Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivka

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Preventivka

#1 Příspěvek od Zmaslo »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Zmaslo at 2012-12-10 20:49:25
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 416 GB (58%) free of 715 GB
Total RAM: 5982 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:52:29, on 10.12.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16455)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Zmaslo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Dolby PCEE4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2943122258-4147018948-1888142041-1002\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2943122258-4147018948-1888142041-1002\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_Tablet.exe
O23 - Service: Wacom Consumer Touch Service (TouchServicePen) - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_TouchService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Broadcom Corporation - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10676 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\Tablet\Pen\Pen_TouchService.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
/QuitInfo:00000000000003DC;00000000000003F4; /AddRef;
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE" "C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe"
C:\Windows\system32\WLANExt.exe 27903664
C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe
\??\C:\Windows\system32\conhost.exe "1321585731-21196494023484990981457203122065259745-169552730-10862159682144171752
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Tablet\Pen\Pen_Tablet.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
/QuitInfo:000000000000088C;000000000000089C; /AddRef;
"C:\Program Files\Tablet\Pen\Pen_TabletUser.exe"
/QuitInfo:0000000000000884;00000000000008A8;
/loadhooks /Parent:0000000000000B94
WLIDSvcM.exe 2640
"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\igfxpers.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Tablet\Pen\Pen_Tablet.exe" au
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Dolby PCEE4\pcee4.exe" -autostart
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"taskhost.exe"
"C:\Program Files\Tablet\Pen\Pen_TouchUser.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Users\Zmaslo\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Zmaslo\AppData\Roaming\Mozilla\Firefox\Profiles\76b4szv1.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@wacom.com/wacom-plugin,version=1.1.0.5]
"Description"=WebTablet Plugin API
"Path"=C:\Program Files (x86)\TabletPlugins\npwacom.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.5.502.110 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_110.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-10-30 1502288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-25 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-25 155384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-10-30 1502288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Broadcom Wireless Manager UI"=C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [2012-09-04 7138816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-03-19 170264]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-03-19 439064]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-12-27 12343400]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-11-15 1156712]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-02-14 2868496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"= []
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-08-28 3671904]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-08-28 3671904]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\Windows\system32\hkcmd.exe [2012-03-19 398616]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium]
C:\QIP2012\qip.exe [2012-03-23 7351760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-01-27 291608]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-30 4297136]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"Dolby Home Theater v4"=C:\Dolby PCEE4\pcee4.exe [2011-06-01 506712]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-03-19 434688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-12-10 20:49:26 ----D---- C:\Program Files\trend micro
2012-12-10 20:49:25 ----D---- C:\rsit
2012-12-08 09:43:29 ----D---- C:\Fraps
2012-12-08 09:13:03 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-11-29 12:14:44 ----D---- C:\Windows\SYSWOW64\NV
2012-11-29 12:14:44 ----D---- C:\Windows\system32\NV
2012-11-29 12:09:22 ----D---- C:\Program Files (x86)\AGEIA Technologies
2012-11-29 12:08:46 ----D---- C:\ProgramData\NVIDIA
2012-11-29 12:07:56 ----A---- C:\Windows\system32\nvvsvc.exe
2012-11-29 12:07:56 ----A---- C:\Windows\system32\nvsvc64.dll
2012-11-29 12:07:56 ----A---- C:\Windows\system32\nvshext.dll
2012-11-29 12:07:56 ----A---- C:\Windows\system32\nv3dappshextr.dll
2012-11-29 12:07:56 ----A---- C:\Windows\system32\nv3dappshext.dll
2012-11-29 12:07:55 ----A---- C:\Windows\system32\nvsvcr.dll
2012-11-29 12:07:55 ----A---- C:\Windows\system32\nvmctray.dll
2012-11-29 12:07:55 ----A---- C:\Windows\system32\nvcpl.dll
2012-11-29 12:06:30 ----D---- C:\ProgramData\NVIDIA Corporation
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-11-29 11:57:57 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvumdshimx.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvopencl.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvoglv64.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvinitx.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvdispco64.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvcuvid.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvcuda.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvcompiler.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\nvapi64.dll
2012-11-29 11:57:57 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2012-11-29 11:57:57 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-11-29 11:57:56 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-11-29 11:57:56 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2012-11-29 11:57:56 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-11-29 11:57:56 ----A---- C:\Windows\system32\nvdispgenco64.dll
2012-11-29 10:51:54 ----D---- C:\Users\Zmaslo\AppData\Roaming\Theta
2012-11-29 10:37:02 ----D---- C:\ProgramData\Orbit
2012-11-29 10:07:14 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2012-11-29 10:07:14 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-11-29 10:07:11 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2012-11-29 10:07:11 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-11-29 10:07:10 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2012-11-29 10:07:10 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-11-29 10:07:08 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2012-11-29 10:07:08 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-11-29 10:07:07 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2012-11-29 10:07:07 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2012-11-29 10:07:07 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2012-11-29 10:07:07 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-11-29 10:07:07 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-11-29 10:07:07 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-11-29 10:07:06 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2012-11-29 10:07:06 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2012-11-29 10:07:06 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-11-29 10:07:06 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-11-29 10:07:05 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2012-11-29 10:07:05 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-11-29 10:07:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2012-11-29 10:07:03 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-11-29 10:07:01 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2012-11-29 10:07:01 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-11-29 10:07:00 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2012-11-29 10:07:00 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-11-29 10:06:58 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2012-11-29 10:06:58 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-11-29 10:06:55 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2012-11-29 10:06:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2012-11-29 10:06:55 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-11-29 10:06:55 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-11-29 10:06:53 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2012-11-29 10:06:53 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-11-29 10:06:52 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2012-11-29 10:06:52 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2012-11-29 10:06:52 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-11-29 10:06:52 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-11-29 10:06:51 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2012-11-29 10:06:51 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2012-11-29 10:06:51 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-11-29 10:06:51 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-11-29 10:06:48 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2012-11-29 10:06:48 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-11-29 10:06:46 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2012-11-29 10:06:46 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-11-29 10:06:45 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2012-11-29 10:06:45 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2012-11-29 10:06:45 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-11-29 10:06:45 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-11-29 10:06:44 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2012-11-29 10:06:44 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-11-29 10:06:43 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2012-11-29 10:06:43 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-11-29 10:06:42 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-11-29 10:06:42 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-11-29 10:06:42 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-11-29 10:06:42 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-11-29 10:06:41 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2012-11-29 10:06:41 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-11-29 10:06:39 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-11-29 10:06:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-11-29 10:06:39 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-11-29 10:06:39 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-11-29 10:06:36 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-11-29 10:06:36 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-11-29 10:06:34 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2012-11-29 10:06:34 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2012-11-29 10:06:34 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2012-11-29 10:06:34 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-11-29 10:06:34 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-11-29 10:06:34 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-11-29 10:06:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2012-11-29 10:06:33 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-11-29 10:06:31 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2012-11-29 10:06:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2012-11-29 10:06:31 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-11-29 10:06:31 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-11-29 10:06:28 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2012-11-29 10:06:28 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-11-29 10:06:27 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2012-11-29 10:06:27 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-11-29 10:06:26 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2012-11-29 10:06:26 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-11-29 10:06:25 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2012-11-29 10:06:25 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-11-29 10:06:23 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2012-11-29 10:06:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2012-11-29 10:06:23 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-11-29 10:06:23 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-11-29 10:06:20 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2012-11-29 10:06:20 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2012-11-29 10:06:20 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-11-29 10:06:20 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-11-29 10:06:17 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2012-11-29 10:06:17 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2012-11-29 10:06:17 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-11-29 10:06:17 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-11-29 10:06:14 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2012-11-29 10:06:14 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-11-29 10:06:13 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2012-11-29 10:06:13 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-11-29 10:06:10 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2012-11-29 10:06:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2012-11-29 10:06:10 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-11-29 10:06:10 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-11-29 10:06:07 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2012-11-29 10:06:07 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-11-29 10:06:06 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2012-11-29 10:06:06 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2012-11-29 10:06:06 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-11-29 10:06:06 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-11-29 10:06:04 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2012-11-29 10:06:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2012-11-29 10:06:04 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-11-29 10:06:04 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-11-29 10:06:00 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2012-11-29 10:06:00 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2012-11-29 10:06:00 ----A---- C:\Windows\system32\xinput1_3.dll
2012-11-29 10:06:00 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-11-29 10:05:58 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2012-11-29 10:05:58 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-11-29 10:05:56 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2012-11-29 10:05:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2012-11-29 10:05:56 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-11-29 10:05:56 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-11-29 10:05:52 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2012-11-29 10:05:52 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-11-29 10:05:51 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2012-11-29 10:05:51 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2012-11-29 10:05:51 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-11-29 10:05:51 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-11-29 10:05:50 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2012-11-29 10:05:50 ----A---- C:\Windows\system32\d3dx10.dll
2012-11-29 10:05:46 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2012-11-29 10:05:46 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2012-11-29 10:05:46 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-11-29 10:05:46 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-11-29 10:05:43 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2012-11-29 10:05:43 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-11-29 10:05:42 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2012-11-29 10:05:42 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-11-29 10:05:41 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2012-11-29 10:05:41 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2012-11-29 10:05:41 ----A---- C:\Windows\system32\xinput1_2.dll
2012-11-29 10:05:41 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-11-29 10:05:40 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2012-11-29 10:05:40 ----A---- C:\Windows\system32\xinput1_1.dll
2012-11-29 10:05:38 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2012-11-29 10:05:38 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-11-29 10:05:24 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2012-11-29 10:05:24 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-11-29 10:05:21 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2012-11-29 10:05:21 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2012-11-29 10:05:21 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-11-29 10:05:21 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-11-29 10:05:18 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2012-11-29 10:05:18 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-11-29 10:05:15 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2012-11-29 10:05:15 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-11-29 10:05:13 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2012-11-29 10:05:13 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-11-29 10:05:11 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2012-11-29 10:05:11 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-11-29 10:05:08 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2012-11-29 10:05:08 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-11-29 10:05:05 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2012-11-29 10:05:05 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-11-27 21:38:49 ----D---- C:\Program Files (x86)\Bethesda Softworks
2012-11-23 19:28:30 ----D---- C:\ProgramData\PhotoME
2012-11-23 19:28:30 ----D---- C:\Program Files (x86)\PhotoME
2012-11-20 17:32:51 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2012-11-20 17:32:51 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-11-20 17:32:51 ----A---- C:\Windows\SYSWOW64\java.exe
2012-11-19 21:00:00 ----RA---- C:\Windows\SYSWOW64\pbsvc.exe
2012-11-18 21:04:24 ----D---- C:\Windows\cs
2012-11-18 21:03:04 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-11-18 21:00:54 ----D---- C:\Program Files (x86)\Windows Live
2012-11-18 20:58:46 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2012-11-18 20:58:46 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2012-11-18 20:58:46 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-11-18 20:58:46 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-11-18 20:58:40 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2012-11-18 20:58:40 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-11-18 20:58:35 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2012-11-18 20:58:35 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-11-18 20:57:37 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2012-11-18 20:57:37 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-11-18 20:55:16 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2012-11-18 20:55:16 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-11-16 09:16:26 ----A---- C:\Windows\system32\Wdfres.dll
2012-11-16 09:16:26 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2012-11-16 09:16:26 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2012-11-16 09:09:15 ----A---- C:\Windows\system32\mshtmled.dll
2012-11-16 09:09:14 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-11-16 09:09:13 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-11-16 09:09:12 ----A---- C:\Windows\SYSWOW64\url.dll
2012-11-16 09:09:12 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-11-16 09:09:12 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-11-16 09:09:12 ----A---- C:\Windows\system32\url.dll
2012-11-16 09:09:12 ----A---- C:\Windows\system32\ieUnatt.exe
2012-11-16 09:09:12 ----A---- C:\Windows\system32\ieui.dll
2012-11-16 09:09:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-11-16 09:09:11 ----A---- C:\Windows\system32\urlmon.dll
2012-11-16 09:09:10 ----A---- C:\Windows\system32\jscript9.dll
2012-11-16 09:09:09 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-11-16 09:09:09 ----A---- C:\Windows\system32\msfeeds.dll
2012-11-16 09:09:08 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-11-16 09:09:07 ----A---- C:\Windows\system32\wininet.dll
2012-11-16 09:09:07 ----A---- C:\Windows\system32\jsproxy.dll
2012-11-16 09:09:06 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-11-16 09:09:06 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-11-16 09:09:06 ----A---- C:\Windows\system32\vbscript.dll
2012-11-16 09:09:05 ----A---- C:\Windows\system32\jscript.dll
2012-11-16 09:09:05 ----A---- C:\Windows\system32\iertutil.dll
2012-11-16 09:09:04 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-11-16 09:09:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-11-16 09:09:01 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-11-16 09:09:00 ----A---- C:\Windows\system32\mshtml.dll
2012-11-16 09:08:58 ----A---- C:\Windows\system32\ieframe.dll
2012-11-16 09:08:56 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-11-15 23:51:31 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-11-15 23:51:31 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-11-15 23:51:31 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-11-15 23:51:31 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-11-15 23:51:29 ----A---- C:\Windows\system32\WUDFx.dll
2012-11-15 23:51:29 ----A---- C:\Windows\system32\WUDFHost.exe
2012-11-15 23:51:29 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-11-15 20:58:31 ----D---- C:\ProgramData\McAfee
2012-11-15 20:54:28 ----D---- C:\Program Files\Synaptics
2012-11-15 20:54:05 ----A---- C:\Windows\system32\SynGlwPadShlExt.dll
2012-11-15 20:54:04 ----A---- C:\Windows\system32\drivers\SynTP.sys
2012-11-15 20:54:03 ----A---- C:\Windows\SYSWOW64\SynTPCOM.dll
2012-11-15 20:54:01 ----A---- C:\Windows\SYSWOW64\SynTPEnhPS.dll
2012-11-15 20:54:01 ----A---- C:\Windows\SYSWOW64\SynCtrl.dll
2012-11-15 20:54:01 ----A---- C:\Windows\SYSWOW64\SynCOM.dll
2012-11-15 20:54:01 ----A---- C:\Windows\system32\SynTPAPI.dll
2012-11-15 20:54:01 ----A---- C:\Windows\system32\SynCtrl.dll
2012-11-15 20:54:01 ----A---- C:\Windows\system32\SynCOM.dll
2012-11-15 20:53:20 ----A---- C:\Windows\system32\drivers\Smb_driver.sys
2012-11-14 20:53:16 ----A---- C:\Windows\system32\dhcpcore6.dll
2012-11-14 20:53:15 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2012-11-14 20:53:15 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2012-11-14 20:53:15 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2012-11-14 20:53:11 ----A---- C:\Windows\SYSWOW64\synceng.dll
2012-11-14 20:53:11 ----A---- C:\Windows\system32\win32k.sys
2012-11-14 20:53:11 ----A---- C:\Windows\system32\synceng.dll
2012-11-14 20:52:51 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-11-14 20:52:51 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2012-11-14 20:52:51 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-11-14 20:52:51 ----A---- C:\Windows\system32\nlasvc.dll
2012-11-14 20:52:51 ----A---- C:\Windows\system32\netcorehc.dll
2012-11-14 20:52:51 ----A---- C:\Windows\system32\ncsi.dll
2012-11-14 20:52:51 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-11-14 20:52:51 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-11-14 20:52:51 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-11-14 20:52:50 ----A---- C:\Windows\SYSWOW64\netevent.dll
2012-11-14 20:52:50 ----A---- C:\Windows\system32\nlaapi.dll
2012-11-14 20:52:50 ----A---- C:\Windows\system32\netevent.dll
2012-11-13 22:01:13 ----D---- C:\Program Files (x86)\MSECache
2012-11-12 15:50:54 ----D---- C:\Users\Zmaslo\AppData\Roaming\vlc

======List of files/folders modified in the last 1 month======

2012-12-10 20:49:37 ----D---- C:\Windows\Prefetch
2012-12-10 20:49:29 ----D---- C:\Windows\Temp
2012-12-10 20:49:26 ----RD---- C:\Program Files
2012-12-10 20:45:55 ----D---- C:\Users\Zmaslo\AppData\Roaming\uTorrent
2012-12-10 20:45:55 ----D---- C:\Users\Zmaslo\AppData\Roaming\DAEMON Tools Lite
2012-12-10 20:43:23 ----D---- C:\Windows\Logs
2012-12-10 20:43:23 ----D---- C:\Windows\inf
2012-12-10 20:43:23 ----D---- C:\Windows\debug
2012-12-10 20:43:23 ----D---- C:\Windows
2012-12-10 20:24:40 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-12-10 20:22:57 ----D---- C:\Program Files (x86)\Adobe
2012-12-10 20:16:55 ----D---- C:\Windows\SysWOW64
2012-12-10 20:16:20 ----D---- C:\Users\Zmaslo\AppData\Roaming\Adobe
2012-12-10 20:15:59 ----D---- C:\Program Files\Adobe
2012-12-10 20:14:24 ----SHD---- C:\Windows\Installer
2012-12-10 18:48:22 ----D---- C:\Users\Zmaslo\AppData\Roaming\Skype
2012-12-10 07:21:16 ----D---- C:\Windows\system32\config
2012-12-09 20:11:00 ----D---- C:\Windows\System32
2012-12-09 20:11:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-12-09 09:57:35 ----A---- C:\Windows\SYSWOW64\log.txt
2012-12-09 09:54:28 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2012-12-08 09:40:56 ----RD---- C:\Program Files (x86)
2012-12-07 23:06:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-12-07 23:06:22 ----SHD---- C:\System Volume Information
2012-12-07 23:05:57 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2012-12-07 23:05:54 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2012-12-07 23:04:19 ----RSD---- C:\Windows\assembly
2012-12-06 11:51:06 ----D---- C:\Program Files (x86)\FreeRapid-0.86u1
2012-12-04 07:04:19 ----D---- C:\Program Files (x86)\uTorrent
2012-12-02 10:50:48 ----D---- C:\Windows\rescache
2012-11-29 13:19:10 ----RSD---- C:\Windows\Fonts
2012-11-29 12:09:22 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-11-29 12:08:46 ----HD---- C:\ProgramData
2012-11-29 12:08:37 ----RD---- C:\Users
2012-11-29 12:08:22 ----D---- C:\Program Files\NVIDIA Corporation
2012-11-29 12:07:45 ----D---- C:\Windows\Help
2012-11-29 12:06:17 ----D---- C:\Windows\system32\drivers
2012-11-29 12:06:12 ----D---- C:\Windows\system32\catroot
2012-11-29 12:06:07 ----D---- C:\Windows\system32\catroot2
2012-11-29 12:06:02 ----D---- C:\Windows\system32\DriverStore
2012-11-29 11:40:47 ----SD---- C:\ProgramData\Microsoft
2012-11-29 10:08:30 ----D---- C:\Program Files (x86)\Ubisoft
2012-11-29 10:08:00 ----D---- C:\Windows\SoftwareDistribution
2012-11-29 08:23:17 ----D---- C:\Windows\winsxs
2012-11-29 08:23:09 ----D---- C:\Windows\AppPatch
2012-11-23 18:33:44 ----D---- C:\ProgramData\Adobe
2012-11-23 18:33:44 ----D---- C:\Program Files\Common Files\Adobe
2012-11-20 17:32:51 ----D---- C:\Program Files (x86)\Java
2012-11-20 11:09:31 ----RD---- C:\Modern Warfare 3
2012-11-20 09:53:39 ----D---- C:\ProgramData\Microsoft Help
2012-11-20 09:52:09 ----D---- C:\Program Files (x86)\Microsoft Office
2012-11-20 09:45:41 ----A---- C:\Windows\win.ini
2012-11-19 12:49:17 ----D---- C:\Program Files (x86)\Microsoft Works
2012-11-18 21:01:42 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-11-18 20:49:52 ----D---- C:\Program Files (x86)\Common Files
2012-11-17 13:11:36 ----D---- C:\Windows\Microsoft.NET
2012-11-16 13:00:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-11-16 13:00:44 ----D---- C:\Windows\system32\cs-CZ
2012-11-16 13:00:43 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-11-16 13:00:41 ----D---- C:\Windows\system32\wbem
2012-11-16 13:00:39 ----D---- C:\Windows\PolicyDefinitions
2012-11-16 13:00:38 ----D---- C:\Windows\SYSWOW64\migration
2012-11-16 13:00:38 ----D---- C:\Windows\system32\migration
2012-11-16 13:00:37 ----D---- C:\Program Files (x86)\Internet Explorer
2012-11-16 13:00:34 ----D---- C:\Program Files\Internet Explorer
2012-11-16 09:06:21 ----A---- C:\Windows\system32\MRT.exe
2012-11-15 21:19:28 ----D---- C:\Windows\Minidump
2012-11-15 20:58:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-11-13 21:59:42 ----SD---- C:\Users\Zmaslo\AppData\Roaming\Microsoft
2012-11-13 15:16:21 ----D---- C:\Windows\system32\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-01-27 16152]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2012-11-22 30056]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-10-15 54072]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-10-30 984144]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-10-30 370288]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-10-30 59728]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-09-05 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-10-30 25232]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-10-30 71600]
R3 b57xdbd;Broadcom xD Picture Bus Driver Service; C:\Windows\system32\DRIVERS\b57xdbd.sys [2011-11-04 68648]
R3 b57xdmp;Broadcom xD Picture vstorp client drv; C:\Windows\system32\DRIVERS\b57xdmp.sys [2011-11-04 19496]
R3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2012-09-04 22592]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2012-09-04 4746304]
R3 BcmVWL;Broadcom Virtual Wireless; C:\Windows\system32\DRIVERS\bcmvwl64.sys [2012-09-04 21568]
R3 bScsiMSa;bScsiMSa; C:\Windows\system32\DRIVERS\bScsiMSa.sys [2011-09-02 51752]
R3 bScsiSDa;bScsiSDa; C:\Windows\system32\DRIVERS\bScsiSDa.sys [2012-02-09 78888]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-03-19 14745600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-03 4730344]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-01-27 356120]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-01-27 787736]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2012-01-18 435240]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 SmbDrv;SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver.sys [2012-02-14 22800]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-02-14 412944]
R3 wacommousefilter;Wacom Mouse Filter Driver; C:\Windows\system32\DRIVERS\wacommousefilter.sys [2010-10-05 12848]
R3 wacomvhid;Wacom Virtual Hid Driver; C:\Windows\system32\DRIVERS\wacomvhid.sys [2010-10-05 16168]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 wacmoumonitor;Wacom Mode Helper; C:\Windows\system32\DRIVERS\wacmoumonitor.sys [2010-10-05 18288]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-10-30 44808]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-08 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-08 277784]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-11-22 890216]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-11-22 1259880]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-12-07 75136]
R2 TabletServicePen;TabletServicePen; C:\Program Files\Tablet\Pen\Pen_Tablet.exe [2010-10-21 5790064]
R2 TouchServicePen;Wacom Consumer Touch Service; C:\Program Files\Tablet\Pen\Pen_TouchService.exe [2010-10-21 487280]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-08 363800]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE [2012-09-04 48128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-11-15 250808]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-03-19 276248]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-12-08 115168]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-09-04 1255736]

-----------------EOF-----------------

Díky :idea:

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Preventivka

#2 Příspěvek od Márty84 »

Zdravim :)


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]

:services
AdobeARMservice
SkypeUpdate
AdobeFlashPlayerUpdateSvc
SwitchBoard

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"=-
"DAEMON Tools Lite"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard] /64
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-
"GrooveMonitor"=-
"AdobeCS6ServiceManager"=-
"SwitchBoard"=-
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)




:arrow: Udelejte !!!uplnou!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Preventivka

#3 Příspěvek od Zmaslo »

OTM:

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56475 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56475 bytes

User: Zmaslo
->Temp folder emptied: 10256309 bytes
->Temporary Internet Files folder emptied: 180684 bytes
->Java cache emptied: 617253 bytes
->FireFox cache emptied: 326793997 bytes
->Flash cache emptied: 65510 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 4766 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33402 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50891 bytes
RecycleBin emptied: 3195962490 bytes

Total Files Cleaned = 3 370,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser
->Flash cache emptied: 0 bytes

User: Zmaslo
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service SwitchBoard stopped successfully!
Service SwitchBoard deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard deleted successfully.

OTM by OldTimer - Version 3.1.21.0 log created on 12122012_180826

Files moved on Reboot...
C:\Users\Zmaslo\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Zmaslo\AppData\Local\Mozilla\Firefox\Profiles\76b4szv1.default\Cache\_CACHE_001_ moved successfully.
C:\Users\Zmaslo\AppData\Local\Mozilla\Firefox\Profiles\76b4szv1.default\Cache\_CACHE_002_ moved successfully.
C:\Users\Zmaslo\AppData\Local\Mozilla\Firefox\Profiles\76b4szv1.default\Cache\_CACHE_003_ moved successfully.
C:\Users\Zmaslo\AppData\Local\Mozilla\Firefox\Profiles\76b4szv1.default\Cache\_CACHE_MAP_ moved successfully.
C:\Users\Zmaslo\AppData\Local\Mozilla\Firefox\Profiles\76b4szv1.default\_CACHE_CLEAN_ moved successfully.
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...

MBAM:

Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Verze databáze: v2012.12.12.08

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Zmaslo :: ZMASLO-PC [administrátor]

12.12.2012 18:21:16
mbam-log-2012-12-12 (19-09-37).txt

Typ: Úplná kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 360950
Uplynulý čas: 47 minut, 44 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 9
C:\Program Files\Adobe\Adobe Illustrator CS6 (64 Bit)\Support Files\Contents\Windows\amtlib.dll (PUP.RiskwareTool.CK) -> Žádná instrukce nebyla provedena.
C:\Program Files\Adobe\Adobe Media Encoder CS6\amtlib.dll (PUP.RiskwareTool.CK) -> Žádná instrukce nebyla provedena.
C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\amtlib.dll (PUP.RiskwareTool.CK) -> Žádná instrukce nebyla provedena.
C:\Program Files (x86)\Adobe\Adobe Flash CS6\amtlib.dll (PUP.RiskwareTool.CK) -> Žádná instrukce nebyla provedena.
C:\Program Files (x86)\Trine\TDU1k.exe (Packer.ModifiedUPX) -> Žádná instrukce nebyla provedena.
C:\Users\Zmaslo\Adobe Flash Pro CS6\DLL FILE\Original - 32bit\Flash Pro\amtlib.dll (PUP.RiskwareTool.CK) -> Žádná instrukce nebyla provedena.
C:\Users\Zmaslo\Adobe Illustrator CS6\DLL FILE\32bit\amtlib.dll (PUP.RiskwareTool.CK) -> Žádná instrukce nebyla provedena.
C:\Users\Zmaslo\Adobe Illustrator CS6\DLL FILE\64bit\amtlib.dll (PUP.RiskwareTool.CK) -> Žádná instrukce nebyla provedena.
C:\Users\Zmaslo\Autodesk AutoCAD 2010 [64-bit]\AAC2010_Keygen-64bits.exe (Trojan.Agent.CK) -> Žádná instrukce nebyla provedena.

(konec)

Díky

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Preventivka

#4 Příspěvek od Márty84 »

:arrow: OTM provedlo co melo.

:arrow: MBAM nasel nejake cracky. Nebudu komentovat. Doporucuji to smazat, rozhodnuti je na vas.

:???: Je s pc nejaky problem? Nebo slo ciste o preventivku?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Preventivka

#5 Příspěvek od Zmaslo »

Žádný problém, počítač šlape jako hodinky, akorát je relativně nový a já o něj dočasně přehnaně pečuji. :)
Možná mám zbytečně moc aplikací spuštěných při start-upu a nevím si rady, kterou je bezečně deaktivovat. Respektive jsem líný zjišťovat, která k čemu je.
Cracky jsou otázkou morálky, při studentských cenách balíku adobe jde morálka stranou.
Každopádně moc děkuji za prohlídku, vaše služby bych používal i kdyby byly zpoplatněny. :thumbsup:

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Preventivka

#6 Příspěvek od Márty84 »

V logu nic nevidim, takze pokud neni nejaky problem, melo by byt cisto.

Co vypnout nebo zapnout po startu je jen na vas. Nevim co pouzivate. Neco jsem ale uz vypnul.

Moralka je jedna vec, ale taky jsou zde pravidla fora. Nelegalni soft tady nevidime radi. Jeden z duvodu je i to, ze cracky obcas delaji i neco jineho. Program sice funguje, ale zaroven se muze spoustet i havet.



:arrow: 1) Otevrte Poznamkovy blok (pokud ho nemate na plose, tak kliknete na Start, pak programy a prislusenstvi)
2) Zkopirujte do nej ten zeleny text

Kód: Vybrat vše

Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{7473b6bd-4691-4744-a82b-7854eb3d70b6}"=-
3) Vlevo nahore kliknete na napis Soubor
4) Kliknete na napis Ulozit jako...
5) Napiste spravne ten cerveny nazev oprava.reg a pak vyberte u moznosti Ulozit jako typ : Vsechny soubory
6) Ulozte, nejlepe na plochu
7) Na to, co jste prave ulozil/a, 2x kliknete, ono se to spusti a vy to jen potvrdte
8) Pak ten soubor muzete smazat



:arrow: Odinstalujte MBAM, at se tam zbytecne neplete.




:!: Vsechny tyto programy - vcetne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete CCleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.



:arrow: Pak dejte vedet, zda vse probehlo v poradku a jestli ano, bude to vse :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zmaslo
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 29 črc 2008 06:58

Re: Preventivka

#7 Příspěvek od Zmaslo »

Trochu pozdě, ale dřiv jsem se k tomu bohužel nedostal.
Začal jsem stahovat utility podle vašich rad a čistit PC, ale jakmile jsem spustil TFC, zavřel se mi prohlížeč a vyskočila na mě BSoD.
Mám ho zkusit spustit znovu? Jinak děkuji, bude to asi včechno (s BSoD se jinak vůbec nepotýkám)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Preventivka

#8 Příspěvek od Márty84 »

Hodne pozde :D

Pred pouzitim TFC vsechno zavrete, vcetne prohlizece. Pokud to nepujde ani tak, proste ho vynechte. Neni to tak dulezite.


No a jestli neni s pc problem, muzem to uzavrit. Kdyby neco, pisnete mail, znovu to otevru.

Nemate zac, mejte se :bye:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno