
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
přesměrovávání na linkbucks.com
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
přesměrovávání na linkbucks.com
Dobrý den, prosím o pomoc
v prohlížečích jak chrome tak IE see mi na nějaké stánky při kliku na odkaz před požadovanou stánku vloží odkaz
npř. http://dca14d4e.megaline.co/url/http:// ... /index.php[/b]
který to přesměruje na linkbucks
Měl jsem připojeného technika přes teamviewer od antivir firmy a říkal, že dá do ohně obě dvě ruce, že notebook je čistý,
Vidí jako jedinou možnost problému v poskytovateli wifi - ( dnes je pátek a trápí mne to cca 2 dny ) ti mi řekli, že se na to v pondělí podívají, ale že je téměř jisté na 110% , že oni jsou taktéž čistí. Zítra vezmu notebook na jiné připojení wifi. Když se mi to nebude přesměrovávat má tedy problém poskytovatel ale nějak tomu vnitřně nevěřím.
Setkal jste se s tímto někdo ?
díky
v prohlížečích jak chrome tak IE see mi na nějaké stánky při kliku na odkaz před požadovanou stánku vloží odkaz
npř. http://dca14d4e.megaline.co/url/http:// ... /index.php[/b]
který to přesměruje na linkbucks
Měl jsem připojeného technika přes teamviewer od antivir firmy a říkal, že dá do ohně obě dvě ruce, že notebook je čistý,
Vidí jako jedinou možnost problému v poskytovateli wifi - ( dnes je pátek a trápí mne to cca 2 dny ) ti mi řekli, že se na to v pondělí podívají, ale že je téměř jisté na 110% , že oni jsou taktéž čistí. Zítra vezmu notebook na jiné připojení wifi. Když se mi to nebude přesměrovávat má tedy problém poskytovatel ale nějak tomu vnitřně nevěřím.
Setkal jste se s tímto někdo ?
díky
Naposledy upravil(a) katma dne 11 led 2014 20:09, celkem upraveno 2 x.
Re: přesměrovávání na linkbucks.com
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-01-2014
Ran by hp-doma (administrator) on HP-DOMA-PC on 10-01-2014 22:28:33
Running from C:\Users\hp-doma\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
() C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(CyberLink) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD.EXE
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2096424 2010-05-27] (Synaptics Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [171520 2010-01-09] (Sun Microsystems, Inc.)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [2837768 2010-02-26] (ESET)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM-x32\...\Run: [HPCam_Menu] - C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM-x32\...\Run: [QlbCtrl.exe] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe [322104 2009-08-20] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [WirelessAssistant] - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
HKCU\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1098072 2013-03-27] (Garmin Ltd or its subsidiaries)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKU\Katka\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
HKU\Katka\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/produ ... wsdc32.cab
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: HKLM-x32 {BF3CD111-6278-11D2-9EA3-00A0C9251384} http://www.o2c.de/download/O2CPlayer.CAB
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{A80D1E02-25E2-4C5D-861A-FA3AD7FC44ED}: [NameServer]8.8.8.8
Chrome:
=======
CHR RestoreOnStartup: "hxxp://seznam.cz/", "hxxp://tvp.cz/"
CHR Extension: (Google Wallet) - C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0
CHR HKCU\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
==================== Services (Whitelisted) =================
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [42336 2010-02-26] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [810120 2010-02-26] (ESET)
R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [185688 2013-03-27] (Garmin Ltd or its subsidiaries)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 NitroReaderDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe [341296 2011-06-21] (Nitro PDF Software)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] ()
S3 Sony Ericsson PCCompanion; C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [155344 2011-06-29] (Avanquest Software)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 TVCapSvc; c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe [296360 2009-10-06] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [317328 2011-08-01] (WDC)
S4 WDFMEService; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [1978256 2011-08-01] (Western Digital )
R2 WDRulesService; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [1338256 2011-08-01] (Western Digital )
R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [x]
==================== Drivers (Whitelisted) ====================
R3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [163888 2010-02-26] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [139704 2010-02-26] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [169592 2010-02-26] (ESET)
R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [33608 2010-02-26] (ESET)
R2 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [50600 2010-02-26] (ESET)
S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (MCCI Corporation)
S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (MCCI Corporation)
S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (MCCI Corporation)
S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (MCCI Corporation)
S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (MCCI Corporation)
S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (MCCI Corporation)
S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (MCCI Corporation)
R3 seehcri; C:\Windows\System32\DRIVERS\seehcri.sys [34032 2010-08-16] (Sony Ericsson Mobile Communications)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\abc\catchme.sys [x]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-10 22:28 - 2014-01-10 22:28 - 00015514 _____ C:\Users\hp-doma\Desktop\FRST.txt
2014-01-10 22:27 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64 (1).exe
2014-01-10 22:27 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Desktop\FRST64.exe
2014-01-10 22:25 - 2014-01-10 22:25 - 00000000 ____D C:\FRST
2014-01-10 22:23 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 19:08 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-10 19:07 - 2014-01-10 19:07 - 00000000 ____D C:\Users\hp-doma\Downloads\tdsskiller
2014-01-10 19:06 - 2014-01-10 19:06 - 04101441 _____ C:\Users\hp-doma\Downloads\tdsskiller.zip
2014-01-10 18:38 - 2014-01-10 18:38 - 00000308 _____ C:\Windows\PFRO.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000056 _____ C:\Windows\setupact.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000000 _____ C:\Windows\setuperr.log
2014-01-10 18:32 - 2014-01-10 18:55 - 00000000 ____D C:\AdwCleaner
2014-01-10 18:14 - 2014-01-10 18:14 - 00000000 ____D C:\Users\hp-doma\Downloads\Autoruns
2014-01-10 18:12 - 2014-01-10 18:13 - 00550371 _____ C:\Users\hp-doma\Downloads\Autoruns.zip
2014-01-10 18:00 - 2014-01-10 18:04 - 10264904 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro_x64.exe
2014-01-10 17:59 - 2014-01-10 18:27 - 00000000 ____D C:\ProgramData\HitmanPro
2014-01-10 17:54 - 2014-01-10 17:58 - 09452704 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro.exe
2014-01-10 17:34 - 2014-01-10 17:34 - 00000000 ____D C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
2014-01-09 17:46 - 2014-01-09 17:46 - 00033909 _____ C:\ComboFix.txt
2014-01-09 15:46 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2014-01-09 15:46 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2014-01-09 15:46 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2014-01-09 15:45 - 2014-01-09 17:50 - 00000000 ____D C:\Qoobox
2014-01-09 15:44 - 2014-01-09 17:44 - 00000000 ____D C:\Windows\erdnt
2014-01-09 15:42 - 2014-01-09 15:43 - 05162489 ____R (Swearware) C:\Users\hp-doma\Downloads\abc.exe
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:08 - 2014-01-08 20:09 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:13 - 2014-01-08 18:14 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:17 - 2014-01-08 09:18 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:50 - 2014-01-07 18:51 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 20:29 - 2014-01-04 20:30 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:27 - 2014-01-04 20:29 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:04 - 2014-01-04 19:06 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:38 - 2014-01-04 17:39 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-03 03:02 - 2014-01-03 03:02 - 15164202 _____ C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:22 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 ____D C:\Program Files\Enigma Software Group
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 _____ C:\autoexec.bat
2014-01-02 20:48 - 2014-01-03 03:14 - 00000000 ____D C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2014-01-02 20:44 - 2014-01-02 20:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe
2014-01-02 14:37 - 2014-01-02 14:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe
2013-12-17 21:04 - 2013-12-17 21:04 - 00075721 _____ C:\Users\hp-doma\Downloads\prilohy_24522.zip
2013-12-16 13:03 - 2013-12-16 13:03 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-12 19:51 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2013-12-12 19:51 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2013-12-12 19:51 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2013-12-12 19:51 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-12-12 19:49 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-12 19:49 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-12 19:49 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-12 19:49 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-12 19:49 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-12 19:49 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-12 19:49 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-12 19:49 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-12 19:49 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-12 19:49 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-12 19:49 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-12 19:49 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-12 19:49 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-12 19:49 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-12 19:49 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-12 19:49 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-12 19:49 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-12 19:49 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-12 19:49 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-12 19:49 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-12 19:49 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-12 19:49 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-12 19:49 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-12 19:49 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-12 19:49 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-12 19:49 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-12 19:49 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-12 19:49 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-12 19:49 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-12 19:49 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-12 19:49 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-11 08:25 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-12-11 08:25 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-12-11 08:25 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2013-12-11 08:25 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2013-12-11 08:25 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-11 08:25 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-11 08:25 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-12-11 08:23 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-12-11 08:23 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-12-11 08:23 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-11 08:22 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-11 08:22 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-11 08:22 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2013-12-11 08:22 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2013-12-11 08:22 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-11 08:22 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-11 08:22 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2013-12-11 08:22 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2013-12-11 08:22 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
==================== One Month Modified Files and Folders =======
2014-01-10 22:28 - 2014-01-10 22:28 - 00015514 _____ C:\Users\hp-doma\Desktop\FRST.txt
2014-01-10 22:27 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64 (1).exe
2014-01-10 22:25 - 2014-01-10 22:25 - 00000000 ____D C:\FRST
2014-01-10 22:23 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Desktop\FRST64.exe
2014-01-10 22:23 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-10 22:02 - 2010-12-27 13:00 - 00000970 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job
2014-01-10 21:57 - 2013-04-21 01:06 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-10 21:56 - 2010-05-02 13:37 - 00000954 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-10 19:51 - 2010-05-02 13:37 - 00000950 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-10 19:51 - 2010-01-09 06:55 - 00631526 _____ C:\Windows\system32\perfh005.dat
2014-01-10 19:51 - 2010-01-09 06:55 - 00122148 _____ C:\Windows\system32\perfc005.dat
2014-01-10 19:51 - 2009-07-14 06:13 - 01470298 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-10 19:49 - 2010-03-16 20:53 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Skype
2014-01-10 19:45 - 2012-01-14 22:11 - 00000990 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job
2014-01-10 19:24 - 2010-02-05 01:21 - 02060467 _____ C:\Windows\WindowsUpdate.log
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 19:07 - 2014-01-10 19:07 - 00000000 ____D C:\Users\hp-doma\Downloads\tdsskiller
2014-01-10 19:06 - 2014-01-10 19:06 - 04101441 _____ C:\Users\hp-doma\Downloads\tdsskiller.zip
2014-01-10 18:55 - 2014-01-10 18:32 - 00000000 ____D C:\AdwCleaner
2014-01-10 18:46 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-10 18:46 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-10 18:38 - 2014-01-10 18:38 - 00000308 _____ C:\Windows\PFRO.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000056 _____ C:\Windows\setupact.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000000 _____ C:\Windows\setuperr.log
2014-01-10 18:38 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-10 18:37 - 2013-10-15 19:03 - 00000601 _____ C:\Users\hp-doma\Desktop\Search.lnk
2014-01-10 18:37 - 2013-10-09 18:43 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-01-10 18:36 - 2010-12-27 13:00 - 00000918 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job
2014-01-10 18:27 - 2014-01-10 17:59 - 00000000 ____D C:\ProgramData\HitmanPro
2014-01-10 18:14 - 2014-01-10 18:14 - 00000000 ____D C:\Users\hp-doma\Downloads\Autoruns
2014-01-10 18:13 - 2014-01-10 18:12 - 00550371 _____ C:\Users\hp-doma\Downloads\Autoruns.zip
2014-01-10 18:04 - 2014-01-10 18:00 - 10264904 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro_x64.exe
2014-01-10 17:58 - 2014-01-10 17:54 - 09452704 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro.exe
2014-01-10 17:34 - 2014-01-10 17:34 - 00000000 ____D C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
2014-01-10 17:30 - 2012-10-05 21:16 - 00000000 ____D C:\Firefox
2014-01-10 17:27 - 2011-10-28 17:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Winamp
2014-01-10 17:26 - 2009-09-07 02:57 - 00000000 ____D C:\Windows\Panther
2014-01-10 14:59 - 2013-04-01 19:38 - 00003198 _____ C:\Windows\System32\Tasks\HPCeeScheduleForhp-doma
2014-01-10 14:59 - 2013-04-01 19:38 - 00000340 _____ C:\Windows\Tasks\HPCeeScheduleForhp-doma.job
2014-01-10 07:45 - 2012-01-14 22:11 - 00000968 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job
2014-01-09 17:50 - 2014-01-09 15:45 - 00000000 ____D C:\Qoobox
2014-01-09 17:46 - 2014-01-09 17:46 - 00033909 _____ C:\ComboFix.txt
2014-01-09 17:46 - 2010-03-25 19:42 - 00000000 ____D C:\Users\Administrator
2014-01-09 17:46 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2014-01-09 17:44 - 2014-01-09 15:44 - 00000000 ____D C:\Windows\erdnt
2014-01-09 17:41 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2014-01-09 16:00 - 2009-07-14 03:34 - 82051072 _____ C:\Windows\system32\config\software.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 25427968 _____ C:\Windows\system32\config\system.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00524288 _____ C:\Windows\system32\config\default.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\security.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\sam.bak
2014-01-09 15:43 - 2014-01-09 15:42 - 05162489 ____R (Swearware) C:\Users\hp-doma\Downloads\abc.exe
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:09 - 2014-01-08 20:08 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:14 - 2014-01-08 18:13 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:18 - 2014-01-08 09:17 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:53 - 2010-03-15 16:23 - 00000000 ____D C:\Users\hp-doma
2014-01-07 18:51 - 2014-01-07 18:50 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-07 01:54 - 2009-07-14 05:45 - 00401352 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-05 14:37 - 2010-03-15 16:27 - 00103152 _____ C:\Users\hp-doma\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 22:29 - 2011-11-03 11:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Nitro PDF
2014-01-04 21:06 - 2010-10-27 08:50 - 00000000 ____D C:\Windows\Minidump
2014-01-04 20:30 - 2014-01-04 20:29 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:29 - 2014-01-04 20:27 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:57 - 2010-04-13 17:14 - 00002004 ____H C:\Users\hp-doma\Documents\Default.rdp
2014-01-04 19:14 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2014-01-04 19:07 - 2013-10-21 20:10 - 00000000 ____D C:\Games
2014-01-04 19:06 - 2014-01-04 19:04 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:39 - 2014-01-04 17:38 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-03 12:55 - 2010-01-08 22:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-03 03:14 - 2014-01-02 20:48 - 00000000 ____D C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2014-01-03 03:09 - 2010-01-08 22:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-03 03:02 - 2014-01-03 03:02 - 15164202 _____ C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:23 - 2014-01-02 21:22 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 ____D C:\Program Files\Enigma Software Group
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 _____ C:\autoexec.bat
2014-01-02 20:44 - 2014-01-02 20:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe
2014-01-02 14:37 - 2014-01-02 14:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe
2013-12-28 10:09 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2013-12-21 19:55 - 2010-03-15 16:36 - 00000000 ___RD C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-17 21:04 - 2013-12-17 21:04 - 00075721 _____ C:\Users\hp-doma\Downloads\prilohy_24522.zip
2013-12-16 13:03 - 2013-12-16 13:03 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-16 13:03 - 2010-05-02 13:37 - 00000000 ____D C:\Program Files (x86)\Google
2013-12-15 22:03 - 2013-07-18 08:04 - 00000000 ____D C:\Windows\system32\MRT
2013-12-15 22:00 - 2010-03-27 17:49 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-12-12 21:13 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-09 00:51
==================== End Of Log ============================
Ran by hp-doma (administrator) on HP-DOMA-PC on 10-01-2014 22:28:33
Running from C:\Users\hp-doma\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
() C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
( Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(CyberLink Corp.) C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
(CyberLink) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD.EXE
(Google Inc.) C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2096424 2010-05-27] (Synaptics Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [171520 2010-01-09] (Sun Microsystems, Inc.)
HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [2837768 2010-02-26] (ESET)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-23] (IDT, Inc.)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM-x32\...\Run: [HPCam_Menu] - C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM-x32\...\Run: [QlbCtrl.exe] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe [322104 2009-08-20] ( Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [WirelessAssistant] - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [498744 2009-07-23] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
HKCU\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1098072 2013-03-27] (Garmin Ltd or its subsidiaries)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKU\Katka\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
HKU\Katka\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/produ ... wsdc32.cab
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: HKLM-x32 {BF3CD111-6278-11D2-9EA3-00A0C9251384} http://www.o2c.de/download/O2CPlayer.CAB
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{A80D1E02-25E2-4C5D-861A-FA3AD7FC44ED}: [NameServer]8.8.8.8
Chrome:
=======
CHR RestoreOnStartup: "hxxp://seznam.cz/", "hxxp://tvp.cz/"
CHR Extension: (Google Wallet) - C:\Users\hp-doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0
CHR HKCU\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
==================== Services (Whitelisted) =================
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe [89600 2009-03-02] (Andrea Electronics Corporation)
S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [42336 2010-02-26] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [810120 2010-02-26] (ESET)
R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [185688 2013-03-27] (Garmin Ltd or its subsidiaries)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 NitroReaderDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe [341296 2011-06-21] (Nitro PDF Software)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] ()
S3 Sony Ericsson PCCompanion; C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [155344 2011-06-29] (Avanquest Software)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe [247808 2010-03-23] (IDT, Inc.)
R2 TVCapSvc; c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe [296360 2009-10-06] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [317328 2011-08-01] (WDC)
S4 WDFMEService; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [1978256 2011-08-01] (Western Digital )
R2 WDRulesService; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [1338256 2011-08-01] (Western Digital )
R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [x]
==================== Drivers (Whitelisted) ====================
R3 AVerAF15; C:\Windows\System32\Drivers\AVerAF15.sys [311424 2009-05-22] (AVerMedia TECHNOLOGIES, Inc.)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [163888 2010-02-26] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [139704 2010-02-26] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [169592 2010-02-26] (ESET)
R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [33608 2010-02-26] (ESET)
R2 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [50600 2010-02-26] (ESET)
S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (MCCI Corporation)
S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (MCCI Corporation)
S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (MCCI Corporation)
S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (MCCI Corporation)
S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (MCCI Corporation)
S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (MCCI Corporation)
S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (MCCI Corporation)
R3 seehcri; C:\Windows\System32\DRIVERS\seehcri.sys [34032 2010-08-16] (Sony Ericsson Mobile Communications)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\abc\catchme.sys [x]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-10 22:28 - 2014-01-10 22:28 - 00015514 _____ C:\Users\hp-doma\Desktop\FRST.txt
2014-01-10 22:27 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64 (1).exe
2014-01-10 22:27 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Desktop\FRST64.exe
2014-01-10 22:25 - 2014-01-10 22:25 - 00000000 ____D C:\FRST
2014-01-10 22:23 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 19:08 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-10 19:07 - 2014-01-10 19:07 - 00000000 ____D C:\Users\hp-doma\Downloads\tdsskiller
2014-01-10 19:06 - 2014-01-10 19:06 - 04101441 _____ C:\Users\hp-doma\Downloads\tdsskiller.zip
2014-01-10 18:38 - 2014-01-10 18:38 - 00000308 _____ C:\Windows\PFRO.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000056 _____ C:\Windows\setupact.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000000 _____ C:\Windows\setuperr.log
2014-01-10 18:32 - 2014-01-10 18:55 - 00000000 ____D C:\AdwCleaner
2014-01-10 18:14 - 2014-01-10 18:14 - 00000000 ____D C:\Users\hp-doma\Downloads\Autoruns
2014-01-10 18:12 - 2014-01-10 18:13 - 00550371 _____ C:\Users\hp-doma\Downloads\Autoruns.zip
2014-01-10 18:00 - 2014-01-10 18:04 - 10264904 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro_x64.exe
2014-01-10 17:59 - 2014-01-10 18:27 - 00000000 ____D C:\ProgramData\HitmanPro
2014-01-10 17:54 - 2014-01-10 17:58 - 09452704 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro.exe
2014-01-10 17:34 - 2014-01-10 17:34 - 00000000 ____D C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
2014-01-09 17:46 - 2014-01-09 17:46 - 00033909 _____ C:\ComboFix.txt
2014-01-09 15:46 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2014-01-09 15:46 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2014-01-09 15:46 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2014-01-09 15:46 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2014-01-09 15:45 - 2014-01-09 17:50 - 00000000 ____D C:\Qoobox
2014-01-09 15:44 - 2014-01-09 17:44 - 00000000 ____D C:\Windows\erdnt
2014-01-09 15:42 - 2014-01-09 15:43 - 05162489 ____R (Swearware) C:\Users\hp-doma\Downloads\abc.exe
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:08 - 2014-01-08 20:09 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:13 - 2014-01-08 18:14 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:17 - 2014-01-08 09:18 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:50 - 2014-01-07 18:51 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 20:29 - 2014-01-04 20:30 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:27 - 2014-01-04 20:29 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:04 - 2014-01-04 19:06 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:38 - 2014-01-04 17:39 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-03 03:02 - 2014-01-03 03:02 - 15164202 _____ C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:22 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 ____D C:\Program Files\Enigma Software Group
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 _____ C:\autoexec.bat
2014-01-02 20:48 - 2014-01-03 03:14 - 00000000 ____D C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2014-01-02 20:44 - 2014-01-02 20:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe
2014-01-02 14:37 - 2014-01-02 14:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe
2013-12-17 21:04 - 2013-12-17 21:04 - 00075721 _____ C:\Users\hp-doma\Downloads\prilohy_24522.zip
2013-12-16 13:03 - 2013-12-16 13:03 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-12 19:51 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2013-12-12 19:51 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2013-12-12 19:51 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2013-12-12 19:51 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-12-12 19:49 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-12 19:49 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-12 19:49 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-12 19:49 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-12 19:49 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-12 19:49 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-12 19:49 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-12 19:49 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-12 19:49 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-12 19:49 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-12 19:49 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-12 19:49 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-12 19:49 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-12 19:49 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-12 19:49 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-12 19:49 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-12 19:49 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-12 19:49 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-12 19:49 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-12 19:49 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-12 19:49 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-12 19:49 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-12 19:49 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-12 19:49 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-12 19:49 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-12 19:49 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-12 19:49 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-12 19:49 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-12 19:49 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-12 19:49 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-12 19:49 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-11 08:25 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-12-11 08:25 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-12-11 08:25 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2013-12-11 08:25 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2013-12-11 08:25 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-11 08:25 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-11 08:25 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-12-11 08:23 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-12-11 08:23 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-12-11 08:23 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-11 08:22 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-11 08:22 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-11 08:22 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2013-12-11 08:22 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2013-12-11 08:22 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-11 08:22 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-11 08:22 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2013-12-11 08:22 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2013-12-11 08:22 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
==================== One Month Modified Files and Folders =======
2014-01-10 22:28 - 2014-01-10 22:28 - 00015514 _____ C:\Users\hp-doma\Desktop\FRST.txt
2014-01-10 22:27 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64 (1).exe
2014-01-10 22:25 - 2014-01-10 22:25 - 00000000 ____D C:\FRST
2014-01-10 22:23 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Desktop\FRST64.exe
2014-01-10 22:23 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-10 22:02 - 2010-12-27 13:00 - 00000970 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job
2014-01-10 21:57 - 2013-04-21 01:06 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-10 21:56 - 2010-05-02 13:37 - 00000954 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-10 19:51 - 2010-05-02 13:37 - 00000950 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-10 19:51 - 2010-01-09 06:55 - 00631526 _____ C:\Windows\system32\perfh005.dat
2014-01-10 19:51 - 2010-01-09 06:55 - 00122148 _____ C:\Windows\system32\perfc005.dat
2014-01-10 19:51 - 2009-07-14 06:13 - 01470298 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-10 19:49 - 2010-03-16 20:53 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Skype
2014-01-10 19:45 - 2012-01-14 22:11 - 00000990 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job
2014-01-10 19:24 - 2010-02-05 01:21 - 02060467 _____ C:\Windows\WindowsUpdate.log
2014-01-10 19:08 - 2014-01-10 19:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-10 19:07 - 2014-01-10 19:07 - 00000000 ____D C:\Users\hp-doma\Downloads\tdsskiller
2014-01-10 19:06 - 2014-01-10 19:06 - 04101441 _____ C:\Users\hp-doma\Downloads\tdsskiller.zip
2014-01-10 18:55 - 2014-01-10 18:32 - 00000000 ____D C:\AdwCleaner
2014-01-10 18:46 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-10 18:46 - 2009-07-14 05:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-10 18:38 - 2014-01-10 18:38 - 00000308 _____ C:\Windows\PFRO.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000056 _____ C:\Windows\setupact.log
2014-01-10 18:38 - 2014-01-10 18:38 - 00000000 _____ C:\Windows\setuperr.log
2014-01-10 18:38 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-10 18:37 - 2013-10-15 19:03 - 00000601 _____ C:\Users\hp-doma\Desktop\Search.lnk
2014-01-10 18:37 - 2013-10-09 18:43 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-01-10 18:36 - 2010-12-27 13:00 - 00000918 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job
2014-01-10 18:27 - 2014-01-10 17:59 - 00000000 ____D C:\ProgramData\HitmanPro
2014-01-10 18:14 - 2014-01-10 18:14 - 00000000 ____D C:\Users\hp-doma\Downloads\Autoruns
2014-01-10 18:13 - 2014-01-10 18:12 - 00550371 _____ C:\Users\hp-doma\Downloads\Autoruns.zip
2014-01-10 18:04 - 2014-01-10 18:00 - 10264904 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro_x64.exe
2014-01-10 17:58 - 2014-01-10 17:54 - 09452704 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro.exe
2014-01-10 17:34 - 2014-01-10 17:34 - 00000000 ____D C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
2014-01-10 17:30 - 2012-10-05 21:16 - 00000000 ____D C:\Firefox
2014-01-10 17:27 - 2011-10-28 17:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Winamp
2014-01-10 17:26 - 2009-09-07 02:57 - 00000000 ____D C:\Windows\Panther
2014-01-10 14:59 - 2013-04-01 19:38 - 00003198 _____ C:\Windows\System32\Tasks\HPCeeScheduleForhp-doma
2014-01-10 14:59 - 2013-04-01 19:38 - 00000340 _____ C:\Windows\Tasks\HPCeeScheduleForhp-doma.job
2014-01-10 07:45 - 2012-01-14 22:11 - 00000968 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job
2014-01-09 17:50 - 2014-01-09 15:45 - 00000000 ____D C:\Qoobox
2014-01-09 17:46 - 2014-01-09 17:46 - 00033909 _____ C:\ComboFix.txt
2014-01-09 17:46 - 2010-03-25 19:42 - 00000000 ____D C:\Users\Administrator
2014-01-09 17:46 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2014-01-09 17:44 - 2014-01-09 15:44 - 00000000 ____D C:\Windows\erdnt
2014-01-09 17:41 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2014-01-09 16:00 - 2009-07-14 03:34 - 82051072 _____ C:\Windows\system32\config\software.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 25427968 _____ C:\Windows\system32\config\system.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00524288 _____ C:\Windows\system32\config\default.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\security.bak
2014-01-09 16:00 - 2009-07-14 03:34 - 00262144 _____ C:\Windows\system32\config\sam.bak
2014-01-09 15:43 - 2014-01-09 15:42 - 05162489 ____R (Swearware) C:\Users\hp-doma\Downloads\abc.exe
2014-01-08 21:09 - 2014-01-08 21:09 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung (1).wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 02479456 _____ C:\Users\hp-doma\Downloads\toboganes.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01615876 _____ C:\Users\hp-doma\Downloads\der_ast.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 01180964 _____ C:\Users\hp-doma\Downloads\serveuse_du_mois.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00812092 _____ C:\Users\hp-doma\Downloads\Lavage_Du_Congelateur.wmv
2014-01-08 21:06 - 2014-01-08 21:06 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1 (1).wmv
2014-01-08 21:04 - 2014-01-08 21:04 - 00613399 _____ C:\Users\hp-doma\Downloads\rasante_Besserung.wmv
2014-01-08 21:02 - 2014-01-08 21:02 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1 (1).WMV
2014-01-08 21:02 - 2014-01-08 21:02 - 00583082 _____ C:\Users\hp-doma\Downloads\klingel-eisen_1.wmv
2014-01-08 21:01 - 2014-01-08 21:01 - 00703840 _____ C:\Users\hp-doma\Downloads\GASOLI~1.WMV
2014-01-08 20:09 - 2014-01-08 20:08 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (3).exe
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Malwarebytes
2014-01-08 19:00 - 2014-01-08 19:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 18:14 - 2014-01-08 18:13 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc (2).exe
2014-01-08 09:18 - 2014-01-08 09:17 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Desktop\ESET_Vzdalena_Pomoc (1).exe
2014-01-07 18:53 - 2010-03-15 16:23 - 00000000 ____D C:\Users\hp-doma
2014-01-07 18:51 - 2014-01-07 18:50 - 03057648 _____ (TeamViewer) C:\Users\hp-doma\Downloads\ESET_Vzdalena_Pomoc.exe
2014-01-07 01:54 - 2009-07-14 05:45 - 00401352 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-05 14:37 - 2010-03-15 16:27 - 00103152 _____ C:\Users\hp-doma\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-04 22:58 - 2014-01-04 22:58 - 00021527 _____ C:\Users\hp-doma\Desktop\ob-podminky-nejstavebniny.odt
2014-01-04 22:29 - 2011-11-03 11:38 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\Nitro PDF
2014-01-04 21:06 - 2010-10-27 08:50 - 00000000 ____D C:\Windows\Minidump
2014-01-04 20:30 - 2014-01-04 20:29 - 00000000 ____D C:\Users\hp-doma\AppData\Roaming\eCyber
2014-01-04 20:29 - 2014-01-04 20:29 - 00000000 ____D C:\Windows\system32\log
2014-01-04 20:29 - 2014-01-04 20:27 - 09366896 _____ C:\Users\hp-doma\Downloads\yet_another_cleaner.exe
2014-01-04 19:57 - 2010-04-13 17:14 - 00002004 ____H C:\Users\hp-doma\Documents\Default.rdp
2014-01-04 19:14 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2014-01-04 19:07 - 2013-10-21 20:10 - 00000000 ____D C:\Games
2014-01-04 19:06 - 2014-01-04 19:04 - 25098032 _____ C:\Users\hp-doma\Downloads\600_3D_Icons_PNG.rar
2014-01-04 17:39 - 2014-01-04 17:38 - 03280896 _____ C:\Users\hp-doma\Downloads\Mail.exe
2014-01-03 18:49 - 2014-01-03 18:49 - 00012493 _____ C:\Users\hp-doma\Downloads\1-organizace.odt
2014-01-03 12:55 - 2010-01-08 22:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-03 03:14 - 2014-01-02 20:48 - 00000000 ____D C:\Windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2014-01-03 03:09 - 2010-01-08 22:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-03 03:02 - 2014-01-03 03:02 - 15164202 _____ C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar
2014-01-02 21:23 - 2014-01-02 21:23 - 00001912 _____ C:\Windows\epplauncher.mif
2014-01-02 21:23 - 2014-01-02 21:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2014-01-02 21:23 - 2014-01-02 21:22 - 00000000 ____D C:\Program Files\Microsoft Security Client
2014-01-02 21:21 - 2014-01-02 21:21 - 13693624 _____ (Microsoft Corporation) C:\Users\hp-doma\Downloads\mseinstall.exe
2014-01-02 21:00 - 2014-01-02 21:00 - 00000892 _____ C:\Users\hp-doma\Documents\posrany netdevelo.txt
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 ____D C:\Program Files\Enigma Software Group
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 _____ C:\autoexec.bat
2014-01-02 20:44 - 2014-01-02 20:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe
2014-01-02 14:37 - 2014-01-02 14:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe
2013-12-28 10:09 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2013-12-21 19:55 - 2010-03-15 16:36 - 00000000 ___RD C:\Users\hp-doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-17 21:04 - 2013-12-17 21:04 - 00075721 _____ C:\Users\hp-doma\Downloads\prilohy_24522.zip
2013-12-16 13:03 - 2013-12-16 13:03 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-16 13:03 - 2010-05-02 13:37 - 00000000 ____D C:\Program Files (x86)\Google
2013-12-15 22:03 - 2013-07-18 08:04 - 00000000 ____D C:\Windows\system32\MRT
2013-12-15 22:00 - 2010-03-27 17:49 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-12-12 21:13 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-09 00:51
==================== End Of Log ============================
Re: přesměrovávání na linkbucks.com
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-01-2014
Ran by hp-doma at 2014-01-10 22:29:30
Running from C:\Users\hp-doma\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Disabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AV: ESET Smart Security 4.2 (Enabled - Up to date) {CB0F8167-5331-BA19-698E-64816B6801A5}
AS: ESET Smart Security 4.2 (Enabled - Up to date) {706E6083-750B-B597-533E-5FF310EF4B18}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Disabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
FW: ESET personal firewall (Enabled) {F3340042-195E-BB41-42D1-CDB495BB46DE}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader 9.4.7 - Czech (x32 Version: 9.4.7 - Adobe Systems Incorporated)
Adobe Shockwave Player (x32 Version: 11.5.1.601 - Adobe Systems, Inc.)
Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.615 - Adobe Systems, Inc.)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
Aktualizácia Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Aktualizácia Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Aktualizácia Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
Apple Application Support (x32 Version: 2.3.4 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
Asistent pro přihlášení ke službě Windows Live (x32 Version: 5.000.818.5 - Microsoft Corporation)
aTube Catcher (x32 Version: 2.9.1462 - DsNET Corp)
Avanquest update (x32 Version: 1.25 - Avanquest Software)
AVerMedia TV Tuner Card 1.0.0.4 (x32 Version: 1.0.0.4 - AVerMedia TECHNOLOGIES, Inc.)
Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.18.41 - Broadcom Corporation)
Corel Paint Shop Pro Photo X2 (x32 Version: 12.50.0001 - Corel Corporation)
Corel VideoStudio 12 (x32 Version: 12.0.0.0000 - Corel Corporation)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.) Hidden
DigitalPersona Personal 4.11 (Version: 4.11.3826 - DigitalPersona, Inc.)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard) Hidden
Elevated Installer (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
ENE CIR Receiver Driver (Version: 2.7.4.0 - ENE)
ESET Smart Security (Version: 4.2.35.3 - ESET, spol. s r.o.)
ESU for Microsoft Windows 7 (x32 Version: 1.0.0 - Hewlett-Packard)
Facebook Video Calling 1.2.0.287 (x32 Version: 1.2.287 - Skype Limited)
Free MP3 Cutter 1.01 (x32 Version: - PolySoft Solutions)
Garmin Communicator Plugin (x32 Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.1 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin Lifetime Updater (x32 Version: 2.1.7 - Garmin)
Garmin Update Service (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin USB Drivers (x32 Version: 2.3.0.0 - Garmin Ltd or its subsidiaries)
Google Earth (x32 Version: 7.1.2.2041 - Google)
Google Chrome (HKCU Version: 31.0.1650.63 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (Version: 4.0.3.1 - Hewlett-Packard)
HP Advisor (x32 Version: 3.3.9512.3162 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Games (x32 Version: 1.0.0.71 - WildTangent)
HP Integrated Module with Bluetooth wireless technology (Version: 6.2.1.500 - Broadcom Corporation)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard) Hidden
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard)
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard) Hidden
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard)
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard) Hidden
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard)
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard) Hidden
HP MediaSmart SmartMenu (Version: 3.1.0.1 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard) Hidden
HP Quick Launch Buttons (x32 Version: 6.50.7.1 - Hewlett-Packard)
HP Setup (x32 Version: 1.2.3560.3170 - Hewlett-Packard)
HP Support Assistant (x32 Version: 7.0.39.15 - Hewlett-Packard Company)
HP Update (x32 Version: 5.001.000.014 - Hewlett-Packard)
HP User Guides 0153 (x32 Version: 1.01.0000 - Hewlett-Packard)
HP Wireless Assistant (x32 Version: 3.50.9.1 - Hewlett-Packard)
IDT Audio (x32 Version: 1.0.6249.0 - IDT)
Intel® Matrix Storage Manager (Version: - Intel Corporation)
IrfanView (remove only) (x32 Version: - )
Java 7 Update 7 (x32 Version: 7.0.70 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 15 (64-bit) (Version: 6.0.150 - Sun Microsystems, Inc.)
Java(TM) 6 Update 37 (x32 Version: 6.0.370 - Oracle)
Java(TM) SE Development Kit 6 Update 15 (64-bit) (Version: 1.6.0.150 - Sun Microsystems, Inc.)
JMicron Flash Media Controller Driver (x32 Version: 1.0.32.1 - JMicron Technology Corp.)
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Kryštofova dobrodružství CZ (x32 Version: 1.0.0 - Taktik)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.) Hidden
LightScribe System Software (x32 Version: 1.18.8.1 - LightScribe)
Magic Desktop (x32 Version: - EasyBits Software AS)
Malwarebytes Anti-Malware verze 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office 2000 Premium (x32 Version: 9.00.2720 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Excel MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2007 (x32 Version: 12.0.4518.1025 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Slovak) 2007 (x32 Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Slovak) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Suite Activation Assistant (x32 Version: 2.9 - Microsoft Corporation)
Microsoft Office Word MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (Version: 4.4.304.0 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (x32 Version: 08.05.0822 - Microsoft Corporation)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard) Hidden
Mozilla Maintenance Service (x32 Version: 17.0.6 - Mozilla)
Mozilla Thunderbird 17.0.6 (x86 cs) (x32 Version: 17.0.6 - Mozilla)
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation)
Nástroj pro odesílání služby Windows Live (x32 Version: 14.0.8014.1029 - Microsoft Corporation)
Nero BurnLite 10 (x32 Version: 10.0.10500.5.100 - Nero AG)
Nero BurnLite 10 (x32 Version: 10.0.10600 - Nero AG)
Nero Control Center 10 (x32 Version: 10.0.13100.3.1 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 1.0.10700 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.15100.0.1 - Nero AG) Hidden
Nero Update (x32 Version: 1.0.0018 - Nero AG)
Nitro PDF Reader 2 (Version: 2.0.0.29 - Nitro PDF Software)
NVIDIA Drivers (Version: 1.9 - NVIDIA Corporation)
OpenOffice.org 3.4 (x32 Version: 3.4.9590 - OpenOffice.org)
Opera 11.00 (x32 Version: 11.00 - Opera Software ASA)
Pearl Harbor: Peklo na vodě (x32 Version: - Alawar Entertainment Inc.)
Plants vs. Zombies (x32 Version: - PopCap Games)
Plants vs. Zombies 1.0.0.1051 (x32 Version: - )
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.)
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.) Hidden
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.)
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.) Hidden
QLBCASL (x32 Version: 6.40.17.2 - Hewlett-Packard) Hidden
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
rajče průvodce verze 1.59.45.260 (x32 Version: - rajče.net)
Realtek Ethernet Controller Driver For Windows Vista and Later (x32 Version: 1.00.0010 - Realtek)
Recovery Manager (x32 Version: 5.5.2214 - CyberLink Corp.) Hidden
Room Arranger (x32 Version: 6.0.3 - Jan Adamec)
Skype™ 6.3 (x32 Version: 6.3.107 - Skype Technologies S.A.)
Sony Ericsson PC Companion 2.02.002 (x32 Version: 2.02.002 - Sony Ericsson)
Sweet Home 3D (HKCU Version: - eTeks)
Synaptics Pointing Device Driver (Version: 15.0.17.4 - Synaptics Incorporated)
TeamViewer 7 (x32 Version: 7.0.17271 - TeamViewer)
TomTom HOME Visual Studio Merge Modules (x32 Version: 1.0.2 - TomTom International B.V.)
Total Commander (Remove or Repair) (x32 Version: 7.50a - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (x32 Version: - Microsoft)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation)
Update for Microsoft Office 2007 Help for Common Features (KB963673) (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Update for Microsoft Office OneNote 2007 Help (KB963670) (x32 Version: - Microsoft)
Update for Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Update for Microsoft Office Script Editor Help (KB963671) (x32 Version: - Microsoft)
Update for Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
Update Service (x32 Version: 2.10.7.15 - Sony Ericsson Mobile Communications AB)
Validity Sensors DDK (Version: 3.1.366 - Validity Sensors, Inc.)
vanBasco's Karaoke Player (x32 Version: - )
Veselé Omalovánky 1 - malování pro děti (x32 Version: - Martin Roubec)
Video Viewer (x32 Version: 0.1.3.0 - )
VideoStudio (x32 Version: 12.0.0.0000 - Corel Corporation) Hidden
WD SmartWare (Version: 1.5.1 - Western Digital)
Winamp (x32 Version: 5.622 - Nullsoft, Inc)
Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (Version: 06/15/2009 6.2.0.9000 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (Version: 06/03/2009 2.3.0.0 - Garmin)
Windows Live Communications Platform (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Media Encoder 9 Series (x32 Version: - )
Windows Media Encoder 9 Series (x32 Version: 9.00.2980 - Microsoft Corporation) Hidden
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp)
WinRAR 4.20 (32-bit) (x32 Version: 4.20.0 - win.rar GmbH)
Zoner Photo Studio 11 (x32 Version: - ZONER software)
==================== Restore Points =========================
07-01-2014 01:05:26 Windows Update
09-01-2014 14:46:54 ComboFix created restore point
10-01-2014 02:39:12 Windows Update
10-01-2014 16:34:17 Removed SpyHunter
==================== Hosts content: ==========================
2009-07-14 03:34 - 2014-01-09 17:41 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {190762B5-7497-4B4B-A9D5-D572539406FD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {27A139B9-5237-474E-8268-BEA322F1336C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {2C933AB2-81B0-44EF-9243-957B14EE9700} - System32\Tasks\CLMLSvc => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-10-05] (CyberLink)
Task: {2D59F92A-AEF3-4F0F-AD8D-A3BBEAE09CDE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {4A73C7A7-6C9F-488F-80E9-580EF5461327} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
Task: {67FCE5FC-0F7B-4679-8F82-B1F436511C6A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {6AB3C148-2CC7-4062-B736-32E7841055EA} - System32\Tasks\{D1BFB819-2173-4D26-B29C-43ABE6720B9F} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-04-19] (Skype Technologies S.A.)
Task: {6B157214-FFCC-4B95-9841-520EB60303E9} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {6F5F9E9F-7E5D-4E20-949A-939A59484439} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {70F195D6-CAB9-4F52-9D90-E95746330699} - System32\Tasks\TVAgent => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [2009-10-06] (CyberLink Corp.)
Task: {783CB638-6F4C-4C22-B908-BC1986BC3B7F} - System32\Tasks\{4054CB77-FB75-48E2-A88E-190BB9F228A3} => C:\Users\hp-doma\Downloads\ThunderbirdSetup15.0.1.exe [2012-09-19] (Mozilla)
Task: {83CA772B-EDBC-4FDF-AC72-065D4DA34CBA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {8CA1ACED-556A-4B12-8430-C8EB0828CC57} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company)
Task: {8F05E3C5-78EB-4933-A118-034FB8D09DB1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {C4C28B3D-5796-42D3-9AE4-E8FCE6C76672} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {C9EF8C2F-B2D4-4303-ADCA-CDFE5F5D9131} - System32\Tasks\CapSvcInst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [2009-10-06] (CL)
Task: {D8A4E887-1F8B-400D-8601-D4F5C6AC1FBA} - System32\Tasks\HPCeeScheduleForhp-doma => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {DB91DCD9-D4B9-48E3-AC29-8686DD18A3A6} - System32\Tasks\CapUninst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [2009-10-06] (CL)
Task: {EF2C7F7F-7095-4973-8F06-7545CAB61E29} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {F6C05155-0739-400F-BC64-B87CF3DF5A8C} - System32\Tasks\CapSchedInst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [2009-10-06] (CL)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Loaded Modules (whitelisted) =============
2011-08-01 07:35 - 2011-08-01 07:35 - 00082944 _____ () C:\Program Files\Western Digital\WD SmartWare\WDCollections.dll
2009-10-06 22:57 - 2009-10-06 22:57 - 00279976 ____N () c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLCapEngine.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2009-10-05 23:08 - 2009-10-05 23:08 - 00931112 ____N () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
2013-12-05 07:53 - 2013-12-04 03:47 - 00702416 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-05 07:53 - 2013-12-04 03:47 - 00099792 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-05 07:53 - 2013-12-04 03:48 - 04055504 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-05 07:53 - 2013-12-04 03:48 - 00399312 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-05 07:53 - 2013-12-04 03:47 - 01619408 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
2013-12-05 07:53 - 2013-12-04 03:48 - 13586896 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\hp-doma\Downloads\form_30.eml:OECustomProperty
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/08/2014 04:52:49 PM) (Source: Application Error) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16428, časové razítko: 0x525b664c
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521ea8e7
Kód výjimky: 0xc0000374
Posun chyby: 0x000ce753
ID chybujícího procesu: 0x16a0
Čas spuštění chybující aplikace: 0xIEXPLORE.EXE0
Cesta k chybující aplikaci: IEXPLORE.EXE1
Cesta k chybujícímu modulu: IEXPLORE.EXE2
ID zprávy: IEXPLORE.EXE3
Error: (01/08/2014 04:52:23 PM) (Source: Application Error) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16428, časové razítko: 0x525b664c
Název chybujícího modulu: safetynut_ie.dll, verze: 5.0.0.9397, časové razítko: 0x52426f7e
Kód výjimky: 0xc0000005
Posun chyby: 0x00048835
ID chybujícího procesu: 0x16a0
Čas spuštění chybující aplikace: 0xIEXPLORE.EXE0
Cesta k chybující aplikaci: IEXPLORE.EXE1
Cesta k chybujícímu modulu: IEXPLORE.EXE2
ID zprávy: IEXPLORE.EXE3
Error: (01/05/2014 04:15:30 PM) (Source: RasClient) (User: )
Description: CoID={CFF3C62E-41E1-49B7-9627-77CF450DE283}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 0.
Error: (01/05/2014 04:15:30 PM) (Source: RasClient) (User: )
Description: CoID={CFF3C62E-41E1-49B7-9627-77CF450DE283}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 800.
Error: (01/05/2014 04:13:40 PM) (Source: RasClient) (User: )
Description: CoID={28AFB53C-51CB-4CAD-B8C6-2E6AF513FD45}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 0.
Error: (01/05/2014 04:13:40 PM) (Source: RasClient) (User: )
Description: CoID={28AFB53C-51CB-4CAD-B8C6-2E6AF513FD45}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 800.
Error: (01/05/2014 04:12:09 PM) (Source: RasClient) (User: )
Description: CoID={52787D3E-0ACD-4512-8359-07DC51E89125}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 0.
Error: (01/05/2014 04:12:09 PM) (Source: RasClient) (User: )
Description: CoID={52787D3E-0ACD-4512-8359-07DC51E89125}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 800.
Error: (01/04/2014 09:20:57 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16428, časové razítko: 0x525b664c
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521ea8e7
Kód výjimky: 0xc0000374
Posun chyby: 0x000ce753
ID chybujícího procesu: 0x1348
Čas spuštění chybující aplikace: 0xIEXPLORE.EXE0
Cesta k chybující aplikaci: IEXPLORE.EXE1
Cesta k chybujícímu modulu: IEXPLORE.EXE2
ID zprávy: IEXPLORE.EXE3
Error: (01/04/2014 09:20:42 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.9600.16428, časové razítko: 0x525b66f7
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521eaf24
Kód výjimky: 0xc0000008
Posun chyby: 0x00000000000cd7e8
ID chybujícího procesu: 0xe60
Čas spuštění chybující aplikace: 0xiexplore.exe0
Cesta k chybující aplikaci: iexplore.exe1
Cesta k chybujícímu modulu: iexplore.exe2
ID zprávy: iexplore.exe3
System errors:
=============
Error: (01/10/2014 06:38:58 PM) (Source: Service Control Manager) (User: )
Description: Služba WDRulesService neuspěla při spuštění v důsledku následující chyby:
%%1053
Error: (01/10/2014 06:38:58 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na připojení služby WDRulesService bylo dosaženo časového limitu (30000 ms).
Error: (01/09/2014 04:00:07 PM) (Source: Service Control Manager) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (01/09/2014 03:59:38 PM) (Source: Service Control Manager) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (01/09/2014 03:58:33 PM) (Source: Application Popup) (User: )
Description: Načtení \??\C:\abc\catchme.sys bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.
Error: (01/09/2014 03:54:17 PM) (Source: Service Control Manager) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (01/09/2014 03:44:59 PM) (Source: Service Control Manager) (User: )
Description: Služba Easybits Shared Services for Windows byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/09/2014 00:43:09 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252
Error: (01/09/2014 00:42:34 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252
Error: (01/09/2014 00:41:58 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252
Microsoft Office Sessions:
=========================
Error: (12/19/2013 10:07:28 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 75 seconds with 0 seconds of active time. This session ended with a crash.
Error: (12/19/2013 08:20:55 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 83 seconds with 0 seconds of active time. This session ended with a crash.
Error: (09/19/2011 09:16:03 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 8081 seconds with 0 seconds of active time. This session ended with a crash.
CodeIntegrity Errors:
===================================
Date: 2014-01-09 15:58:33.157
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-01-09 15:58:32.907
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Percentage of memory in use: 62%
Total physical RAM: 4022.87 MB
Available physical RAM: 1522.9 MB
Total Pagefile: 8043.91 MB
Available Pagefile: 4888.99 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:448.39 GB) (Free:172.88 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:17.08 GB) (Free:2.77 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
Drive g: () (Removable) (Total:14.9 GB) (Free:7.12 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: A47F08C4)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=448 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=17 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
========================================================
Disk: 1 (Size: 15 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=15 GB) - (Type=0C)
==================== End Of Log ============================
Ran by hp-doma at 2014-01-10 22:29:30
Running from C:\Users\hp-doma\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Disabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AV: ESET Smart Security 4.2 (Enabled - Up to date) {CB0F8167-5331-BA19-698E-64816B6801A5}
AS: ESET Smart Security 4.2 (Enabled - Up to date) {706E6083-750B-B597-533E-5FF310EF4B18}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Disabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
FW: ESET personal firewall (Enabled) {F3340042-195E-BB41-42D1-CDB495BB46DE}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader 9.4.7 - Czech (x32 Version: 9.4.7 - Adobe Systems Incorporated)
Adobe Shockwave Player (x32 Version: 11.5.1.601 - Adobe Systems, Inc.)
Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.615 - Adobe Systems, Inc.)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
Aktualizácia Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Aktualizácia Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Aktualizácia Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
Apple Application Support (x32 Version: 2.3.4 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
Asistent pro přihlášení ke službě Windows Live (x32 Version: 5.000.818.5 - Microsoft Corporation)
aTube Catcher (x32 Version: 2.9.1462 - DsNET Corp)
Avanquest update (x32 Version: 1.25 - Avanquest Software)
AVerMedia TV Tuner Card 1.0.0.4 (x32 Version: 1.0.0.4 - AVerMedia TECHNOLOGIES, Inc.)
Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.18.41 - Broadcom Corporation)
Corel Paint Shop Pro Photo X2 (x32 Version: 12.50.0001 - Corel Corporation)
Corel VideoStudio 12 (x32 Version: 12.0.0.0000 - Corel Corporation)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.)
CyberLink DVD Suite (x32 Version: 7.0.2216 - CyberLink Corp.) Hidden
DigitalPersona Personal 4.11 (Version: 4.11.3826 - DigitalPersona, Inc.)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard) Hidden
Elevated Installer (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
ENE CIR Receiver Driver (Version: 2.7.4.0 - ENE)
ESET Smart Security (Version: 4.2.35.3 - ESET, spol. s r.o.)
ESU for Microsoft Windows 7 (x32 Version: 1.0.0 - Hewlett-Packard)
Facebook Video Calling 1.2.0.287 (x32 Version: 1.2.287 - Skype Limited)
Free MP3 Cutter 1.01 (x32 Version: - PolySoft Solutions)
Garmin Communicator Plugin (x32 Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.1 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin Lifetime Updater (x32 Version: 2.1.7 - Garmin)
Garmin Update Service (x32 Version: 2.1.13 - Garmin Ltd or its subsidiaries) Hidden
Garmin USB Drivers (x32 Version: 2.3.0.0 - Garmin Ltd or its subsidiaries)
Google Earth (x32 Version: 7.1.2.2041 - Google)
Google Chrome (HKCU Version: 31.0.1650.63 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (Version: 4.0.3.1 - Hewlett-Packard)
HP Advisor (x32 Version: 3.3.9512.3162 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Games (x32 Version: 1.0.0.71 - WildTangent)
HP Integrated Module with Bluetooth wireless technology (Version: 6.2.1.500 - Broadcom Corporation)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard)
HP MediaSmart DVD (x32 Version: 3.1.3509 - Hewlett-Packard) Hidden
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard)
HP MediaSmart Internet TV (x32 Version: 3.1.2125 - Hewlett-Packard) Hidden
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard)
HP MediaSmart Live TV (x32 Version: 3.1.2206 - Hewlett-Packard) Hidden
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard)
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3405 - Hewlett-Packard) Hidden
HP MediaSmart SmartMenu (Version: 3.1.0.1 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 3.1.2207 - Hewlett-Packard) Hidden
HP Quick Launch Buttons (x32 Version: 6.50.7.1 - Hewlett-Packard)
HP Setup (x32 Version: 1.2.3560.3170 - Hewlett-Packard)
HP Support Assistant (x32 Version: 7.0.39.15 - Hewlett-Packard Company)
HP Update (x32 Version: 5.001.000.014 - Hewlett-Packard)
HP User Guides 0153 (x32 Version: 1.01.0000 - Hewlett-Packard)
HP Wireless Assistant (x32 Version: 3.50.9.1 - Hewlett-Packard)
IDT Audio (x32 Version: 1.0.6249.0 - IDT)
Intel® Matrix Storage Manager (Version: - Intel Corporation)
IrfanView (remove only) (x32 Version: - )
Java 7 Update 7 (x32 Version: 7.0.70 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 15 (64-bit) (Version: 6.0.150 - Sun Microsystems, Inc.)
Java(TM) 6 Update 37 (x32 Version: 6.0.370 - Oracle)
Java(TM) SE Development Kit 6 Update 15 (64-bit) (Version: 1.6.0.150 - Sun Microsystems, Inc.)
JMicron Flash Media Controller Driver (x32 Version: 1.0.32.1 - JMicron Technology Corp.)
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Kryštofova dobrodružství CZ (x32 Version: 1.0.0 - Taktik)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.2215 - CyberLink Corp.) Hidden
LightScribe System Software (x32 Version: 1.18.8.1 - LightScribe)
Magic Desktop (x32 Version: - EasyBits Software AS)
Malwarebytes Anti-Malware verze 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office 2000 Premium (x32 Version: 9.00.2720 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Excel MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2007 (x32 Version: 12.0.4518.1025 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Slovak) 2007 (x32 Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Slovak) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Suite Activation Assistant (x32 Version: 2.9 - Microsoft Corporation)
Microsoft Office Word MUI (Czech) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Slovak) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (Version: 4.4.304.0 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (x32 Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (x32 Version: 08.05.0822 - Microsoft Corporation)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard) Hidden
Mozilla Maintenance Service (x32 Version: 17.0.6 - Mozilla)
Mozilla Thunderbird 17.0.6 (x86 cs) (x32 Version: 17.0.6 - Mozilla)
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation)
Nástroj pro odesílání služby Windows Live (x32 Version: 14.0.8014.1029 - Microsoft Corporation)
Nero BurnLite 10 (x32 Version: 10.0.10500.5.100 - Nero AG)
Nero BurnLite 10 (x32 Version: 10.0.10600 - Nero AG)
Nero Control Center 10 (x32 Version: 10.0.13100.3.1 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 1.0.10700 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.15100.0.1 - Nero AG) Hidden
Nero Update (x32 Version: 1.0.0018 - Nero AG)
Nitro PDF Reader 2 (Version: 2.0.0.29 - Nitro PDF Software)
NVIDIA Drivers (Version: 1.9 - NVIDIA Corporation)
OpenOffice.org 3.4 (x32 Version: 3.4.9590 - OpenOffice.org)
Opera 11.00 (x32 Version: 11.00 - Opera Software ASA)
Pearl Harbor: Peklo na vodě (x32 Version: - Alawar Entertainment Inc.)
Plants vs. Zombies (x32 Version: - PopCap Games)
Plants vs. Zombies 1.0.0.1051 (x32 Version: - )
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.)
Power2Go (x32 Version: 6.0.3415 - CyberLink Corp.) Hidden
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.)
PowerDirector (x32 Version: 7.0.3420 - CyberLink Corp.) Hidden
QLBCASL (x32 Version: 6.40.17.2 - Hewlett-Packard) Hidden
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
rajče průvodce verze 1.59.45.260 (x32 Version: - rajče.net)
Realtek Ethernet Controller Driver For Windows Vista and Later (x32 Version: 1.00.0010 - Realtek)
Recovery Manager (x32 Version: 5.5.2214 - CyberLink Corp.) Hidden
Room Arranger (x32 Version: 6.0.3 - Jan Adamec)
Skype™ 6.3 (x32 Version: 6.3.107 - Skype Technologies S.A.)
Sony Ericsson PC Companion 2.02.002 (x32 Version: 2.02.002 - Sony Ericsson)
Sweet Home 3D (HKCU Version: - eTeks)
Synaptics Pointing Device Driver (Version: 15.0.17.4 - Synaptics Incorporated)
TeamViewer 7 (x32 Version: 7.0.17271 - TeamViewer)
TomTom HOME Visual Studio Merge Modules (x32 Version: 1.0.2 - TomTom International B.V.)
Total Commander (Remove or Repair) (x32 Version: 7.50a - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (x32 Version: - Microsoft)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation)
Update for Microsoft Office 2007 Help for Common Features (KB963673) (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office Excel 2007 Help (KB963678) (x32 Version: - Microsoft)
Update for Microsoft Office OneNote 2007 Help (KB963670) (x32 Version: - Microsoft)
Update for Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version: - Microsoft)
Update for Microsoft Office Script Editor Help (KB963671) (x32 Version: - Microsoft)
Update for Microsoft Office Word 2007 Help (KB963665) (x32 Version: - Microsoft)
Update Service (x32 Version: 2.10.7.15 - Sony Ericsson Mobile Communications AB)
Validity Sensors DDK (Version: 3.1.366 - Validity Sensors, Inc.)
vanBasco's Karaoke Player (x32 Version: - )
Veselé Omalovánky 1 - malování pro děti (x32 Version: - Martin Roubec)
Video Viewer (x32 Version: 0.1.3.0 - )
VideoStudio (x32 Version: 12.0.0.0000 - Corel Corporation) Hidden
WD SmartWare (Version: 1.5.1 - Western Digital)
Winamp (x32 Version: 5.622 - Nullsoft, Inc)
Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (Version: 06/15/2009 6.2.0.9000 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (Version: 06/03/2009 2.3.0.0 - Garmin)
Windows Live Communications Platform (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Media Encoder 9 Series (x32 Version: - )
Windows Media Encoder 9 Series (x32 Version: 9.00.2980 - Microsoft Corporation) Hidden
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp)
WinRAR 4.20 (32-bit) (x32 Version: 4.20.0 - win.rar GmbH)
Zoner Photo Studio 11 (x32 Version: - ZONER software)
==================== Restore Points =========================
07-01-2014 01:05:26 Windows Update
09-01-2014 14:46:54 ComboFix created restore point
10-01-2014 02:39:12 Windows Update
10-01-2014 16:34:17 Removed SpyHunter
==================== Hosts content: ==========================
2009-07-14 03:34 - 2014-01-09 17:41 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {190762B5-7497-4B4B-A9D5-D572539406FD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {27A139B9-5237-474E-8268-BEA322F1336C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {2C933AB2-81B0-44EF-9243-957B14EE9700} - System32\Tasks\CLMLSvc => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-10-05] (CyberLink)
Task: {2D59F92A-AEF3-4F0F-AD8D-A3BBEAE09CDE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {4A73C7A7-6C9F-488F-80E9-580EF5461327} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
Task: {67FCE5FC-0F7B-4679-8F82-B1F436511C6A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {6AB3C148-2CC7-4062-B736-32E7841055EA} - System32\Tasks\{D1BFB819-2173-4D26-B29C-43ABE6720B9F} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-04-19] (Skype Technologies S.A.)
Task: {6B157214-FFCC-4B95-9841-520EB60303E9} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {6F5F9E9F-7E5D-4E20-949A-939A59484439} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {70F195D6-CAB9-4F52-9D90-E95746330699} - System32\Tasks\TVAgent => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [2009-10-06] (CyberLink Corp.)
Task: {783CB638-6F4C-4C22-B908-BC1986BC3B7F} - System32\Tasks\{4054CB77-FB75-48E2-A88E-190BB9F228A3} => C:\Users\hp-doma\Downloads\ThunderbirdSetup15.0.1.exe [2012-09-19] (Mozilla)
Task: {83CA772B-EDBC-4FDF-AC72-065D4DA34CBA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-02] (Google Inc.)
Task: {8CA1ACED-556A-4B12-8430-C8EB0828CC57} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company)
Task: {8F05E3C5-78EB-4933-A118-034FB8D09DB1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {C4C28B3D-5796-42D3-9AE4-E8FCE6C76672} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {C9EF8C2F-B2D4-4303-ADCA-CDFE5F5D9131} - System32\Tasks\CapSvcInst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [2009-10-06] (CL)
Task: {D8A4E887-1F8B-400D-8601-D4F5C6AC1FBA} - System32\Tasks\HPCeeScheduleForhp-doma => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {DB91DCD9-D4B9-48E3-AC29-8686DD18A3A6} - System32\Tasks\CapUninst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [2009-10-06] (CL)
Task: {EF2C7F7F-7095-4973-8F06-7545CAB61E29} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-27] (Google Inc.)
Task: {F6C05155-0739-400F-BC64-B87CF3DF5A8C} - System32\Tasks\CapSchedInst => C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [2009-10-06] (CL)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Loaded Modules (whitelisted) =============
2011-08-01 07:35 - 2011-08-01 07:35 - 00082944 _____ () C:\Program Files\Western Digital\WD SmartWare\WDCollections.dll
2009-10-06 22:57 - 2009-10-06 22:57 - 00279976 ____N () c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLCapEngine.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2009-08-20 12:35 - 2009-08-20 12:35 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2009-10-05 23:08 - 2009-10-05 23:08 - 00931112 ____N () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
2013-12-05 07:53 - 2013-12-04 03:47 - 00702416 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-05 07:53 - 2013-12-04 03:47 - 00099792 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-05 07:53 - 2013-12-04 03:48 - 04055504 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-05 07:53 - 2013-12-04 03:48 - 00399312 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-05 07:53 - 2013-12-04 03:47 - 01619408 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
2013-12-05 07:53 - 2013-12-04 03:48 - 13586896 _____ () C:\Users\hp-doma\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\hp-doma\Downloads\form_30.eml:OECustomProperty
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/08/2014 04:52:49 PM) (Source: Application Error) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16428, časové razítko: 0x525b664c
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521ea8e7
Kód výjimky: 0xc0000374
Posun chyby: 0x000ce753
ID chybujícího procesu: 0x16a0
Čas spuštění chybující aplikace: 0xIEXPLORE.EXE0
Cesta k chybující aplikaci: IEXPLORE.EXE1
Cesta k chybujícímu modulu: IEXPLORE.EXE2
ID zprávy: IEXPLORE.EXE3
Error: (01/08/2014 04:52:23 PM) (Source: Application Error) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16428, časové razítko: 0x525b664c
Název chybujícího modulu: safetynut_ie.dll, verze: 5.0.0.9397, časové razítko: 0x52426f7e
Kód výjimky: 0xc0000005
Posun chyby: 0x00048835
ID chybujícího procesu: 0x16a0
Čas spuštění chybující aplikace: 0xIEXPLORE.EXE0
Cesta k chybující aplikaci: IEXPLORE.EXE1
Cesta k chybujícímu modulu: IEXPLORE.EXE2
ID zprávy: IEXPLORE.EXE3
Error: (01/05/2014 04:15:30 PM) (Source: RasClient) (User: )
Description: CoID={CFF3C62E-41E1-49B7-9627-77CF450DE283}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 0.
Error: (01/05/2014 04:15:30 PM) (Source: RasClient) (User: )
Description: CoID={CFF3C62E-41E1-49B7-9627-77CF450DE283}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 800.
Error: (01/05/2014 04:13:40 PM) (Source: RasClient) (User: )
Description: CoID={28AFB53C-51CB-4CAD-B8C6-2E6AF513FD45}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 0.
Error: (01/05/2014 04:13:40 PM) (Source: RasClient) (User: )
Description: CoID={28AFB53C-51CB-4CAD-B8C6-2E6AF513FD45}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 800.
Error: (01/05/2014 04:12:09 PM) (Source: RasClient) (User: )
Description: CoID={52787D3E-0ACD-4512-8359-07DC51E89125}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 0.
Error: (01/05/2014 04:12:09 PM) (Source: RasClient) (User: )
Description: CoID={52787D3E-0ACD-4512-8359-07DC51E89125}: Uživatel hp-doma-PC\hp-doma vytočil připojení s názvem STABE VPN, které se nezdařilo. Kód chyby vrácený při selhání je 800.
Error: (01/04/2014 09:20:57 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.16428, časové razítko: 0x525b664c
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521ea8e7
Kód výjimky: 0xc0000374
Posun chyby: 0x000ce753
ID chybujícího procesu: 0x1348
Čas spuštění chybující aplikace: 0xIEXPLORE.EXE0
Cesta k chybující aplikaci: IEXPLORE.EXE1
Cesta k chybujícímu modulu: IEXPLORE.EXE2
ID zprávy: IEXPLORE.EXE3
Error: (01/04/2014 09:20:42 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.9600.16428, časové razítko: 0x525b66f7
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521eaf24
Kód výjimky: 0xc0000008
Posun chyby: 0x00000000000cd7e8
ID chybujícího procesu: 0xe60
Čas spuštění chybující aplikace: 0xiexplore.exe0
Cesta k chybující aplikaci: iexplore.exe1
Cesta k chybujícímu modulu: iexplore.exe2
ID zprávy: iexplore.exe3
System errors:
=============
Error: (01/10/2014 06:38:58 PM) (Source: Service Control Manager) (User: )
Description: Služba WDRulesService neuspěla při spuštění v důsledku následující chyby:
%%1053
Error: (01/10/2014 06:38:58 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na připojení služby WDRulesService bylo dosaženo časového limitu (30000 ms).
Error: (01/09/2014 04:00:07 PM) (Source: Service Control Manager) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (01/09/2014 03:59:38 PM) (Source: Service Control Manager) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (01/09/2014 03:58:33 PM) (Source: Application Popup) (User: )
Description: Načtení \??\C:\abc\catchme.sys bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.
Error: (01/09/2014 03:54:17 PM) (Source: Service Control Manager) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Error: (01/09/2014 03:44:59 PM) (Source: Service Control Manager) (User: )
Description: Služba Easybits Shared Services for Windows byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/09/2014 00:43:09 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252
Error: (01/09/2014 00:42:34 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252
Error: (01/09/2014 00:41:58 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252
Microsoft Office Sessions:
=========================
Error: (12/19/2013 10:07:28 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 75 seconds with 0 seconds of active time. This session ended with a crash.
Error: (12/19/2013 08:20:55 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 83 seconds with 0 seconds of active time. This session ended with a crash.
Error: (09/19/2011 09:16:03 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 8081 seconds with 0 seconds of active time. This session ended with a crash.
CodeIntegrity Errors:
===================================
Date: 2014-01-09 15:58:33.157
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-01-09 15:58:32.907
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\abc\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Percentage of memory in use: 62%
Total physical RAM: 4022.87 MB
Available physical RAM: 1522.9 MB
Total Pagefile: 8043.91 MB
Available Pagefile: 4888.99 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:448.39 GB) (Free:172.88 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:17.08 GB) (Free:2.77 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
Drive g: () (Removable) (Total:14.9 GB) (Free:7.12 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: A47F08C4)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=448 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=17 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
========================================================
Disk: 1 (Size: 15 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=15 GB) - (Type=0C)
==================== End Of Log ============================
Re: přesměrovávání na linkbucks.com

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [171520 2010-01-09] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576 2008-12-08] (Hewlett-Packard) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.) HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation) HKCU\...\Policies\system: [DisableLockWorkstation] 0 HKCU\...\Policies\system: [DisableChangePassword] 0 HKU\Katka\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File CHR RestoreOnStartup: "hxxp://seznam.cz/", "hxxp://tvp.cz/" CHR HKCU\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [x] S3 catchme; \??\C:\abc\catchme.sys [x] S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x] S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x] S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x] 2014-01-10 22:27 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64 (1).exe 2014-01-10 22:23 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe 2014-01-10 19:07 - 2014-01-10 19:07 - 00000000 ____D C:\Users\hp-doma\Downloads\tdsskiller 2014-01-10 19:06 - 2014-01-10 19:06 - 04101441 _____ C:\Users\hp-doma\Downloads\tdsskiller.zip 2014-01-10 18:14 - 2014-01-10 18:14 - 00000000 ____D C:\Users\hp-doma\Downloads\Autoruns 2014-01-10 18:12 - 2014-01-10 18:13 - 00550371 _____ C:\Users\hp-doma\Downloads\Autoruns.zip 2014-01-10 18:00 - 2014-01-10 18:04 - 10264904 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro_x64.exe 2014-01-10 17:59 - 2014-01-10 18:27 - 00000000 ____D C:\ProgramData\HitmanPro 2014-01-10 17:54 - 2014-01-10 17:58 - 09452704 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro.exe 2014-01-10 17:34 - 2014-01-10 17:34 - 00000000 ____D C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP 2014-01-09 15:42 - 2014-01-09 15:43 - 05162489 ____R (Swearware) C:\Users\hp-doma\Downloads\abc.exe 2014-01-03 03:02 - 2014-01-03 03:02 - 15164202 _____ C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar 2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 ____D C:\Program Files\Enigma Software Group 2014-01-02 20:44 - 2014-01-02 20:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe 2014-01-02 14:37 - 2014-01-02 14:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe AlternateDataStreams: C:\Users\hp-doma\Downloads\form_30.eml:OECustomProperty CMD: ipconfig /flushdns Hosts: CMD: shutdown /r /f /t 2 End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: přesměrovávání na linkbucks.com
jedu v nouzovém režimu se síťí
2x se mi W7 zastavilo na modré obrazovce po potvrzení hesla
myš fungovala ale nabylo na co kliknout
a vit je tam pořád toto při kliku na odpovědět ve foru:
hxxp://dca14d4e.megaline.co/url/http://dca14d4e.megaline.co/url/
ix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-01-2014 01
Ran by hp-doma at 2014-01-11 09:40:23 Run:1
Running from C:\Users\hp-doma\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [171520 2010-01-09] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKU\Katka\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
CHR RestoreOnStartup: "hxxp://seznam.cz/", "hxxp://tvp.cz/"
CHR HKCU\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [x]
S3 catchme; \??\C:\abc\catchme.sys [x]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x]
2014-01-10 22:27 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64 (1).exe
2014-01-10 22:23 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-10 19:07 - 2014-01-10 19:07 - 00000000 ____D C:\Users\hp-doma\Downloads\tdsskiller
2014-01-10 19:06 - 2014-01-10 19:06 - 04101441 _____ C:\Users\hp-doma\Downloads\tdsskiller.zip
2014-01-10 18:14 - 2014-01-10 18:14 - 00000000 ____D C:\Users\hp-doma\Downloads\Autoruns
2014-01-10 18:12 - 2014-01-10 18:13 - 00550371 _____ C:\Users\hp-doma\Downloads\Autoruns.zip
2014-01-10 18:00 - 2014-01-10 18:04 - 10264904 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro_x64.exe
2014-01-10 17:59 - 2014-01-10 18:27 - 00000000 ____D C:\ProgramData\HitmanPro
2014-01-10 17:54 - 2014-01-10 17:58 - 09452704 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro.exe
2014-01-10 17:34 - 2014-01-10 17:34 - 00000000 ____D C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
2014-01-09 15:42 - 2014-01-09 15:43 - 05162489 ____R (Swearware) C:\Users\hp-doma\Downloads\abc.exe
2014-01-03 03:02 - 2014-01-03 03:02 - 15164202 _____ C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 ____D C:\Program Files\Enigma Software Group
2014-01-02 20:44 - 2014-01-02 20:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe
2014-01-02 14:37 - 2014-01-02 14:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
AlternateDataStreams: C:\Users\hp-doma\Downloads\form_30.eml:OECustomProperty
CMD: ipconfig /flushdns
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\Malwarebytes Anti-Malware => Value not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableLockWorkstation => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableChangePassword => Value deleted successfully.
HKU\Katka\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Value deleted successfully.
HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKCR\PROTOCOLS\Handler\ipp\0x00000001 => Key deleted successfully.
HKCR\CLSID\{E1D2BF42-A96B-11D1-9C6B-0000F875AC61} => Key not found.
CHR RestoreOnStartup: "hxxp://seznam.cz/", "hxxp://tvp.cz/" ==> The Chrome "Settings" can be used to fix the entry.
HKCU\SOFTWARE\Google\Chrome\Extensions\malebckkmhhonigohmeacppccacdpkjm => Key deleted successfully.
C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx => Moved successfully.
ezSharedSvc => Service deleted successfully.
catchme => Service deleted successfully.
ewusbnet => Service deleted successfully.
hwdatacard => Service deleted successfully.
hwusbdev => Service deleted successfully.
C:\Users\hp-doma\Downloads\FRST64 (1).exe => Moved successfully.
C:\Users\hp-doma\Downloads\FRST64.exe => Moved successfully.
C:\Users\hp-doma\Downloads\tdsskiller => Moved successfully.
C:\Users\hp-doma\Downloads\tdsskiller.zip => Moved successfully.
C:\Users\hp-doma\Downloads\Autoruns => Moved successfully.
C:\Users\hp-doma\Downloads\Autoruns.zip => Moved successfully.
C:\Users\hp-doma\Downloads\HitmanPro_x64.exe => Moved successfully.
C:\ProgramData\HitmanPro => Moved successfully.
C:\Users\hp-doma\Downloads\HitmanPro.exe => Moved successfully.
C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP => Moved successfully.
C:\Users\hp-doma\Downloads\abc.exe => Moved successfully.
C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar => Moved successfully.
C:\Program Files\Enigma Software Group => Moved successfully.
C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe => Moved successfully.
C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => Moved successfully.
C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => Moved successfully.
C:\Users\hp-doma\Downloads\form_30.eml => ":OECustomProperty" ADS removed successfully.
========= ipconfig /flushdns =========
Konfigurace protokolu IP syst�mu Windows
Mezipam p�ekl�d�n� DNS byla �sp��n� vypr�zdn�na.
========= End of CMD: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
The system needs a manual reboot.
==== End of Fixlog ====
2x se mi W7 zastavilo na modré obrazovce po potvrzení hesla
myš fungovala ale nabylo na co kliknout
a vit je tam pořád toto při kliku na odpovědět ve foru:
hxxp://dca14d4e.megaline.co/url/http://dca14d4e.megaline.co/url/
ix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-01-2014 01
Ran by hp-doma at 2014-01-11 09:40:23 Run:1
Running from C:\Users\hp-doma\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [171520 2010-01-09] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKU\Katka\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
CHR RestoreOnStartup: "hxxp://seznam.cz/", "hxxp://tvp.cz/"
CHR HKCU\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\hp-doma\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx
CHR HKLM-x32\...\Chrome\Extension: [malebckkmhhonigohmeacppccacdpkjm] - C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx
R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [x]
S3 catchme; \??\C:\abc\catchme.sys [x]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x]
2014-01-10 22:27 - 2014-01-10 22:27 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64 (1).exe
2014-01-10 22:23 - 2014-01-10 22:23 - 01932166 _____ (Farbar) C:\Users\hp-doma\Downloads\FRST64.exe
2014-01-10 19:07 - 2014-01-10 19:07 - 00000000 ____D C:\Users\hp-doma\Downloads\tdsskiller
2014-01-10 19:06 - 2014-01-10 19:06 - 04101441 _____ C:\Users\hp-doma\Downloads\tdsskiller.zip
2014-01-10 18:14 - 2014-01-10 18:14 - 00000000 ____D C:\Users\hp-doma\Downloads\Autoruns
2014-01-10 18:12 - 2014-01-10 18:13 - 00550371 _____ C:\Users\hp-doma\Downloads\Autoruns.zip
2014-01-10 18:00 - 2014-01-10 18:04 - 10264904 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro_x64.exe
2014-01-10 17:59 - 2014-01-10 18:27 - 00000000 ____D C:\ProgramData\HitmanPro
2014-01-10 17:54 - 2014-01-10 17:58 - 09452704 _____ (SurfRight B.V.) C:\Users\hp-doma\Downloads\HitmanPro.exe
2014-01-10 17:34 - 2014-01-10 17:34 - 00000000 ____D C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
2014-01-09 15:42 - 2014-01-09 15:43 - 05162489 ____R (Swearware) C:\Users\hp-doma\Downloads\abc.exe
2014-01-03 03:02 - 2014-01-03 03:02 - 15164202 _____ C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar
2014-01-02 20:50 - 2014-01-02 20:50 - 00000000 ____D C:\Program Files\Enigma Software Group
2014-01-02 20:44 - 2014-01-02 20:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe
2014-01-02 14:37 - 2014-01-02 14:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => C:\Users\hp-doma\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
AlternateDataStreams: C:\Users\hp-doma\Downloads\form_30.eml:OECustomProperty
CMD: ipconfig /flushdns
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\Malwarebytes Anti-Malware => Value not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableLockWorkstation => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableChangePassword => Value deleted successfully.
HKU\Katka\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Value deleted successfully.
HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKCR\PROTOCOLS\Handler\ipp\0x00000001 => Key deleted successfully.
HKCR\CLSID\{E1D2BF42-A96B-11D1-9C6B-0000F875AC61} => Key not found.
CHR RestoreOnStartup: "hxxp://seznam.cz/", "hxxp://tvp.cz/" ==> The Chrome "Settings" can be used to fix the entry.
HKCU\SOFTWARE\Google\Chrome\Extensions\malebckkmhhonigohmeacppccacdpkjm => Key deleted successfully.
C:\Users\hp-doma\AppData\Local\CRE\malebckkmhhonigohmeacppccacdpkjm.crx => Moved successfully.
ezSharedSvc => Service deleted successfully.
catchme => Service deleted successfully.
ewusbnet => Service deleted successfully.
hwdatacard => Service deleted successfully.
hwusbdev => Service deleted successfully.
C:\Users\hp-doma\Downloads\FRST64 (1).exe => Moved successfully.
C:\Users\hp-doma\Downloads\FRST64.exe => Moved successfully.
C:\Users\hp-doma\Downloads\tdsskiller => Moved successfully.
C:\Users\hp-doma\Downloads\tdsskiller.zip => Moved successfully.
C:\Users\hp-doma\Downloads\Autoruns => Moved successfully.
C:\Users\hp-doma\Downloads\Autoruns.zip => Moved successfully.
C:\Users\hp-doma\Downloads\HitmanPro_x64.exe => Moved successfully.
C:\ProgramData\HitmanPro => Moved successfully.
C:\Users\hp-doma\Downloads\HitmanPro.exe => Moved successfully.
C:\Windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP => Moved successfully.
C:\Users\hp-doma\Downloads\abc.exe => Moved successfully.
C:\Users\hp-doma\Downloads\SpyHunter 4.1.11.0 + Crack [dazz1][h33t].rar => Moved successfully.
C:\Program Files\Enigma Software Group => Moved successfully.
C:\Users\hp-doma\Downloads\SpyHunter-Installer (1).exe => Moved successfully.
C:\Users\hp-doma\Downloads\SpyHunter-Installer.exe => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1444394735-2093030654-3007498860-1001UA.job => Moved successfully.
C:\Windows\Tasks\HPCeeScheduleForhp-doma.job => Moved successfully.
C:\Users\hp-doma\Downloads\form_30.eml => ":OECustomProperty" ADS removed successfully.
========= ipconfig /flushdns =========
Konfigurace protokolu IP syst�mu Windows
Mezipam p�ekl�d�n� DNS byla �sp��n� vypr�zdn�na.
========= End of CMD: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
The system needs a manual reboot.
==== End of Fixlog ====
Re: přesměrovávání na linkbucks.com
přesné znění při kliku na odppovědět ve foru:
hxxp://dca14d4e.megaline.co/url/http://dca14d4e.megaline.co/url/http:// ... 3&t=135382
hxxp://dca14d4e.megaline.co/url/http://dca14d4e.megaline.co/url/http:// ... 3&t=135382
Re: přesměrovávání na linkbucks.com
ještě poznatek nejde mi spustit google a youtube co jsem postřehl
Re: přesměrovávání na linkbucks.com
Úplná změna
připojil jsem se na jiné wifi přes jiného providera - bez problému, po přesměrování ani památky
přijel jsem domů - zmeškaný hovor od stávajícího mého providera - stav zatím bez problému .
Tak napíšu co zjistil udělal , jestli řekne že nic = velká záhada.
doufám že to vydrží
Ted jsem domluvil s providerem na jejich straně nic nedělali a nic nepozorovali.
Takže velké díky VYOSEK za odstranění .
připojil jsem se na jiné wifi přes jiného providera - bez problému, po přesměrování ani památky
přijel jsem domů - zmeškaný hovor od stávajícího mého providera - stav zatím bez problému .
Tak napíšu co zjistil udělal , jestli řekne že nic = velká záhada.
doufám že to vydrží
Ted jsem domluvil s providerem na jejich straně nic nedělali a nic nepozorovali.
Takže velké díky VYOSEK za odstranění .
Re: přesměrovávání na linkbucks.com
Tak jeste uklidime
T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


Re: přesměrovávání na linkbucks.com
ok vše uděláno
ještě jednou díky
ještě jednou díky