Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kompletní kontrolu PC, preventivní a optimalizační

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Clorky
Návštěvník
Návštěvník
Příspěvky: 121
Registrován: 17 kvě 2010 10:42

Prosím o kompletní kontrolu PC, preventivní a optimalizační

#1 Příspěvek od Clorky »

Zdravím, prosil bych o kontrolu PC.
Dlouho jsem nikde o nic takového nežádal, snažím se jej držet v kondici (neinstalovaní zbytečností a pravidelná údržba pomocí CCleaneru a defragmentace).
Předem Vám děkuji za kontrolu.
Zde je log z RSITu:


Logfile of random's system information tool 1.09 (written by random/random)
Run by Petr at 2013-05-02 20:46:52
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 230 GB (76%) free of 304 GB
Total RAM: 8190 MB (80% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:46:54, on 2.5.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files\trend micro\Petr.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O4 - Startup: SpeedFan.lnk = C:\Program Files (x86)\SpeedFan\speedfan.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RadeonPro Support Service - Unknown owner - C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 8052 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files\OO Software\Defrag\oodag.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2132
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\Internet Download Manager\IDMan.exe" /onboot
"C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "http://get.adobe.com/flashplayer/comple ... &appid=200"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3668.bbbb500.421632775 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox" E7CF176E110C211B 3668 "\\.\pipe\gecko-crash-server-pipe.3668" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe" --proxy-stub-channel=Flash4216.68941D90.19970 --host-broker-channel=Flash4216.68941D90.16640 --host-pid=4216 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe" --channel=4044.0034F6FC.832336901 --proxy-stub-channel=Flash4216.68941D90.19970 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll" --host-npapi-version=27 --type=renderer
taskeng.exe {C54005B2-B0F1-4C06-8158-CDEE1822228F}
C:\Windows\splwow64.exe 8192
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
"C:\Users\Petr\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\bz8671ri.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@soe.sony.com/installer,version=1.0.3]
"Description"=SOE Web Installer
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2013-04-05 398144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-06 551840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-06 209824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2013-04-05 363840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-06 170912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-26 6325936]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2012-11-01 7061360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe [2013-05-02 802136]
"IDMan"=C:\Program Files (x86)\Internet Download Manager\IDMan.exe [2013-04-06 3573624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-18 946352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2012-12-14 2255360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OODefragTray]
C:\Program Files\OO Software\Defrag\oodtray.exe [2012-11-01 7061360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-02-28 18642024]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
E:\Hry\Steam\Steam.exe [2013-04-19 1631144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVS10 Preload]
C:\Program Files (x86)\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [2006-08-09 36864]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^O&O Defrag Tray.lnk]
C:\Windows\Installer\{AC5FFE7C-7101-4639-8559-92F3139F3FDC}\DefragIcon.exe [2013-04-28 292878]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-04-16 642656]

C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SpeedFan.lnk - C:\Program Files (x86)\SpeedFan\speedfan.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"VIDC.RTV1"=rtvcvfw64.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-05-02 20:46:52 ----D---- C:\rsit
2013-05-02 20:46:52 ----D---- C:\Program Files\trend micro
2013-05-02 20:33:03 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-02 20:31:36 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-05-02 20:31:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-05-02 20:29:37 ----D---- C:\ProgramData\ATI
2013-05-02 20:27:26 ----D---- C:\Program Files (x86)\AMD AVT
2013-05-02 20:27:22 ----D---- C:\Program Files\Common Files\ATI Technologies
2013-05-02 20:25:38 ----D---- C:\Program Files (x86)\ATI Technologies
2013-05-02 20:25:22 ----D---- C:\Program Files\ATI
2013-05-02 20:14:34 ----D---- C:\Program Files\ATI Technologies
2013-05-02 20:13:56 ----D---- C:\AMD
2013-05-01 20:04:31 ----D---- C:\Windows\SYSWOW64\xlive
2013-05-01 20:04:25 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2013-04-28 13:24:21 ----D---- C:\Program Files\WhoCrashed
2013-04-24 19:35:13 ----D---- C:\Users\Petr\AppData\Roaming\TeamViewer
2013-04-24 13:06:00 ----A---- C:\Windows\system32\RegistryDefragBootTime.exe
2013-04-24 12:56:43 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-21 17:22:37 ----RAH---- C:\Windows\Stop.cmd
2013-04-21 17:22:05 ----D---- C:\Program Files (x86)\TeamViewer
2013-04-20 11:56:20 ----D---- C:\Users\Petr\AppData\Roaming\RadeonPro
2013-04-20 10:28:13 ----A---- C:\Windows\WORDPAD.INI
2013-04-20 10:24:37 ----D---- C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
2013-04-20 10:24:36 ----D---- C:\Users\Petr\AppData\Roaming\Apple Computer
2013-04-19 16:46:34 ----D---- C:\Users\Petr\AppData\Roaming\Tunngle
2013-04-19 16:46:34 ----D---- C:\ProgramData\Tunngle
2013-04-19 16:46:32 ----D---- C:\Program Files (x86)\Tunngle
2013-04-16 16:54:06 ----A---- C:\Windows\system32\atimpc64.dll
2013-04-16 16:54:06 ----A---- C:\Windows\system32\amdpcom64.dll
2013-04-16 16:54:04 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2013-04-16 16:54:04 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2013-04-16 16:54:00 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2013-04-16 16:54:00 ----A---- C:\Windows\system32\atiuxp64.dll
2013-04-16 16:53:58 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2013-04-16 16:53:58 ----A---- C:\Windows\system32\atiu9p64.dll
2013-04-16 16:53:56 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2013-04-16 16:53:56 ----A---- C:\Windows\system32\aticfx64.dll
2013-04-16 16:53:52 ----A---- C:\Windows\system32\atidxx64.dll
2013-04-16 16:53:50 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2013-04-16 16:53:44 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2013-04-16 16:53:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2013-04-16 16:53:36 ----A---- C:\Windows\system32\atiumd6a.dll
2013-04-16 16:53:34 ----A---- C:\Windows\system32\atiumd64.dll
2013-04-16 16:51:54 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2013-04-16 16:37:26 ----A---- C:\Windows\system32\clinfo.exe
2013-04-16 16:37:14 ----A---- C:\Windows\system32\amdocl_ld64.exe
2013-04-16 16:37:14 ----A---- C:\Windows\system32\amdocl_as64.exe
2013-04-16 16:37:12 ----A---- C:\Windows\SYSWOW64\amdocl_ld32.exe
2013-04-16 16:37:12 ----A---- C:\Windows\SYSWOW64\amdocl_as32.exe
2013-04-16 16:37:08 ----A---- C:\Windows\system32\OpenVideo64.dll
2013-04-16 16:37:04 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2013-04-16 16:37:00 ----A---- C:\Windows\system32\OVDecode64.dll
2013-04-16 16:36:56 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2013-04-16 16:36:48 ----A---- C:\Windows\system32\amdocl64.dll
2013-04-16 16:35:38 ----A---- C:\Windows\system32\atio6axx.dll
2013-04-16 16:34:54 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2013-04-16 16:33:10 ----A---- C:\Windows\system32\OpenCL.dll
2013-04-16 16:33:06 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-04-16 16:27:18 ----A---- C:\Windows\system32\atiapfxx.exe
2013-04-16 16:24:48 ----A---- C:\Windows\system32\aticalrt64.dll
2013-04-16 16:24:46 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2013-04-16 16:24:40 ----A---- C:\Windows\system32\aticalcl64.dll
2013-04-16 16:24:38 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2013-04-16 16:24:26 ----A---- C:\Windows\system32\aticaldd64.dll
2013-04-16 16:24:04 ----A---- C:\Windows\system32\coinst_12.102.3.dll
2013-04-16 16:20:04 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2013-04-16 16:16:32 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2013-04-16 16:03:02 ----A---- C:\Windows\system32\atidemgy.dll
2013-04-16 16:02:48 ----A---- C:\Windows\system32\atieclxx.exe
2013-04-16 16:01:58 ----A---- C:\Windows\system32\atiesrxx.exe
2013-04-16 16:00:30 ----A---- C:\Windows\system32\atitmm64.dll
2013-04-16 16:00:14 ----A---- C:\Windows\system32\atimuixx.dll
2013-04-16 16:00:10 ----A---- C:\Windows\system32\atiedu64.dll
2013-04-16 16:00:04 ----A---- C:\Windows\SYSWOW64\ati2edxx.dll
2013-04-16 15:36:12 ----A---- C:\Windows\system32\atiadlxx.dll
2013-04-16 15:36:00 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2013-04-16 15:35:46 ----A---- C:\Windows\system32\atig6pxx.dll
2013-04-16 15:35:42 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2013-04-16 15:35:42 ----A---- C:\Windows\system32\atiglpxx.dll
2013-04-16 15:35:38 ----A---- C:\Windows\system32\atig6txx.dll
2013-04-16 15:35:30 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2013-04-16 15:35:20 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2013-04-16 15:35:00 ----A---- C:\Windows\system32\amdave64.dll
2013-04-16 15:34:54 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2013-04-16 15:34:42 ----A---- C:\Windows\system32\atisamu64.dll
2013-04-16 15:34:36 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2013-04-16 15:31:20 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2013-04-14 16:30:30 ----A---- C:\Windows\BlendSettings.ini
2013-04-14 16:22:25 ----D---- C:\Program Files\Nexus Mod Manager
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\url.dll
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-04-14 01:02:37 ----A---- C:\Windows\system32\url.dll
2013-04-14 01:02:37 ----A---- C:\Windows\system32\mshtmled.dll
2013-04-14 01:02:37 ----A---- C:\Windows\system32\ieUnatt.exe
2013-04-14 01:02:37 ----A---- C:\Windows\system32\ieui.dll
2013-04-14 01:02:36 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-04-14 01:02:36 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-04-14 01:02:36 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\wininet.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\urlmon.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\msfeeds.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\jsproxy.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\jscript9.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-04-14 01:02:35 ----A---- C:\Windows\system32\vbscript.dll
2013-04-14 01:02:35 ----A---- C:\Windows\system32\jscript.dll
2013-04-14 01:02:35 ----A---- C:\Windows\system32\iertutil.dll
2013-04-14 01:02:34 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-04-14 01:02:34 ----A---- C:\Windows\system32\mshtml.dll
2013-04-14 01:02:33 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-04-14 01:02:33 ----A---- C:\Windows\system32\ieframe.dll
2013-04-13 19:53:17 ----A---- C:\Windows\system32\win32k.sys
2013-04-13 19:53:17 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-04-13 19:53:16 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-04-13 19:53:16 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-04-13 19:53:16 ----A---- C:\Windows\system32\smss.exe
2013-04-13 19:53:16 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-04-13 19:53:15 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-04-13 19:53:15 ----A---- C:\Windows\system32\csrsrv.dll
2013-04-10 19:00:58 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2013-04-07 21:37:49 ----D---- C:\Users\Petr\AppData\Roaming\Sony Creative Software Inc
2013-04-07 20:55:29 ----A---- C:\Windows\VideoView.exe
2013-04-07 20:55:29 ----A---- C:\Windows\system32\StkSSrv.dll
2013-04-07 20:55:29 ----A---- C:\Windows\system32\StkCWIA.dll
2013-04-07 20:55:29 ----A---- C:\Windows\system32\StkCSrv.exe
2013-04-07 20:55:29 ----A---- C:\Windows\StkUnist.exe
2013-04-07 20:55:29 ----A---- C:\Windows\StkC112X.exe
2013-04-07 20:55:27 ----A---- C:\Windows\system32\drivers\StkCSF.sys
2013-04-07 20:55:26 ----A---- C:\Windows\system32\drivers\StkCPipe.sys
2013-04-07 20:55:26 ----A---- C:\Windows\system32\drivers\StkCMini.sys
2013-04-07 20:55:06 ----D---- C:\Users\Petr\AppData\Roaming\InstallShield
2013-04-07 20:49:30 ----D---- C:\Users\Petr\AppData\Roaming\Ulead Systems
2013-04-07 20:46:53 ----D---- C:\ProgramData\InstallShield
2013-04-07 20:46:48 ----D---- C:\Program Files (x86)\Windows Media Components
2013-04-07 20:46:05 ----D---- C:\ProgramData\Ulead Systems
2013-04-07 20:46:05 ----D---- C:\Program Files (x86)\Ulead Systems
2013-04-06 16:26:40 ----A---- C:\Windows\system32\javaws.exe
2013-04-06 16:26:35 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-04-06 16:26:35 ----A---- C:\Windows\system32\javaw.exe
2013-04-06 16:26:35 ----A---- C:\Windows\system32\java.exe
2013-04-06 15:55:45 ----SHD---- C:\$RECYCLE.BIN
2013-04-06 15:42:15 ----D---- C:\Windows\Temp
2013-04-06 15:14:32 ----D---- C:\ProgramData\HitmanPro
2013-04-06 12:30:52 ----RA---- C:\Windows\SYSWOW64\mfc71.dll
2013-04-06 12:30:52 ----A---- C:\Windows\SYSWOW64\viscomdvdimg.dll
2013-04-06 12:30:52 ----A---- C:\Windows\SYSWOW64\videocore.dll
2013-04-06 12:30:52 ----A---- C:\Windows\SYSWOW64\starburnx.dll
2013-04-06 12:30:51 ----A---- C:\Windows\SYSWOW64\VB5DB.DLL
2013-04-06 12:30:50 ----D---- C:\Program Files\Cheetah Burner
2013-04-05 13:43:34 ----A---- C:\Windows\system32\drivers\idmwfp.sys

======List of files/folders modified in the last 1 month======

2013-05-02 20:46:54 ----D---- C:\Windows\Prefetch
2013-05-02 20:46:52 ----D---- C:\Program Files
2013-05-02 20:33:04 ----D---- C:\Windows\Tasks
2013-05-02 20:33:04 ----D---- C:\Windows\system32\Tasks
2013-05-02 20:33:03 ----D---- C:\Windows\SysWOW64
2013-05-02 20:32:18 ----D---- C:\Users\Petr\AppData\Roaming\Mozilla
2013-05-02 20:32:18 ----D---- C:\ProgramData\Adobe
2013-05-02 20:31:54 ----D---- C:\Users\Petr\AppData\Roaming\IDM
2013-05-02 20:31:36 ----RD---- C:\Program Files (x86)
2013-05-02 20:30:01 ----D---- C:\Windows
2013-05-02 20:29:37 ----D---- C:\Users\Petr\AppData\Roaming\ATI
2013-05-02 20:29:37 ----D---- C:\ProgramData
2013-05-02 20:28:18 ----D---- C:\Windows\system32\config
2013-05-02 20:28:15 ----D---- C:\Users\Petr\AppData\Roaming\DMCache
2013-05-02 20:27:28 ----D---- C:\Config.Msi
2013-05-02 20:27:27 ----SHD---- C:\Windows\Installer
2013-05-02 20:27:27 ----D---- C:\ProgramData\AMD
2013-05-02 20:27:26 ----D---- C:\Windows\System32
2013-05-02 20:27:22 ----D---- C:\Program Files\Common Files
2013-05-02 20:27:22 ----D---- C:\Program Files (x86)\Common Files
2013-05-02 20:26:50 ----D---- C:\Windows\system32\catroot
2013-05-02 20:26:48 ----D---- C:\Windows\system32\drivers
2013-05-02 20:26:47 ----D---- C:\Windows\system32\DriverStore
2013-05-02 20:26:47 ----D---- C:\Windows\inf
2013-05-02 20:26:17 ----SHD---- C:\System Volume Information
2013-05-02 20:18:49 ----D---- C:\Windows\pss
2013-05-02 20:12:17 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-05-02 20:12:02 ----D---- C:\Program Files (x86)\InstallShield Installation Information
2013-05-02 19:58:10 ----D---- C:\Windows\system32\catroot2
2013-05-02 19:52:48 ----D---- C:\Windows\Minidump
2013-05-02 19:52:48 ----D---- C:\Windows\Logs
2013-05-02 19:52:48 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2013-05-02 19:52:48 ----D---- C:\Users\Petr\AppData\Roaming\Media Player Classic
2013-05-02 19:52:48 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Pro
2013-05-02 19:52:48 ----D---- C:\Users\Petr\AppData\Roaming\AIMP3
2013-05-02 19:51:52 ----D---- C:\Users\Petr\AppData\Roaming\Skype
2013-05-02 19:37:07 ----D---- C:\Program Files (x86)\SpeedFan
2013-05-02 17:44:12 ----D---- C:\Users\Petr\AppData\Roaming\.technic
2013-05-01 20:04:13 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-05-01 20:03:28 ----RSD---- C:\Windows\assembly
2013-04-30 19:40:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-25 13:53:55 ----D---- C:\Windows\winsxs
2013-04-23 21:22:23 ----D---- C:\Users\Petr\AppData\Roaming\Adobe
2013-04-22 21:59:36 ----D---- C:\ProgramData\Skype
2013-04-22 21:59:35 ----RD---- C:\Program Files (x86)\Skype
2013-04-21 17:22:10 ----RSD---- C:\Windows\Fonts
2013-04-21 11:05:44 ----D---- C:\Windows\debug
2013-04-20 11:52:39 ----D---- C:\Program Files (x86)\MSI Afterburner
2013-04-20 10:25:19 ----D---- C:\ProgramData\IObit
2013-04-20 10:24:27 ----D---- C:\Users\Petr\AppData\Roaming\IObit
2013-04-14 09:16:54 ----D---- C:\Windows\SYSWOW64\migration
2013-04-14 09:16:54 ----D---- C:\Program Files (x86)\Internet Explorer
2013-04-14 09:16:53 ----D---- C:\Windows\system32\migration
2013-04-14 09:16:53 ----D---- C:\Program Files\Internet Explorer
2013-04-14 01:03:32 ----A---- C:\Windows\system32\MRT.exe
2013-04-14 01:03:15 ----D---- C:\ProgramData\Microsoft Help
2013-04-09 20:39:13 ----D---- C:\Program Files (x86)\Google
2013-04-07 21:22:46 ----A---- C:\Windows\win.ini
2013-04-07 20:56:32 ----D---- C:\Windows\twain_32
2013-04-07 20:46:05 ----D---- C:\Windows\Downloaded Program Files
2013-04-06 16:26:28 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-04-06 16:26:28 ----A---- C:\Windows\system32\deployJava1.dll
2013-04-06 15:54:54 ----D---- C:\Program Files (x86)\Internet Download Manager
2013-04-06 15:46:08 ----D---- C:\Windows\SYSWOW64\drivers
2013-04-06 15:25:58 ----D---- C:\Program Files (x86)\AVS4YOU
2013-04-06 15:10:55 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2013-04-04 18:49:25 ----D---- C:\Users\Petr\AppData\Roaming\Audacity
2013-04-04 13:59:30 ----D---- C:\Windows\system32\wdi

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-04-06 13368]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-01-20 283200]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-23 211344]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-23 149592]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2013-01-20 29672]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2013-02-22 314016]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-10-23 138744]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2013-04-05 166576]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2013-02-22 43680]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-16 11653632]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-16 581120]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-02-14 96768]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-05-14 15416]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
S3 Andbus;LGE Android Platform Composite USB Device; C:\Windows\system32\DRIVERS\lgandbus64.sys [2010-12-07 19456]
S3 AndDiag;LGE Android Platform USB Serial Port; C:\Windows\system32\DRIVERS\lganddiag64.sys [2010-12-07 27648]
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\Windows\system32\DRIVERS\lgandgps64.sys [2010-12-07 27136]
S3 ANDModem;LGE Android Platform USB Modem; C:\Windows\system32\DRIVERS\lgandmodem64.sys [2010-12-07 34304]
S3 androidusb;ADB Interface Driver; C:\Windows\System32\Drivers\lgandadb.sys [2010-08-02 31744]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-01-10 19456]
S3 RivaTuner64;RivaTuner64; \??\C:\Program Files (x86)\RivaTuner v2.23\RivaTuner64.sys []
S3 RTCore64;RTCore64; \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2013-01-23 13368]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 StkCMini;Syntek AVStream USB2.0 ATV; C:\Windows\System32\Drivers\StkCMini.sys [2010-04-16 1816968]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2013-01-10 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-01-10 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-01-10 30208]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Users\Petr\AppData\Local\Temp\Rar$EXa0.807\WinRing0x64.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-16 241152]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2012-11-26 1329304]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-12-14 2466304]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2012-11-01 2555760]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-03-06 3560288]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2006-09-28 49152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S2 RadeonPro Support Service;RadeonPro Support Service; C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-02 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-04-10 115608]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-02-15 543144]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [2013-03-20 746392]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-01-21 1255736]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#2 Příspěvek od Rudy »

Zdravím!
Log vypadá OK. Nějaký problém?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Clorky
Návštěvník
Návštěvník
Příspěvky: 121
Registrován: 17 kvě 2010 10:42

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#3 Příspěvek od Clorky »

Dobrý večer,

problémy zas tak ne, spíše prkotinky se občas přihodí - třeba při hraní Minecraftu a zmáčknutí F11 spadne Firefox, občas zamrzne celý PC a je třeba reset, někdy je to celé nějak pomalejší.
Dá se stím vyžít, ale nechci mít s PC problémy kdyby to náhodou bylo časem horší.

edit: Jdu spát, budu tady zítra :).

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#4 Příspěvek od Rudy »

S hrou vám neporadíme, jelikož nejsme herní fórum. Zkusíme vyházet několik zbytečností.

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Dopručuji odinstalovat IOBit. Tento čínský šmejd v rukou laika dokáže poškodit systém.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Clorky
Návštěvník
Návštěvník
Příspěvky: 121
Registrován: 17 kvě 2010 10:42

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#5 Příspěvek od Clorky »

iObit jsem již odinstalovával, je možné že tam jsou zbytky.
OTM hotovo, zde je log z RSIT:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Petr at 2013-05-03 07:14:19
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 236 GB (78%) free of 304 GB
Total RAM: 8190 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:14:29, on 3.5.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Program Files (x86)\SpeedFan\speedfan.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
E:\Hry\Steam\Steam.exe
C:\Program Files\trend micro\Petr.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O4 - Startup: SpeedFan.lnk = C:\Program Files (x86)\SpeedFan\speedfan.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 7676 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
atieclxx
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files\OO Software\Defrag\oodag.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
taskeng.exe {86C51B88-03B6-4ABC-B369-7C9EBD8B843D}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Windows\notepad.exe" C:\_OTM\MovedFiles\05032013_070541.log
WLIDSvcM.exe 2172
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\Internet Download Manager\IDMan.exe" /onboot
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"E:\Hry\Steam\Steam.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Petr\Downloads\RSITx64_2.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\bz8671ri.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@soe.sony.com/installer,version=1.0.3]
"Description"=SOE Web Installer
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2013-04-05 398144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-06 551840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-06 209824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2013-04-05 363840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-06 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-06 170912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-11-26 6325936]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2012-11-01 7061360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe [2013-05-02 802136]
"IDMan"=C:\Program Files (x86)\Internet Download Manager\IDMan.exe [2013-04-06 3573624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-18 946352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2012-12-14 2255360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OODefragTray]
C:\Program Files\OO Software\Defrag\oodtray.exe [2012-11-01 7061360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-02-28 18642024]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
E:\Hry\Steam\Steam.exe [2013-04-19 1631144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVS10 Preload]
C:\Program Files (x86)\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [2006-08-09 36864]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^O&O Defrag Tray.lnk]
C:\Windows\Installer\{AC5FFE7C-7101-4639-8559-92F3139F3FDC}\DefragIcon.exe [2013-04-28 292878]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-04-16 642656]

C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SpeedFan.lnk - C:\Program Files (x86)\SpeedFan\speedfan.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2012-08-16 6670496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37Crusader]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"VIDC.RTV1"=rtvcvfw64.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-05-03 07:05:41 ----D---- C:\_OTM
2013-05-02 21:35:29 ----A---- C:\Windows\system32\perfi005.dat
2013-05-02 21:35:25 ----A---- C:\Windows\system32\perfh005.dat
2013-05-02 21:35:25 ----A---- C:\Windows\system32\perfd005.dat
2013-05-02 21:35:25 ----A---- C:\Windows\system32\perfc005.dat
2013-05-02 21:34:05 ----D---- C:\Windows\SYSWOW64\cs
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\XPSViewer
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\drivers\cs-CZ
2013-05-02 21:33:56 ----D---- C:\Windows\cs-CZ
2013-05-02 21:33:53 ----D---- C:\Windows\system32\cs
2013-05-02 21:33:39 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-05-02 20:46:52 ----D---- C:\rsit
2013-05-02 20:46:52 ----D---- C:\Program Files\trend micro
2013-05-02 20:33:03 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-05-02 20:31:36 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-05-02 20:31:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-05-02 20:29:37 ----D---- C:\ProgramData\ATI
2013-05-02 20:27:26 ----D---- C:\Program Files (x86)\AMD AVT
2013-05-02 20:27:22 ----D---- C:\Program Files\Common Files\ATI Technologies
2013-05-02 20:25:38 ----D---- C:\Program Files (x86)\ATI Technologies
2013-05-02 20:25:22 ----D---- C:\Program Files\ATI
2013-05-02 20:14:34 ----D---- C:\Program Files\ATI Technologies
2013-05-02 20:13:56 ----D---- C:\AMD
2013-05-01 20:04:31 ----D---- C:\Windows\SYSWOW64\xlive
2013-05-01 20:04:25 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2013-04-28 13:24:21 ----D---- C:\Program Files\WhoCrashed
2013-04-24 19:35:13 ----D---- C:\Users\Petr\AppData\Roaming\TeamViewer
2013-04-24 13:06:00 ----A---- C:\Windows\system32\RegistryDefragBootTime.exe
2013-04-24 12:56:43 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-21 17:22:37 ----RAH---- C:\Windows\Stop.cmd
2013-04-21 17:22:05 ----D---- C:\Program Files (x86)\TeamViewer
2013-04-20 11:56:20 ----D---- C:\Users\Petr\AppData\Roaming\RadeonPro
2013-04-20 10:28:13 ----A---- C:\Windows\WORDPAD.INI
2013-04-20 10:24:37 ----D---- C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
2013-04-20 10:24:36 ----D---- C:\Users\Petr\AppData\Roaming\Apple Computer
2013-04-19 16:46:34 ----D---- C:\Users\Petr\AppData\Roaming\Tunngle
2013-04-19 16:46:34 ----D---- C:\ProgramData\Tunngle
2013-04-19 16:46:32 ----D---- C:\Program Files (x86)\Tunngle
2013-04-16 16:54:06 ----A---- C:\Windows\system32\atimpc64.dll
2013-04-16 16:54:06 ----A---- C:\Windows\system32\amdpcom64.dll
2013-04-16 16:54:04 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2013-04-16 16:54:04 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2013-04-16 16:54:00 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2013-04-16 16:54:00 ----A---- C:\Windows\system32\atiuxp64.dll
2013-04-16 16:53:58 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2013-04-16 16:53:58 ----A---- C:\Windows\system32\atiu9p64.dll
2013-04-16 16:53:56 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2013-04-16 16:53:56 ----A---- C:\Windows\system32\aticfx64.dll
2013-04-16 16:53:52 ----A---- C:\Windows\system32\atidxx64.dll
2013-04-16 16:53:50 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2013-04-16 16:53:44 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2013-04-16 16:53:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2013-04-16 16:53:36 ----A---- C:\Windows\system32\atiumd6a.dll
2013-04-16 16:53:34 ----A---- C:\Windows\system32\atiumd64.dll
2013-04-16 16:51:54 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2013-04-16 16:37:26 ----A---- C:\Windows\system32\clinfo.exe
2013-04-16 16:37:14 ----A---- C:\Windows\system32\amdocl_ld64.exe
2013-04-16 16:37:14 ----A---- C:\Windows\system32\amdocl_as64.exe
2013-04-16 16:37:12 ----A---- C:\Windows\SYSWOW64\amdocl_ld32.exe
2013-04-16 16:37:12 ----A---- C:\Windows\SYSWOW64\amdocl_as32.exe
2013-04-16 16:37:08 ----A---- C:\Windows\system32\OpenVideo64.dll
2013-04-16 16:37:04 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2013-04-16 16:37:00 ----A---- C:\Windows\system32\OVDecode64.dll
2013-04-16 16:36:56 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2013-04-16 16:36:48 ----A---- C:\Windows\system32\amdocl64.dll
2013-04-16 16:35:38 ----A---- C:\Windows\system32\atio6axx.dll
2013-04-16 16:34:54 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2013-04-16 16:33:10 ----A---- C:\Windows\system32\OpenCL.dll
2013-04-16 16:33:06 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-04-16 16:27:18 ----A---- C:\Windows\system32\atiapfxx.exe
2013-04-16 16:24:48 ----A---- C:\Windows\system32\aticalrt64.dll
2013-04-16 16:24:46 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2013-04-16 16:24:40 ----A---- C:\Windows\system32\aticalcl64.dll
2013-04-16 16:24:38 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2013-04-16 16:24:26 ----A---- C:\Windows\system32\aticaldd64.dll
2013-04-16 16:24:04 ----A---- C:\Windows\system32\coinst_12.102.3.dll
2013-04-16 16:20:04 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2013-04-16 16:16:32 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2013-04-16 16:03:02 ----A---- C:\Windows\system32\atidemgy.dll
2013-04-16 16:02:48 ----A---- C:\Windows\system32\atieclxx.exe
2013-04-16 16:01:58 ----A---- C:\Windows\system32\atiesrxx.exe
2013-04-16 16:00:30 ----A---- C:\Windows\system32\atitmm64.dll
2013-04-16 16:00:14 ----A---- C:\Windows\system32\atimuixx.dll
2013-04-16 16:00:10 ----A---- C:\Windows\system32\atiedu64.dll
2013-04-16 16:00:04 ----A---- C:\Windows\SYSWOW64\ati2edxx.dll
2013-04-16 15:36:12 ----A---- C:\Windows\system32\atiadlxx.dll
2013-04-16 15:36:00 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2013-04-16 15:35:46 ----A---- C:\Windows\system32\atig6pxx.dll
2013-04-16 15:35:42 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2013-04-16 15:35:42 ----A---- C:\Windows\system32\atiglpxx.dll
2013-04-16 15:35:38 ----A---- C:\Windows\system32\atig6txx.dll
2013-04-16 15:35:30 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2013-04-16 15:35:20 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2013-04-16 15:35:00 ----A---- C:\Windows\system32\amdave64.dll
2013-04-16 15:34:54 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2013-04-16 15:34:42 ----A---- C:\Windows\system32\atisamu64.dll
2013-04-16 15:34:36 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2013-04-16 15:31:20 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2013-04-14 16:30:30 ----A---- C:\Windows\BlendSettings.ini
2013-04-14 16:22:25 ----D---- C:\Program Files\Nexus Mod Manager
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\url.dll
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-04-14 01:02:37 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-04-14 01:02:37 ----A---- C:\Windows\system32\url.dll
2013-04-14 01:02:37 ----A---- C:\Windows\system32\mshtmled.dll
2013-04-14 01:02:37 ----A---- C:\Windows\system32\ieUnatt.exe
2013-04-14 01:02:37 ----A---- C:\Windows\system32\ieui.dll
2013-04-14 01:02:36 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-04-14 01:02:36 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-04-14 01:02:36 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\wininet.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\urlmon.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\msfeeds.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\jsproxy.dll
2013-04-14 01:02:36 ----A---- C:\Windows\system32\jscript9.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-04-14 01:02:35 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-04-14 01:02:35 ----A---- C:\Windows\system32\vbscript.dll
2013-04-14 01:02:35 ----A---- C:\Windows\system32\jscript.dll
2013-04-14 01:02:35 ----A---- C:\Windows\system32\iertutil.dll
2013-04-14 01:02:34 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-04-14 01:02:34 ----A---- C:\Windows\system32\mshtml.dll
2013-04-14 01:02:33 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-04-14 01:02:33 ----A---- C:\Windows\system32\ieframe.dll
2013-04-13 19:53:17 ----A---- C:\Windows\system32\win32k.sys
2013-04-13 19:53:17 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-04-13 19:53:16 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-04-13 19:53:16 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-04-13 19:53:16 ----A---- C:\Windows\system32\smss.exe
2013-04-13 19:53:16 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-04-13 19:53:15 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-04-13 19:53:15 ----A---- C:\Windows\system32\csrsrv.dll
2013-04-10 19:00:58 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2013-04-07 21:37:49 ----D---- C:\Users\Petr\AppData\Roaming\Sony Creative Software Inc
2013-04-07 20:55:29 ----A---- C:\Windows\VideoView.exe
2013-04-07 20:55:29 ----A---- C:\Windows\system32\StkSSrv.dll
2013-04-07 20:55:29 ----A---- C:\Windows\system32\StkCWIA.dll
2013-04-07 20:55:29 ----A---- C:\Windows\system32\StkCSrv.exe
2013-04-07 20:55:29 ----A---- C:\Windows\StkUnist.exe
2013-04-07 20:55:29 ----A---- C:\Windows\StkC112X.exe
2013-04-07 20:55:27 ----A---- C:\Windows\system32\drivers\StkCSF.sys
2013-04-07 20:55:26 ----A---- C:\Windows\system32\drivers\StkCPipe.sys
2013-04-07 20:55:26 ----A---- C:\Windows\system32\drivers\StkCMini.sys
2013-04-07 20:55:06 ----D---- C:\Users\Petr\AppData\Roaming\InstallShield
2013-04-07 20:49:30 ----D---- C:\Users\Petr\AppData\Roaming\Ulead Systems
2013-04-07 20:46:53 ----D---- C:\ProgramData\InstallShield
2013-04-07 20:46:48 ----D---- C:\Program Files (x86)\Windows Media Components
2013-04-07 20:46:05 ----D---- C:\ProgramData\Ulead Systems
2013-04-07 20:46:05 ----D---- C:\Program Files (x86)\Ulead Systems
2013-04-06 16:26:40 ----A---- C:\Windows\system32\javaws.exe
2013-04-06 16:26:35 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-04-06 16:26:35 ----A---- C:\Windows\system32\javaw.exe
2013-04-06 16:26:35 ----A---- C:\Windows\system32\java.exe
2013-04-06 15:55:45 ----SHD---- C:\$RECYCLE.BIN
2013-04-06 15:42:15 ----D---- C:\Windows\Temp
2013-04-06 15:14:32 ----D---- C:\ProgramData\HitmanPro
2013-04-06 12:30:52 ----RA---- C:\Windows\SYSWOW64\mfc71.dll
2013-04-06 12:30:52 ----A---- C:\Windows\SYSWOW64\viscomdvdimg.dll
2013-04-06 12:30:52 ----A---- C:\Windows\SYSWOW64\videocore.dll
2013-04-06 12:30:52 ----A---- C:\Windows\SYSWOW64\starburnx.dll
2013-04-06 12:30:51 ----A---- C:\Windows\SYSWOW64\VB5DB.DLL
2013-04-06 12:30:50 ----D---- C:\Program Files\Cheetah Burner
2013-04-05 13:43:34 ----A---- C:\Windows\system32\drivers\idmwfp.sys

======List of files/folders modified in the last 1 month======

2013-05-03 07:10:09 ----D---- C:\Windows\system32\config
2013-05-03 07:07:11 ----D---- C:\Program Files (x86)\SpeedFan
2013-05-03 07:05:41 ----D---- C:\Windows\Tasks
2013-05-03 07:05:37 ----D---- C:\Windows\winsxs
2013-05-03 07:05:25 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-05-03 07:05:25 ----D---- C:\Windows\system32\cs-CZ
2013-05-03 07:05:14 ----D---- C:\Windows\system32\catroot
2013-05-03 07:03:37 ----SHD---- C:\System Volume Information
2013-05-03 07:01:14 ----D---- C:\Windows\System32
2013-05-02 21:42:21 ----D---- C:\Windows\system32\catroot2
2013-05-02 21:40:24 ----D---- C:\Windows\rescache
2013-05-02 21:39:15 ----D---- C:\Windows
2013-05-02 21:35:55 ----D---- C:\Windows\system32\drivers
2013-05-02 21:35:55 ----D---- C:\Windows\inf
2013-05-02 21:35:54 ----D---- C:\Windows\system32\DriverStore
2013-05-02 21:34:09 ----D---- C:\Program Files (x86)\Windows Mail
2013-05-02 21:34:08 ----D---- C:\Windows\servicing
2013-05-02 21:34:08 ----D---- C:\Program Files\Windows Photo Viewer
2013-05-02 21:34:08 ----D---- C:\Program Files\Windows Mail
2013-05-02 21:34:08 ----D---- C:\Program Files\Windows Journal
2013-05-02 21:34:08 ----D---- C:\Program Files\Windows Defender
2013-05-02 21:34:08 ----D---- C:\Program Files\DVD Maker
2013-05-02 21:34:08 ----D---- C:\Program Files\Common Files\System
2013-05-02 21:34:08 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-05-02 21:34:08 ----D---- C:\Program Files (x86)\Windows Defender
2013-05-02 21:34:05 ----D---- C:\Windows\SYSWOW64\winrm
2013-05-02 21:34:05 ----D---- C:\Windows\SYSWOW64\slmgr
2013-05-02 21:34:05 ----D---- C:\Windows\SYSWOW64\migwiz
2013-05-02 21:34:05 ----D---- C:\Windows\SYSWOW64\migration
2013-05-02 21:34:05 ----D---- C:\Windows\SysWOW64
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\WCN
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\wbem
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\MUI
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\DriverStore
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\drivers
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\Dism
2013-05-02 21:33:56 ----D---- C:\Windows\SYSWOW64\com
2013-05-02 21:33:56 ----D---- C:\Windows\IME
2013-05-02 21:33:53 ----D---- C:\Windows\system32\winrm
2013-05-02 21:33:53 ----D---- C:\Windows\system32\sysprep
2013-05-02 21:33:53 ----D---- C:\Windows\system32\slmgr
2013-05-02 21:33:53 ----D---- C:\Windows\system32\oobe
2013-05-02 21:33:53 ----D---- C:\Windows\system32\migwiz
2013-05-02 21:33:53 ----D---- C:\Windows\system32\migration
2013-05-02 21:33:53 ----D---- C:\Windows\system32\Boot
2013-05-02 21:33:53 ----D---- C:\Windows\PolicyDefinitions
2013-05-02 21:33:39 ----D---- C:\Windows\system32\WCN
2013-05-02 21:33:39 ----D---- C:\Windows\system32\MUI
2013-05-02 21:33:39 ----D---- C:\Windows\system32\drivers\UMDF
2013-05-02 21:33:39 ----D---- C:\Windows\system32\Dism
2013-05-02 21:33:36 ----D---- C:\Windows\system32\wbem
2013-05-02 21:33:36 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2013-05-02 21:33:36 ----D---- C:\Windows\system32\com
2013-05-02 21:33:35 ----D---- C:\Windows\AppPatch
2013-05-02 21:26:21 ----D---- C:\Windows\Prefetch
2013-05-02 21:22:10 ----D---- C:\Users\Petr\AppData\Roaming\DMCache
2013-05-02 20:59:04 ----D---- C:\Users\Petr\AppData\Roaming\AIMP3
2013-05-02 20:46:52 ----D---- C:\Program Files
2013-05-02 20:33:15 ----D---- C:\ProgramData\Adobe
2013-05-02 20:33:04 ----D---- C:\Windows\system32\Tasks
2013-05-02 20:32:18 ----D---- C:\Users\Petr\AppData\Roaming\Mozilla
2013-05-02 20:31:54 ----D---- C:\Users\Petr\AppData\Roaming\IDM
2013-05-02 20:31:36 ----RD---- C:\Program Files (x86)
2013-05-02 20:29:37 ----D---- C:\Users\Petr\AppData\Roaming\ATI
2013-05-02 20:29:37 ----D---- C:\ProgramData
2013-05-02 20:27:28 ----D---- C:\Config.Msi
2013-05-02 20:27:27 ----SHD---- C:\Windows\Installer
2013-05-02 20:27:27 ----D---- C:\ProgramData\AMD
2013-05-02 20:27:22 ----D---- C:\Program Files\Common Files
2013-05-02 20:27:22 ----D---- C:\Program Files (x86)\Common Files
2013-05-02 20:18:49 ----D---- C:\Windows\pss
2013-05-02 20:12:17 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-05-02 20:12:02 ----D---- C:\Program Files (x86)\InstallShield Installation Information
2013-05-02 19:52:48 ----D---- C:\Windows\Minidump
2013-05-02 19:52:48 ----D---- C:\Windows\Logs
2013-05-02 19:52:48 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2013-05-02 19:52:48 ----D---- C:\Users\Petr\AppData\Roaming\Media Player Classic
2013-05-02 19:52:48 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Pro
2013-05-02 19:51:52 ----D---- C:\Users\Petr\AppData\Roaming\Skype
2013-05-02 17:44:12 ----D---- C:\Users\Petr\AppData\Roaming\.technic
2013-05-01 20:04:13 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-05-01 20:03:28 ----RSD---- C:\Windows\assembly
2013-04-30 19:40:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-23 21:22:23 ----D---- C:\Users\Petr\AppData\Roaming\Adobe
2013-04-22 21:59:36 ----D---- C:\ProgramData\Skype
2013-04-22 21:59:35 ----RD---- C:\Program Files (x86)\Skype
2013-04-21 17:22:10 ----RSD---- C:\Windows\Fonts
2013-04-21 11:05:44 ----D---- C:\Windows\debug
2013-04-20 11:52:39 ----D---- C:\Program Files (x86)\MSI Afterburner
2013-04-20 10:25:19 ----D---- C:\ProgramData\IObit
2013-04-20 10:24:27 ----D---- C:\Users\Petr\AppData\Roaming\IObit
2013-04-14 09:16:54 ----D---- C:\Program Files (x86)\Internet Explorer
2013-04-14 09:16:53 ----D---- C:\Program Files\Internet Explorer
2013-04-14 01:03:32 ----A---- C:\Windows\system32\MRT.exe
2013-04-14 01:03:15 ----D---- C:\ProgramData\Microsoft Help
2013-04-09 20:39:13 ----D---- C:\Program Files (x86)\Google
2013-04-07 21:22:46 ----A---- C:\Windows\win.ini
2013-04-07 20:56:32 ----D---- C:\Windows\twain_32
2013-04-07 20:46:05 ----D---- C:\Windows\Downloaded Program Files
2013-04-06 16:26:28 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-04-06 16:26:28 ----A---- C:\Windows\system32\deployJava1.dll
2013-04-06 15:54:54 ----D---- C:\Program Files (x86)\Internet Download Manager
2013-04-06 15:25:58 ----D---- C:\Program Files (x86)\AVS4YOU
2013-04-06 15:10:55 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2013-04-04 18:49:25 ----D---- C:\Users\Petr\AppData\Roaming\Audacity
2013-04-04 13:59:30 ----D---- C:\Windows\system32\wdi

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-04-06 13368]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-01-20 283200]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-10-23 211344]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-10-23 149592]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2013-01-20 29672]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2013-02-22 314016]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2012-10-23 138744]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2013-04-05 166576]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2013-02-22 43680]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-16 11653632]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-16 581120]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-02-14 96768]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-05-14 15416]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 XENfiltv;XENfiltv; C:\Windows\system32\drivers\XENfiltv.sys [2009-07-31 25600]
S3 Andbus;LGE Android Platform Composite USB Device; C:\Windows\system32\DRIVERS\lgandbus64.sys [2010-12-07 19456]
S3 AndDiag;LGE Android Platform USB Serial Port; C:\Windows\system32\DRIVERS\lganddiag64.sys [2010-12-07 27648]
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\Windows\system32\DRIVERS\lgandgps64.sys [2010-12-07 27136]
S3 ANDModem;LGE Android Platform USB Modem; C:\Windows\system32\DRIVERS\lgandmodem64.sys [2010-12-07 34304]
S3 androidusb;ADB Interface Driver; C:\Windows\System32\Drivers\lgandadb.sys [2010-08-02 31744]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-01-10 19456]
S3 RivaTuner64;RivaTuner64; \??\C:\Program Files (x86)\RivaTuner v2.23\RivaTuner64.sys []
S3 RTCore64;RTCore64; \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2013-01-23 13368]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 StkCMini;Syntek AVStream USB2.0 ATV; C:\Windows\System32\Drivers\StkCMini.sys [2010-04-16 1816968]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2013-01-10 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-01-10 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-01-10 30208]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Users\Petr\AppData\Local\Temp\Rar$EXa0.807\WinRing0x64.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-16 241152]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2012-11-26 1329304]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-12-14 2466304]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2012-11-01 2555760]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-03-06 3560288]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2006-09-28 49152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-02 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2012-09-20 30785672]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-04-10 115608]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-04-19 543656]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [2013-03-20 746392]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-01-21 1255736]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#6 Příspěvek od Rudy »

Log je již OK. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Clorky
Návštěvník
Návštěvník
Příspěvky: 121
Registrován: 17 kvě 2010 10:42

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#7 Příspěvek od Clorky »

Vše hotovo.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#8 Příspěvek od Rudy »

Pokud není nějaký problém, je to vše.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Clorky
Návštěvník
Návštěvník
Příspěvky: 121
Registrován: 17 kvě 2010 10:42

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#9 Příspěvek od Clorky »

Je to OK, moc vám děkuji :).

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kompletní kontrolu PC, preventivní a optimaliza

#10 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno