky: 39
Registrován: 20 črc 2007 10:04

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#5 Příspěvek od 3S0 »

Medzitim mi antivirak detekoval problem v appdata\local\temp\svchost.exe a appdata\local\temp\iconsaver\iconsaver.exe
Zakrantenoval ich a ja som ich potom zmazal.

Prikladam log z rsit

Logfile of random's system information tool 1.10 (written by random/random)
Run by Filip at 2014-10-19 19:36:29
Microsoft Windows 8.1
System drive C: has 426 GB (61%) free of 695 GB
Total RAM: 8081 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:36:34, on 19.10.2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\HP SimplePass\TouchControl.exe
C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Filip.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: STATISTICA Browser Helper - {990A8747-93BF-4EF7-B72E-94A6884B98C2} - C:\Program Files\StatSoft\STATISTICA 12\Support\StaBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Filip\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_5E2962162D4B072B6E1EFC2A5EDAF262] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Bitdefender Antivirus Free Edition (gzserv) - Bitdefender - C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem22.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TrueAPI Service component (TrueService) - AuthenTec, Inc. - C:\Program Files\Common Files\AuthenTec\TrueService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 11982 bytes

======Listing Processes======





wininit.exe


winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe" /service
"C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d626a1a3-8e37-4dac-b52d-2a01eb3d59c9 -SystemEventPortName:HostProcess-1ed13cb9-ceba-4931-ac35-9fb7fca31129 -IoCancelEventPortName:HostProcess-b152c16c-625a-4def-a470-61b22a7eb61d -NonStateChangingEventPortName:HostProcess-a596bf17-51be-48de-a8ab-09226e5dd082 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:159134f5-060a-47eb-b384-36f6bd870b8d -DeviceGroupId:WudfDefaultDevicePool
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b482abc0-0c6c-4551-ab7a-42efc9506134 -SystemEventPortName:HostProcess-f4a6ddee-14c8-4ecb-b90b-890ca44b1575 -IoCancelEventPortName:HostProcess-a3e739dd-77b9-4b3f-ac0f-f0229b5fa96a -NonStateChangingEventPortName:HostProcess-0ed72bc8-8b56-4ebd-89b1-644d82d86e7e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d7a983de-c8f5-45ea-8265-3f8c90495159 -DeviceGroupId:
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 920361069088
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {6a2f811f-d588-430f-969cb80e0adefb2c}
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
taskhostex.exe
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
taskeng.exe {C81D90AF-FB68-4C07-A806-EDC13166C07D}
"C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe" -noshow
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\HP SimplePass\TouchControl.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
C:\WINDOWS\SysWOW64\PnkBstrB.exe
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe" /byrunkey
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {9BA05972-F6A8-11CF-A442-00A0C90A8F39} -Embedding
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\TortoiseSVN\bin\TSVNCache.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5568.0.236267055\1749885184" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,16 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3621 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5568.1.285068859\117588226" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5568.2.796565484\1489876618" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5568.3.1051912730\1238022200" /prefetch:673131151
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"

"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"

C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17246_none_fa4ae8e99b1f603c\TiWorker.exe -Embedding
"C:\Program Files\Bitdefender\Antivirus Free Edition\update.exe" GzUpdateShared_73d2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5568.12.1538066877\1959095674" /prefetch:673131151
"C:\Users\Filip\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForFilip.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForFilip (null)
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Filip\AppData\Roaming\Mozilla\Firefox\Profiles\kw7qhech.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1206147.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@authentec.com/ffwloplugin]
"Description"=
"Path"=C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.0.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.0.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre8\bin\ssv.dll [2014-03-20 553368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2}]
STATISTICA Browser Helper - C:\Program Files\StatSoft\STATISTICA 12\StaBHO.dll [2013-04-02 281088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre8\bin\jp2ssv.dll [2014-03-20 210840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{432dd630-7e03-4c97-9d62-b99f52df4fc2}]
Microsoft Web Test Recorder 12.0 Helper - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2013-10-05 71520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2}]
STATISTICA Browser Helper - C:\Program Files\StatSoft\STATISTICA 12\Support\StaBHO.dll [2013-04-01 232448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-04-12 7770936]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-25 2916152]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-11-02 1664000]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2013-11-29 2273056]
"IntelPROSet"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2014-01-08 4876016]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-10-07 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Filip\AppData\Roaming\uTorrent\uTorrent.exe [2014-10-08 1385808]
""= []
"GoogleChromeAutoLaunch_5E2962162D4B072B6E1EFC2A5EDAF262"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2014-10-01 854344]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-09-07 581024]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2013-03-10 88984]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-21 959904]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-03-04 224128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-10-19 19:01:55 ----D---- C:\ProgramData\GZ
2014-10-19 18:03:33 ----A---- C:\WINDOWS\system32\drivers\avchv.sys
2014-10-19 18:03:27 ----A---- C:\WINDOWS\system32\drivers\avckf.sys
2014-10-19 18:03:27 ----A---- C:\WINDOWS\system32\drivers\avc3.sys
2014-10-19 18:02:31 ----A---- C:\WINDOWS\system32\drivers\trufos.sys
2014-10-19 18:02:31 ----A---- C:\WINDOWS\system32\drivers\gzflt.sys
2014-10-19 17:43:40 ----D---- C:\Program Files\Bitdefender
2014-10-18 22:23:38 ----D---- C:\Users\Filip\AppData\Roaming\QuickScan
2014-10-18 22:07:12 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-10-16 21:45:37 ----D---- C:\Users\Filip\AppData\Roaming\24A5DA5E-7353-4BA2-8679-BB01F14135F8
2014-10-16 20:18:16 ----D---- C:\Program Files (x86)\SP68425
2014-10-16 20:04:06 ----D---- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-10-16 19:01:25 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-10-16 19:01:25 ----A---- C:\WINDOWS\system32\packager.dll
2014-10-16 19:00:33 ----A---- C:\WINDOWS\system32\win32k.sys
2014-10-16 18:59:45 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-10-16 18:59:44 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-10-16 18:59:40 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-10-16 18:59:39 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-10-16 18:59:38 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-10-16 18:59:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\system32\wininet.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-10-16 18:59:34 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-10-16 18:59:32 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-10-16 18:58:19 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-10-16 18:58:18 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-10-16 18:58:17 ----A---- C:\WINDOWS\system32\winbici.dll
2014-10-16 18:58:05 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-10-16 18:58:05 ----A---- C:\WINDOWS\system32\rastls.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wups2.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wups.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-10-16 18:57:12 ----A---- C:\WINDOWS\system32\shell32.dll
2014-10-16 18:57:11 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-10-16 18:57:10 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-10-16 18:57:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-10-16 18:57:07 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-10-16 18:57:06 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-10-16 18:57:06 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-10-16 18:57:05 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-10-16 18:57:03 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-10-16 18:57:03 ----A---- C:\WINDOWS\system32\propsys.dll
2014-10-16 18:56:59 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-10-16 18:56:58 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-10-16 18:56:52 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-10-16 18:56:51 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-10-16 18:56:50 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\system32\msi.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\system32\authui.dll
2014-10-16 18:56:35 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-10-16 18:56:35 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-10-05 20:38:21 ----D---- C:\Users\Filip\AppData\Roaming\Steam
2014-10-05 12:34:14 ----D---- C:\Program Files (x86)\Middle Earth Shadow of Mordor
2014-10-03 19:28:50 ----A---- C:\WINDOWS\RomeTW.ini
2014-10-02 18:15:15 ----D---- C:\Users\Filip\AppData\Roaming\Imminent
2014-10-02 17:48:22 ----D---- C:\Program Files (x86)\OpenAL
2014-10-02 17:48:22 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2014-10-02 17:48:22 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2014-09-27 16:37:26 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2014-09-27 16:06:41 ----D---- C:\Program Files (x86)\Lionhead Studios
2014-09-27 15:52:34 ----D---- C:\Users\Filip\AppData\Roaming\Seznam.cz
2014-09-25 20:13:48 ----RD---- C:\Program Files (x86)\Skype

======List of files/folders modified in the last 1 month======

2014-10-19 19:36:33 ----D---- C:\Program Files\trend micro
2014-10-19 19:35:44 ----D---- C:\Users\Filip\AppData\Roaming\uTorrent
2014-10-19 19:34:42 ----RD---- C:\WINDOWS\System32
2014-10-19 19:32:58 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-10-19 19:29:43 ----D---- C:\WINDOWS\Temp
2014-10-19 19:15:59 ----D---- C:\Windows
2014-10-19 19:15:21 ----D---- C:\WINDOWS\system32\DriverStore
2014-10-19 19:11:04 ----SHD---- C:\System Volume Information
2014-10-19 19:11:02 ----D---- C:\WINDOWS\Prefetch
2014-10-19 19:09:27 ----D---- C:\WINDOWS\system32\config
2014-10-19 19:09:27 ----D---- C:\WINDOWS\CbsTemp
2014-10-19 19:01:55 ----HD---- C:\ProgramData
2014-10-19 19:00:00 ----D---- C:\WINDOWS\system32\sru
2014-10-19 18:57:27 ----D---- C:\WINDOWS\Inf
2014-10-19 18:57:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-19 18:51:20 ----D---- C:\WINDOWS\SoftwareDistribution
2014-10-19 18:49:55 ----D---- C:\WINDOWS\SYSWOW64\NV
2014-10-19 18:49:54 ----D---- C:\WINDOWS\system32\NV
2014-10-19 18:48:58 ----D---- C:\WINDOWS\system32\drivers
2014-10-19 17:43:40 ----RD---- C:\Program Files
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\TeamViewer
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\Media Player Classic
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\DAEMON Tools Lite
2014-10-19 17:26:31 ----D---- C:\Program Files (x86)\Steam
2014-10-19 17:26:30 ----D---- C:\Users\Filip\AppData\Roaming\TS3Client
2014-10-19 17:26:19 ----DC---- C:\WINDOWS\Panther
2014-10-19 17:26:19 ----D---- C:\WINDOWS\Minidump
2014-10-19 17:26:19 ----D---- C:\WINDOWS\Logs
2014-10-19 17:26:19 ----D---- C:\WINDOWS\debug
2014-10-19 17:11:04 ----D---- C:\Program Files\CCleaner
2014-10-19 17:00:26 ----D---- C:\WINDOWS\system32\catroot2
2014-10-19 16:44:51 ----RD---- C:\Program Files (x86)
2014-10-19 16:42:43 ----D---- C:\Program Files\SASHome
2014-10-19 16:34:42 ----D---- C:\Program Files\OpenVPN
2014-10-19 16:33:45 ----D---- C:\Users\Filip\AppData\Roaming\NetBeans
2014-10-19 16:24:30 ----D---- C:\Program Files (x86)\Apache Software Foundation
2014-10-18 22:15:34 ----D---- C:\WINDOWS\pss
2014-10-18 22:07:22 ----D---- C:\WINDOWS\Microsoft.NET
2014-10-18 22:07:18 ----D---- C:\WINDOWS\WinSxS
2014-10-18 22:07:12 ----D---- C:\WINDOWS\SysWOW64
2014-10-18 22:00:47 ----D---- C:\WINDOWS\MediaViewer
2014-10-18 22:00:47 ----D---- C:\WINDOWS\FileManager
2014-10-18 22:00:47 ----D---- C:\WINDOWS\Camera
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-10-18 22:00:38 ----D---- C:\WINDOWS\system32\en-GB
2014-10-18 22:00:38 ----D---- C:\WINDOWS\system32\cs-CZ
2014-10-18 22:00:38 ----D---- C:\Program Files\Internet Explorer
2014-10-18 22:00:38 ----D---- C:\Program Files (x86)\Internet Explorer
2014-10-18 22:00:37 ----D---- C:\WINDOWS\system32\en-US
2014-10-18 22:00:35 ----RD---- C:\WINDOWS\ToastData
2014-10-18 22:00:30 ----D---- C:\WINDOWS\WinStore
2014-10-18 21:50:53 ----D---- C:\Users\Filip\AppData\Roaming\Skype
2014-10-18 17:46:11 ----RSD---- C:\WINDOWS\assembly
2014-10-18 17:37:34 ----D---- C:\WINDOWS\system32\MRT
2014-10-18 17:30:10 ----A---- C:\WINDOWS\system32\MRT.exe
2014-10-16 20:10:14 ----D---- C:\SWSetup
2014-10-16 20:09:38 ----D---- C:\WINDOWS\Tasks
2014-10-16 20:09:38 ----D---- C:\WINDOWS\system32\Tasks
2014-10-16 20:08:35 ----A---- C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-16 20:06:34 ----SHD---- C:\WINDOWS\Installer
2014-10-16 20:06:04 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-10-16 20:05:26 ----D---- C:\Program Files (x86)\Hewlett-Packard
2014-10-16 20:02:01 ----D---- C:\ProgramData\Hewlett-Packard
2014-10-11 07:53:25 ----HD---- C:\WINDOWS\system32\WLANProfiles
2014-10-03 19:38:11 ----D---- C:\Program Files (x86)\Activision
2014-10-02 18:09:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-10-02 18:09:07 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-02 17:48:22 ----A---- C:\WINDOWS\SYSWOW64\wrap_oal.dll
2014-10-02 17:48:22 ----A---- C:\WINDOWS\SYSWOW64\OpenAL32.dll
2014-10-02 17:45:30 ----D---- C:\ProgramData\Package Cache
2014-09-27 15:52:04 ----D---- C:\WINDOWS\system32\catroot
2014-09-25 20:13:50 ----D---- C:\ProgramData\Skype
2014-09-25 20:13:49 ----D---- C:\Program Files (x86)\Common Files
2014-09-25 17:56:36 ----D---- C:\WINDOWS\rescache
2014-09-22 08:42:39 ----N---- C:\WINDOWS\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\WINDOWS\system32\DRIVERS\avc3.sys [2013-04-17 718840]
R0 hpdskflt;@oem22.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-11-14 32544]
R0 trufos;trufos; C:\WINDOWS\system32\DRIVERS\trufos.sys [2013-05-28 382536]
R1 bdfwfpf;bdfwfpf; \??\C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [2013-07-02 121928]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2013-03-04 40344]
R1 gzflt;gzflt; C:\WINDOWS\system32\DRIVERS\gzflt.sys [2013-04-22 148696]
R1 VBoxDrv;VirtualBox Service; C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys [2014-03-26 254240]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys [2014-03-26 128288]
R3 Accelerometer;@oem22.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 avckf;avckf; C:\WINDOWS\system32\DRIVERS\avckf.sys [2013-04-17 593144]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2013-03-28 1366328]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2013-01-15 69240]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-05-21 3791872]
R3 IntcDAud;@oem47.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-05-07 27032]
R3 MEIx64;@oem25.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-01-11 64624]
R3 NETwNe64;@oem66.inf,%NIC_Service_DispName_WIN8_64%;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2014-04-26 3349984]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-11-14 12613408]
R3 pppop;@oem24.inf,%VER_DEVICE_STR% Adapter;PPPoP WAN Adapter; C:\WINDOWS\system32\DRIVERS\pppop64.sys [2011-03-21 42528]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsSimulatorDriver;@oem38.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-08-25 43832]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-11-02 542208]
R3 SynTP;@oem3.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-08-25 448312]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 VBoxNetFlt;@oem49.inf,%VBoxNetFltService_Desc%;VirtualBox Bridged Networking Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys [2014-03-26 156448]
R3 VClone;VClone; C:\WINDOWS\System32\drivers\VClone.sys [2013-07-24 34816]
S0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
S3 AMPPAL;Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed Virtual Adapter; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-04-11 165344]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys []
S3 ggflt;@oem16.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-07-09 16088]
S3 ggsomc;@oem16.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-07-09 30424]
S3 intaud_WaveExtensible;@oem28.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-05-07 38296]
S3 ManyCam;@oem63.inf,%ManyCam.DeviceDesc%;ManyCam Virtual Webcam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [2013-11-27 52128]
S3 mcaudrv_simple;@oem64.inf,%mcaudrv_simple.SvcDesc%;ManyCam Virtual Microphone; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [2013-12-06 35232]
S3 mdareDriver_43;mdareDriver_43; \??\C:\Program Files (x86)\Fortinet\FortiClient\mdare64_43.sys []
S3 RSP2STOR;@oem5.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2012-06-14 266896]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-25 41272]
S3 tap0901;@oem56.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 tapoas;@oem61.inf,%DeviceDescription%;TAP-Win32 Adapter OAS; C:\WINDOWS\system32\DRIVERS\tapoas.sys [2010-08-03 30720]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
S3 VBoxNetAdp;@oem55.inf,%VBoxNetAdp_Desc%;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2014-03-26 141600]
S4 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-03-18 1124728]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-03-18 1161592]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-08 631024]
R2 FPLService;TrueSuiteService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [2013-02-07 1641768]
R2 gzserv;Bitdefender Antivirus Free Edition; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [2013-10-23 69368]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 hpsrv;@oem22.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-09-24 31040]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-09-07 35232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-05-21 314696]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-18 128896]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-04-15 161736]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-10 139856]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-11-29 1370912]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2013-11-11 922912]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2014-05-29 75136]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\syswow64\PnkBstrB.exe [2014-05-29 189248]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-08 154864]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2013-11-02 323072]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-06-07 1129760]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2013-10-19 5632]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-05-21 278344]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2013-08-22 142336]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-06 119408]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-08 284912]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-09-23 833728]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-22 119808]
S3 TrueService;TrueAPI Service component; C:\Program Files\Common Files\AuthenTec\TrueService.exe [2013-01-07 401856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

3S0
Návštěvník
Návštěvník
Příspěvky: 39
Registrován: 20 črc 2007 10:04

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#7 Příspěvek od 3S0 »

Najprv sa dodatocne chcem podakovat za pomoc :)

Pri starte systemu po logine je pred zobrazenim dekstopu nejaku chvilu cierna obrazovka. V porovnani so spravanim systemu z pred par dni kedy sa to nedialo je to dost poznatelne.


Pre istotu log z OTM po restarte

All processes killed
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: .NET v2.0
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: .NET v2.0 Classic
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: .NET v4.5
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: .NET v4.5 Classic
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users

User: Classic .NET AppPool
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default.migrated

User: Filip
->Temp folder emptied: 53705104 bytes
->Temporary Internet Files folder emptied: 45233099 bytes
->Java cache emptied: 4882975 bytes
->FireFox cache emptied: 3409582 bytes
->Google Chrome cache emptied: 418068182 bytes
->Flash cache emptied: 595 bytes

User: hedev
->Temp folder emptied: 43164427 bytes

User: MSSQL$SQLEXPRESS
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 200704 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 242460251 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 774,00 mb


[EMPTYFLASH]

User: .NET v2.0

User: .NET v2.0 Classic

User: .NET v4.5

User: .NET v4.5 Classic

User: All Users

User: Classic .NET AppPool

User: Default

User: Default User

User: Default.migrated

User: Filip
->Flash cache emptied: 0 bytes

User: hedev

User: MSSQL$SQLEXPRESS

User: Public

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 10192014_195213

Files moved on Reboot...
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\alert_margin_left.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\alert_margin_left.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\alert_margin_right.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\alert_margin_right.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\alert_middle.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\alert_middle.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\award.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\award.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\back.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\back.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_award_flow.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_award_flow.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_install_steps.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_install_steps.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_tall.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_tall.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_uninstall.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\background_uninstall.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bd_logo.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bd_logo.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_AlertWindow.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_AlertWindow.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_header_image.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_header_image.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_number_events.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_number_events.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_number_events_active.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_number_events_active.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_number_events_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\bg_number_events_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\big_picture.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\big_picture.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\big_shadow.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\big_shadow.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo_active.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo_active.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo_disabled.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo_disabled.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\btn_combo_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button_active.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button_active.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button_disabled.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button_disabled.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\button_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_off.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_off.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_off_disabled.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_off_disabled.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_off_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_off_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_on.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_on.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_on_disabled.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_on_disabled.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_on_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\checkbox_on_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\close.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\close.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\delete_normal.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\delete_normal.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\details_button.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\details_button.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\feedback_banner.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\feedback_banner.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\flow_background.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\flow_background.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_alert.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_alert.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_critical.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_critical.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_critical_big.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_critical_big.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_done.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_done.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_done_big.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_done_big.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_informative.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_informative.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_notok.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_notok.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_ok.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_ok.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_sb.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_sb.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_skipped.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\icon_skipped.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\input_bg.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\input_bg.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_big_button.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_big_button.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_big_button_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_big_button_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_button.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_button.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_button_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\install_button_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\loader_install.gif scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\loader_install.gif.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\lock_normal.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\lock_normal.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\minimize.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\minimize.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\open_normal.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\open_normal.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\pending.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\pending.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\products_chart.jpg scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\products_chart.jpg.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\progress_bar_not_ok.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\progress_bar_not_ok.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\progress_bar_ok.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\progress_bar_ok.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\progress_bg.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\progress_bg.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\qs_scan_log.xsl scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\qs_scan_log.xsl.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\scroll_next.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\scroll_next.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\scroll_prev.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\scroll_prev.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_fb.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_fb.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_go.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_go.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_line.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_line.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_tabel.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_tabel.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_top_text.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_top_text.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_tw.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\share_tw.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\small_shadow.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\small_shadow.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sswitch_off.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sswitch_off.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sswitch_on.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sswitch_on.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\status_bg.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\status_bg.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sys_btn.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sys_btn.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sys_btn_active.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sys_btn_active.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sys_btn_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\sys_btn_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_feedback.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_feedback.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_feedback_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_feedback_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_left.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_left.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_left_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_left_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_right.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_right.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_right_hover.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\tabs_bg_right_hover.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\top_header_bg.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\top_header_bg.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\unlock_normal.png scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\images\unlock_normal.png.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\award_flow1.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\award_flow1.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\award_flow2.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\award_flow2.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\bdHtmlBox.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\bdHtmlBox.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\cpptexts.xlf scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\cpptexts.xlf.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\en-US.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\en-US.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\eula.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\eula.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\eula_text.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\eula_text.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\eula_text_en.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\eula_text_en.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\general.xlf scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\general.xlf.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\httpaph.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\httpaph.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\httpgeneric.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\httpgeneric.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\httpmalware.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\httpmalware.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\installer.xlf scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\installer.xlf.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\it-IT.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\it-IT.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\lang.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\lang.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\lang.xml.online scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\lang.xml.online.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\logs.xlf scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\logs.xlf.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\main.ui.css scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\main.ui.css.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\notifications.xlf scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\notifications.xlf.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\pt-BR.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\pt-BR.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\rem_confirm.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\rem_confirm.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\rem_confirm_p.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\rem_confirm_p.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\repair_progress.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\repair_progress.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\ro-RO.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\ro-RO.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\setup_progress.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\setup_progress.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\uninstall_progress.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\uninstall_progress.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\welcome.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\lang\welcome.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\ACA.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Ad-Aware.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Advanced_System_Protect.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\alading.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\AntiVir.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\avast5.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\AVG.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Avira.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\BackWeb-4476822.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\BBC.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Bitdefender 2011.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Bitdefender Anti-Theft.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Bitdefender Antivirus.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Bitdefender Bussiness Client.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Bitdefender Internet Security.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Bitdefender Total Security.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\BullGuard.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\cciss.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\COMODO.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\DRWEB.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\ESET.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\eTrust.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\F-Secure.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\G Data.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\GUIDs.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\JiangMin.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Kaspersky.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Kingsoft.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\kingsoftSafeguard.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\kv antivirus.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Lavasoft.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\McAfee.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\MicroPoint.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Microsoft Security Essentials.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Mobile.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\MSC.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Norman.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Norton.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\OfficeScan95.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\OfficeScanNT.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Panda.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\PC Tools.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Premium.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\qqpcmgr.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\qqprotect.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Rav.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\RFW.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Ris.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\safeguard360.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\ServerProtect.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\SunBelt.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Trend Micro.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\VETWIN32Vp5.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Virus.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\Webroot.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\WinSS.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\extern\ZoneAlarm.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\core\bdcore.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\core\bdcore.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\additional.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\additional.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\avcheck.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\avcheck.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdardrv.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdardrv.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdmetrics.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdmetrics.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdnc.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdnc.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdnc.ini scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdnc.ini.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\bdnc.ipv4 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\contacts.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\contacts.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\detection.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\gzflt.sys scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\gzflt.sys.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\gzfltum.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\gzfltum.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\htmlayout.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\htmlayout.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\Installer.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\Installer.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\installerpackage.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\installerpackage.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\install_x64.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\install_x64.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\install_x86.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\install_x86.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\no_connection.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\no_connection.html.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\npcomm.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\npcomm.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\qs_scan_log.html scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\qs_scan_log.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\qs_scan_log.xsl scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\qs_scan_log.xsl.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\servers.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\servers.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\setuplauncher.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\setuplauncher.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\standalone.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\standalone.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\ThreatScanner.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\ThreatScanner.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\trufos.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\trufos.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\trufos.sys scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\trufos.sys.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\unrar64.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\unrar64.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\update.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\update.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\update_config.xml scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\update_config.xml.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\UserGuide.pdf scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\UserGuide.pdf.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\WPFKickstarter.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\WPFKickstarter.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\WPFKickstarter4.exe scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\WPFKickstarter4.exe.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\wslib.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\wslib.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\wspack.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\wspack.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\wsutils.dll scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\RarSFX0\wsutils.dll.md5 scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Temp\gziface1.log scheduled to be moved on reboot.
File move failed. C:\Users\Filip\AppData\Local\Microsoft\Windows\INetCache\counters.dat scheduled to be moved on reboot.

Registry entries deleted on Reboot...

3S0
Návštěvník
Návštěvník
Příspěvky: 39
Registrován: 20 črc 2007 10:04

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#8 Příspěvek od 3S0 »

Log z RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Filip at 2014-10-19 19:58:14
Microsoft Windows 8.1
System drive C: has 426 GB (61%) free of 695 GB
Total RAM: 8081 MB (74% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:58:17, on 19.10.2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\HP SimplePass\TouchControl.exe
C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Filip.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Microsoft Web Test Recorder 12.0 Helper - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: STATISTICA Browser Helper - {990A8747-93BF-4EF7-B72E-94A6884B98C2} - C:\Program Files\StatSoft\STATISTICA 12\Support\StaBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Filip\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_5E2962162D4B072B6E1EFC2A5EDAF262] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: @%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000 (c2wts) - Unknown owner - C:\Program Files (x86)\Windows Identity Foundation\v3.5\c2wtshost.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Bitdefender Antivirus Free Edition (gzserv) - Bitdefender - C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem22.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TrueAPI Service component (TrueService) - AuthenTec, Inc. - C:\Program Files\Common Files\AuthenTec\TrueService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 11936 bytes

======Listing Processes======





wininit.exe


C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe" /service
"C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1817f1d0-249a-440f-bf6c-66be20222944 -SystemEventPortName:HostProcess-9c697c93-149a-4012-832c-78240a49b382 -IoCancelEventPortName:HostProcess-9b01556a-dc94-439e-a930-1abcbf74e677 -NonStateChangingEventPortName:HostProcess-87664ec0-1b51-4d85-9f07-235436082e69 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:de8614c0-d8d5-4118-8386-5364b3197545 -DeviceGroupId:WudfDefaultDevicePool
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-fb09ebea-af29-414d-9047-3080c0507932 -SystemEventPortName:HostProcess-7fff2d37-5475-4deb-bf09-ff36366e6d46 -IoCancelEventPortName:HostProcess-afa742da-9c95-42e6-b908-ae30559da2f8 -NonStateChangingEventPortName:HostProcess-2dae53d6-661c-49a1-b976-f4c28a13546e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:15df714d-9ebf-4bc9-890b-6d52145b3521 -DeviceGroupId:
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 164287826160
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {1259cd14-2e2b-4970-9851b1f1beb92e26}
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\SysWOW64\PnkBstrA.exe
C:\WINDOWS\SysWOW64\PnkBstrB.exe
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe" -noshow
taskhostex.exe
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskeng.exe {AB956CCB-E4CE-4028-BCCC-7DC66DE144FD}
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\HP SimplePass\TouchControl.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {9BA05972-F6A8-11CF-A442-00A0C90A8F39} -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe" /byrunkey
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.4.9600.16384_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Windows\System32\skydrive.exe -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\TortoiseSVN\bin\TSVNCache.exe"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 580 584 592 65536 588
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5736.0.260165191\1343194192" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,16 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3621 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5736.2.117445291\923374154" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5736.3.548979554\1644309166" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5736.5.1238881871\516387326" /prefetch:673131151
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5736.8.427604310\1854532166" /prefetch:673131151

C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17246_none_fa4ae8e99b1f603c\TiWorker.exe -Embedding

C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Filip\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/EmbeddedSearch/Group17 pct:1h stable:r1 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StableBookmarksIndexURLsControl/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/RapporRollout/Enabled/SDCH/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-1-Percent/group_65/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --channel="5736.9.650134657\1012498275" /prefetch:673131151

======Scheduled tasks folder======

C:\WINDOWS\tasks\HPCeeScheduleForFilip.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForFilip (null)
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Filip\AppData\Roaming\Mozilla\Firefox\Profiles\kw7qhech.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1206147.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@authentec.com/ffwloplugin]
"Description"=
"Path"=C:\Program Files (x86)\HP SimplePass\npffwloplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.0.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.0.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre8\bin\ssv.dll [2014-03-20 553368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2}]
STATISTICA Browser Helper - C:\Program Files\StatSoft\STATISTICA 12\StaBHO.dll [2013-04-02 281088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre8\bin\jp2ssv.dll [2014-03-20 210840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{432dd630-7e03-4c97-9d62-b99f52df4fc2}]
Microsoft Web Test Recorder 12.0 Helper - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2013-10-05 71520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-04-14 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2}]
STATISTICA Browser Helper - C:\Program Files\StatSoft\STATISTICA 12\Support\StaBHO.dll [2013-04-01 232448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-04-12 7770936]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-25 2916152]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-11-02 1664000]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2013-11-29 2273056]
"IntelPROSet"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2014-01-08 4876016]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-10-07 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Filip\AppData\Roaming\uTorrent\uTorrent.exe [2014-10-08 1385808]
""= []
"GoogleChromeAutoLaunch_5E2962162D4B072B6E1EFC2A5EDAF262"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2014-10-01 854344]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-09-07 581024]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2013-03-10 88984]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-21 959904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-10-19 19:52:13 ----D---- C:\_OTM
2014-10-19 19:01:55 ----D---- C:\ProgramData\GZ
2014-10-19 18:03:33 ----A---- C:\WINDOWS\system32\drivers\avchv.sys
2014-10-19 18:03:27 ----A---- C:\WINDOWS\system32\drivers\avckf.sys
2014-10-19 18:03:27 ----A---- C:\WINDOWS\system32\drivers\avc3.sys
2014-10-19 18:02:31 ----A---- C:\WINDOWS\system32\drivers\trufos.sys
2014-10-19 18:02:31 ----A---- C:\WINDOWS\system32\drivers\gzflt.sys
2014-10-19 17:43:40 ----D---- C:\Program Files\Bitdefender
2014-10-18 22:23:38 ----D---- C:\Users\Filip\AppData\Roaming\QuickScan
2014-10-18 22:07:12 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-10-16 21:45:37 ----D---- C:\Users\Filip\AppData\Roaming\24A5DA5E-7353-4BA2-8679-BB01F14135F8
2014-10-16 20:18:16 ----D---- C:\Program Files (x86)\SP68425
2014-10-16 20:04:06 ----D---- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-10-16 19:01:25 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-10-16 19:01:25 ----A---- C:\WINDOWS\system32\packager.dll
2014-10-16 19:00:33 ----A---- C:\WINDOWS\system32\win32k.sys
2014-10-16 18:59:45 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-10-16 18:59:44 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-10-16 18:59:40 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-10-16 18:59:39 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-10-16 18:59:38 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-10-16 18:59:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\system32\wininet.dll
2014-10-16 18:59:36 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-10-16 18:59:35 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-10-16 18:59:34 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-10-16 18:59:33 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-10-16 18:59:32 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-10-16 18:59:31 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-10-16 18:59:30 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-10-16 18:58:19 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-10-16 18:58:18 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-10-16 18:58:17 ----A---- C:\WINDOWS\system32\winbici.dll
2014-10-16 18:58:05 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-10-16 18:58:05 ----A---- C:\WINDOWS\system32\rastls.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-10-16 18:58:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wups2.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wups.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-10-16 18:58:02 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-10-16 18:57:12 ----A---- C:\WINDOWS\system32\shell32.dll
2014-10-16 18:57:11 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-10-16 18:57:10 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-10-16 18:57:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-10-16 18:57:08 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-10-16 18:57:07 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-10-16 18:57:06 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-10-16 18:57:06 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-10-16 18:57:05 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-10-16 18:57:03 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-10-16 18:57:03 ----A---- C:\WINDOWS\system32\propsys.dll
2014-10-16 18:56:59 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-10-16 18:56:58 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-10-16 18:56:57 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-10-16 18:56:56 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-10-16 18:56:52 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-10-16 18:56:51 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-10-16 18:56:50 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-10-16 18:56:50 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-16 18:56:49 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\system32\msi.dll
2014-10-16 18:56:36 ----A---- C:\WINDOWS\system32\authui.dll
2014-10-16 18:56:35 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-10-16 18:56:35 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-10-05 20:38:21 ----D---- C:\Users\Filip\AppData\Roaming\Steam
2014-10-05 12:34:14 ----D---- C:\Program Files (x86)\Middle Earth Shadow of Mordor
2014-10-03 19:28:50 ----A---- C:\WINDOWS\RomeTW.ini
2014-10-02 18:15:15 ----D---- C:\Users\Filip\AppData\Roaming\Imminent
2014-10-02 17:48:22 ----D---- C:\Program Files (x86)\OpenAL
2014-10-02 17:48:22 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2014-10-02 17:48:22 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2014-09-27 16:37:26 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2014-09-27 16:06:41 ----D---- C:\Program Files (x86)\Lionhead Studios
2014-09-27 15:52:34 ----D---- C:\Users\Filip\AppData\Roaming\Seznam.cz
2014-09-25 20:13:48 ----RD---- C:\Program Files (x86)\Skype

======List of files/folders modified in the last 1 month======

2014-10-19 19:58:17 ----D---- C:\Program Files\trend micro
2014-10-19 19:57:01 ----D---- C:\WINDOWS\Temp
2014-10-19 19:56:58 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-10-19 19:56:52 ----D---- C:\Users\Filip\AppData\Roaming\uTorrent
2014-10-19 19:56:45 ----RD---- C:\WINDOWS\System32
2014-10-19 19:55:29 ----D---- C:\WINDOWS\Prefetch
2014-10-19 19:52:40 ----D---- C:\Windows
2014-10-19 19:52:13 ----D---- C:\WINDOWS\Tasks
2014-10-19 19:49:56 ----D---- C:\Program Files (x86)\Steam
2014-10-19 19:38:17 ----D---- C:\WINDOWS\system32\config
2014-10-19 19:16:18 ----D---- C:\WINDOWS\CbsTemp
2014-10-19 19:15:21 ----D---- C:\WINDOWS\system32\DriverStore
2014-10-19 19:11:04 ----SHD---- C:\System Volume Information
2014-10-19 19:01:55 ----HD---- C:\ProgramData
2014-10-19 19:00:00 ----D---- C:\WINDOWS\system32\sru
2014-10-19 18:57:27 ----D---- C:\WINDOWS\Inf
2014-10-19 18:57:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-19 18:51:20 ----D---- C:\WINDOWS\SoftwareDistribution
2014-10-19 18:49:55 ----D---- C:\WINDOWS\SYSWOW64\NV
2014-10-19 18:49:54 ----D---- C:\WINDOWS\system32\NV
2014-10-19 18:48:58 ----D---- C:\WINDOWS\system32\drivers
2014-10-19 17:43:40 ----RD---- C:\Program Files
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\TeamViewer
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\Media Player Classic
2014-10-19 17:26:31 ----D---- C:\Users\Filip\AppData\Roaming\DAEMON Tools Lite
2014-10-19 17:26:30 ----D---- C:\Users\Filip\AppData\Roaming\TS3Client
2014-10-19 17:26:19 ----DC---- C:\WINDOWS\Panther
2014-10-19 17:26:19 ----D---- C:\WINDOWS\Minidump
2014-10-19 17:26:19 ----D---- C:\WINDOWS\Logs
2014-10-19 17:26:19 ----D---- C:\WINDOWS\debug
2014-10-19 17:11:04 ----D---- C:\Program Files\CCleaner
2014-10-19 17:00:26 ----D---- C:\WINDOWS\system32\catroot2
2014-10-19 16:44:51 ----RD---- C:\Program Files (x86)
2014-10-19 16:42:43 ----D---- C:\Program Files\SASHome
2014-10-19 16:34:42 ----D---- C:\Program Files\OpenVPN
2014-10-19 16:33:45 ----D---- C:\Users\Filip\AppData\Roaming\NetBeans
2014-10-19 16:24:30 ----D---- C:\Program Files (x86)\Apache Software Foundation
2014-10-18 22:15:34 ----D---- C:\WINDOWS\pss
2014-10-18 22:07:22 ----D---- C:\WINDOWS\Microsoft.NET
2014-10-18 22:07:18 ----D---- C:\WINDOWS\WinSxS
2014-10-18 22:07:12 ----D---- C:\WINDOWS\SysWOW64
2014-10-18 22:00:47 ----D---- C:\WINDOWS\MediaViewer
2014-10-18 22:00:47 ----D---- C:\WINDOWS\FileManager
2014-10-18 22:00:47 ----D---- C:\WINDOWS\Camera
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2014-10-18 22:00:38 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-10-18 22:00:38 ----D---- C:\WINDOWS\system32\en-GB
2014-10-18 22:00:38 ----D---- C:\WINDOWS\system32\cs-CZ
2014-10-18 22:00:38 ----D---- C:\Program Files\Internet Explorer
2014-10-18 22:00:38 ----D---- C:\Program Files (x86)\Internet Explorer
2014-10-18 22:00:37 ----D---- C:\WINDOWS\system32\en-US
2014-10-18 22:00:35 ----RD---- C:\WINDOWS\ToastData
2014-10-18 22:00:30 ----D---- C:\WINDOWS\WinStore
2014-10-18 21:50:53 ----D---- C:\Users\Filip\AppData\Roaming\Skype
2014-10-18 17:46:11 ----RSD---- C:\WINDOWS\assembly
2014-10-18 17:37:34 ----D---- C:\WINDOWS\system32\MRT
2014-10-18 17:30:10 ----A---- C:\WINDOWS\system32\MRT.exe
2014-10-16 20:10:14 ----D---- C:\SWSetup
2014-10-16 20:09:38 ----D---- C:\WINDOWS\system32\Tasks
2014-10-16 20:08:35 ----A---- C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-16 20:06:34 ----SHD---- C:\WINDOWS\Installer
2014-10-16 20:06:04 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-10-16 20:05:26 ----D---- C:\Program Files (x86)\Hewlett-Packard
2014-10-16 20:02:01 ----D---- C:\ProgramData\Hewlett-Packard
2014-10-11 07:53:25 ----HD---- C:\WINDOWS\system32\WLANProfiles
2014-10-03 19:38:11 ----D---- C:\Program Files (x86)\Activision
2014-10-02 18:09:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-10-02 18:09:07 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-02 17:48:22 ----A---- C:\WINDOWS\SYSWOW64\wrap_oal.dll
2014-10-02 17:48:22 ----A---- C:\WINDOWS\SYSWOW64\OpenAL32.dll
2014-10-02 17:45:30 ----D---- C:\ProgramData\Package Cache
2014-09-27 15:52:04 ----D---- C:\WINDOWS\system32\catroot
2014-09-25 20:13:50 ----D---- C:\ProgramData\Skype
2014-09-25 20:13:49 ----D---- C:\Program Files (x86)\Common Files
2014-09-25 17:56:36 ----D---- C:\WINDOWS\rescache
2014-09-22 08:42:39 ----N---- C:\WINDOWS\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\WINDOWS\system32\DRIVERS\avc3.sys [2013-04-17 718840]
R0 hpdskflt;@oem22.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-11-14 32544]
R0 trufos;trufos; C:\WINDOWS\system32\DRIVERS\trufos.sys [2013-05-28 382536]
R1 bdfwfpf;bdfwfpf; \??\C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [2013-07-02 121928]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2013-03-04 40344]
R1 gzflt;gzflt; C:\WINDOWS\system32\DRIVERS\gzflt.sys [2013-04-22 148696]
R1 VBoxDrv;VirtualBox Service; C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys [2014-03-26 254240]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys [2014-03-26 128288]
R3 Accelerometer;@oem22.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 avckf;avckf; C:\WINDOWS\system32\DRIVERS\avckf.sys [2013-04-17 593144]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2013-03-28 1366328]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2013-01-15 69240]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-05-21 3791872]
R3 IntcDAud;@oem47.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 iwdbus;@oem36.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-05-07 27032]
R3 MEIx64;@oem25.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2013-01-11 64624]
R3 NETwNe64;@oem66.inf,%NIC_Service_DispName_WIN8_64%;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2014-04-26 3349984]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-11-14 12613408]
R3 pppop;@oem24.inf,%VER_DEVICE_STR% Adapter;PPPoP WAN Adapter; C:\WINDOWS\system32\DRIVERS\pppop64.sys [2011-03-21 42528]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsSimulatorDriver;@oem38.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-08-25 43832]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2013-11-02 542208]
R3 SynTP;@oem3.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-08-25 448312]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 VBoxNetFlt;@oem49.inf,%VBoxNetFltService_Desc%;VirtualBox Bridged Networking Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys [2014-03-26 156448]
R3 VClone;VClone; C:\WINDOWS\System32\drivers\VClone.sys [2013-07-24 34816]
S0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-31 645952]
S3 AMPPAL;Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed Virtual Adapter; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-04-11 165344]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys []
S3 ggflt;@oem16.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2014-07-09 16088]
S3 ggsomc;@oem16.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2014-07-09 30424]
S3 intaud_WaveExtensible;@oem28.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-05-07 38296]
S3 ManyCam;@oem63.inf,%ManyCam.DeviceDesc%;ManyCam Virtual Webcam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [2013-11-27 52128]
S3 mcaudrv_simple;@oem64.inf,%mcaudrv_simple.SvcDesc%;ManyCam Virtual Microphone; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [2013-12-06 35232]
S3 mdareDriver_43;mdareDriver_43; \??\C:\Program Files (x86)\Fortinet\FortiClient\mdare64_43.sys []
S3 RSP2STOR;@oem5.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2012-06-14 266896]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-25 41272]
S3 tap0901;@oem56.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
S3 tapoas;@oem61.inf,%DeviceDescription%;TAP-Win32 Adapter OAS; C:\WINDOWS\system32\DRIVERS\tapoas.sys [2010-08-03 30720]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
S3 VBoxNetAdp;@oem55.inf,%VBoxNetAdp_Desc%;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2014-03-26 141600]
S4 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-03-18 1124728]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-03-18 1161592]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-08 631024]
R2 FPLService;TrueSuiteService; C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe [2013-02-07 1641768]
R2 gzserv;Bitdefender Antivirus Free Edition; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [2013-10-23 69368]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 hpsrv;@oem22.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-09-24 31040]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-09-07 35232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-05-21 314696]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-07-18 128896]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-04-15 161736]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-08-10 139856]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-11-29 1370912]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2013-11-11 922912]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2014-05-29 75136]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\syswow64\PnkBstrB.exe [2014-05-29 189248]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-08 154864]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-10-20 130024]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2013-11-02 323072]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-06-07 1129760]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2013-10-19 5632]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-05-21 278344]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2013-08-22 142336]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-06 119408]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-08 284912]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-09-23 833728]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-22 119808]
S3 TrueService;TrueAPI Service component; C:\Program Files\Common Files\AuthenTec\TrueService.exe [2013-01-07 401856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#9 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

3S0
Návštěvník
Návštěvník
Příspěvky: 39
Registrován: 20 črc 2007 10:04

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#10 Příspěvek od 3S0 »

Systém beží bez popupov v prehliadači a ani žiadne náhodné cmd window sa nezobrazuje. Štart je plynulý. Ďakujem za pomoc Rudy.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakujuce okno v prohlizeci a spousteni cmd okna

#11 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno