Hi there Tihomir , welcome to PCHF.
Did you also save the Ewido scan report? You have posted an process report , have a look here to see if you also have the scan results log:
C:\Program Files\ewido\security suite\Reports
If you dont , then please rerun Ewido and post the log from that scan with youre next post please.
Boot youre pc in safemode. (hit f8 when booting up)
Click Start>Run and type in: services.msc
Click OK
In the Services window find:
Amntrow
Select/highlight and right click the entry, and choose: Properties
On the General tab, under Service Status click the Stop button
Beside: Startup Type, in the drop menu, select: Disabled
Click Apply, then OK
Open
HJT and click config > misc tools > ?delete an NT service?
Copy and past:
Amntrow
Click OK.
Then fix these entrys with hijackthis:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Program Files\Common Files\Microsoft Shared\Stationery\Blank.htm
O4 - Startup: PowerReg Scheduler.exe
After that , reboot and post a new
hjt log plus the Ewido log please.
Also i dont see a firewall running on youre pc , have a look in our download section for some free firewalls if needed.
And do you use the pcAnywhere software youreself?