Prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Prosím o kontrolu logu
Zdravím, nezobrazuje se mi domovská stránka, prosím o kontrolu logu. Děkuji
Logfile of random's system information tool 1.09 (written by random/random)
Run by Libor at 2013-09-13 22:54:27
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (79%) free of 469 GB
Total RAM: 2013 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:55:14, on 13.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\EPSON Software\Event Manager\EEventManager.exe
C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIIME.EXE
C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Libor\Downloads\RSIT(2).exe
C:\Program Files\trend micro\Libor.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\SearchFilterHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www2.delta-search.com/?babsrc=HP ... 3&tsp=5004
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll
O2 - BHO: HelloWorldBHO - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIME.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-202 203 206 Series"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Seiko Epson Corporation - C:\Windows\system32\EscSvc.exe
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PDF Architect Helper Service - pdfforge GbR - C:\Program Files\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GbR - C:\Program Files\PDF Architect\ConversionService.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
--
End of file - 10030 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
prefs.js - "browser.startup.homepage" - "http://www2.delta-search.com/?babsrc=HP ... 3&tsp=5004"
"FFPDFArchitectConverter@pdfarchitect.com"=C:\Program Files\PDF Architect\FFPDFArchitectExt
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\extensions\
7go@7go.com
{ea614400-e918-4741-9a97-7a972ff7c30b}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files\PDF Architect\PDFIEHelper.dll [2013-01-09 92232]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7825CFB6-490A-436B-9F26-4A7B5CFC01A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 319488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-06-20 192592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-08-14 4533120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2013-09-13 705240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 319488]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-06-20 192592]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-10 136216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-10 171032]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-10 170520]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-07-07 10754664]
"LogitechQuickCamRibbon"=C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2009-10-14 2793304]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 947152]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2011-10-31 1058400]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
"cz.seznam.software.szndesktop"=C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]
"EPLTarget\P0000000000000000"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIME.EXE [2012-02-29 249440]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2013-05-04 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-07-29 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=i420vfw.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"MSVideo"=vfwwdm32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.yv12"=yv12vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-09-13 22:41:26 ----D---- C:\Users\Libor\AppData\Roaming\File Scout
2013-09-13 22:41:23 ----D---- C:\ProgramData\DSearchLink
2013-09-13 22:41:13 ----D---- C:\Users\Libor\AppData\Roaming\SpeedAnalysis3
2013-09-13 22:41:13 ----D---- C:\Users\Libor\AppData\Roaming\PerformerSoft
2013-09-13 22:41:12 ----D---- C:\ProgramData\IBUpdaterService
2013-09-13 22:41:11 ----A---- C:\Windows\system32\roboot.exe
2013-09-13 22:41:04 ----D---- C:\ProgramData\Babylon
2013-09-13 22:41:03 ----D---- C:\Users\Libor\AppData\Roaming\Babylon
2013-09-13 22:40:55 ----D---- C:\Users\Libor\AppData\Roaming\7go
2013-09-13 08:24:18 ----D---- C:\Program Files\Microsoft SkyDrive
2013-09-13 08:23:56 ----D---- C:\ProgramData\Microsoft SkyDrive
2013-09-13 08:15:25 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2013-09-13 08:11:48 ----D---- C:\Program Files\Microsoft Office 15
2013-09-12 12:57:44 ----A---- C:\Windows\system32\jscript.dll
2013-09-12 12:57:43 ----A---- C:\Windows\system32\jscript9.dll
2013-09-12 12:57:42 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-12 12:57:42 ----A---- C:\Windows\system32\ieui.dll
2013-09-12 12:57:42 ----A---- C:\Windows\system32\iesetup.dll
2013-09-12 12:57:41 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-12 12:57:41 ----A---- C:\Windows\system32\iernonce.dll
2013-09-12 12:57:41 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-12 12:57:40 ----A---- C:\Windows\system32\urlmon.dll
2013-09-12 12:57:40 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-12 12:57:40 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-12 12:57:39 ----A---- C:\Windows\system32\iertutil.dll
2013-09-12 12:57:38 ----A---- C:\Windows\system32\wininet.dll
2013-09-12 12:57:37 ----A---- C:\Windows\system32\ieframe.dll
2013-09-12 12:57:34 ----A---- C:\Windows\system32\mshtml.dll
2013-09-12 10:06:43 ----A---- C:\Windows\system32\shell32.dll
2013-09-12 10:06:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-12 10:06:29 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\winsrv.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\kernel32.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\conhost.exe
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 10:06:21 ----A---- C:\Windows\system32\win32k.sys
2013-09-10 10:32:42 ----D---- C:\ProgramData\WinZip
2013-09-10 10:32:38 ----D---- C:\Program Files\WinZip
2013-08-20 02:26:20 ----A---- C:\Windows\system32\msvcr100.dll
2013-08-20 02:26:20 ----A---- C:\Windows\system32\msvcp100.dll
2013-08-14 21:37:57 ----D---- C:\Windows\system32\MRT
2013-08-14 21:37:07 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-14 21:37:03 ----A---- C:\Windows\system32\crypt32.dll
2013-08-14 21:37:02 ----A---- C:\Windows\system32\wintrust.dll
2013-08-14 21:37:02 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-14 21:37:01 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-14 21:36:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-08-14 21:36:41 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-08-14 21:36:41 ----A---- C:\Windows\system32\ntdll.dll
2013-08-14 21:36:40 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-08-14 21:36:39 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-14 21:36:18 ----A---- C:\Windows\system32\tzres.dll
2013-08-14 21:36:07 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
======List of files/folders modified in the last 1 month======
2013-09-13 22:55:14 ----D---- C:\Windows\system32\config
2013-09-13 22:55:00 ----D---- C:\Windows\Temp
2013-09-13 22:54:29 ----D---- C:\Program Files\trend micro
2013-09-13 22:51:23 ----D---- C:\Windows
2013-09-13 22:48:41 ----RD---- C:\Program Files
2013-09-13 22:47:32 ----D---- C:\Windows\Tasks
2013-09-13 22:47:32 ----D---- C:\Windows\system32\Tasks
2013-09-13 22:47:04 ----D---- C:\Users\Libor\AppData\Roaming\Skype
2013-09-13 22:41:32 ----HD---- C:\Program Files\Uninstall Information
2013-09-13 22:41:23 ----HD---- C:\ProgramData
2013-09-13 22:41:11 ----D---- C:\Windows\System32
2013-09-13 21:19:18 ----SHD---- C:\Windows\Installer
2013-09-13 21:18:11 ----D---- C:\Users\Libor\AppData\Roaming\Seznam.cz
2013-09-13 21:14:13 ----D---- C:\Windows\system32\FxsTmp
2013-09-13 10:04:51 ----SHD---- C:\System Volume Information
2013-09-13 09:23:04 ----D---- C:\Windows\Panther
2013-09-13 09:23:04 ----D---- C:\Windows\inf
2013-09-13 09:23:02 ----D---- C:\Windows\debug
2013-09-13 08:50:56 ----RSD---- C:\Windows\Fonts
2013-09-13 08:48:18 ----D---- C:\Windows\Microsoft.NET
2013-09-13 08:48:16 ----RSD---- C:\Windows\assembly
2013-09-13 08:25:39 ----SD---- C:\Users\Libor\AppData\Roaming\Microsoft
2013-09-13 08:23:55 ----SD---- C:\ProgramData\Microsoft
2013-09-13 08:23:51 ----D---- C:\Program Files\Microsoft Office
2013-09-13 08:23:19 ----D---- C:\Program Files\Common Files\microsoft shared
2013-09-13 08:23:18 ----D---- C:\Program Files\Common Files\DESIGNER
2013-09-13 08:23:14 ----D---- C:\Program Files\Microsoft.NET
2013-09-13 08:22:49 ----D---- C:\Windows\system32\DriverStore
2013-09-13 07:24:10 ----D---- C:\Windows\winsxs
2013-09-13 07:21:40 ----D---- C:\Program Files\Internet Explorer
2013-09-13 07:21:39 ----D---- C:\Windows\system32\cs-CZ
2013-09-13 07:21:36 ----D---- C:\Windows\system32\drivers
2013-09-12 12:58:48 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-12 12:58:47 ----D---- C:\Program Files\Microsoft Application Virtualization Client
2013-09-12 12:57:55 ----D---- C:\Windows\system32\catroot
2013-09-12 12:57:52 ----D---- C:\Windows\system32\catroot2
2013-09-12 12:56:37 ----D---- C:\Windows\Prefetch
2013-09-12 10:06:13 ----A---- C:\Windows\system32\MRT.exe
2013-09-11 08:29:18 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-09-11 08:19:11 ----D---- C:\Users\Libor\AppData\Roaming\SoftGrid Client
2013-08-19 07:32:53 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-08-18 17:10:58 ----D---- C:\Program Files\Mozilla Firefox
2013-08-17 11:39:06 ----D---- C:\ProgramData\Skype
2013-08-17 11:39:05 ----RD---- C:\Program Files\Skype
2013-08-16 15:30:51 ----D---- C:\Windows\rescache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 195296]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2009-09-23 55040]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2009-09-23 294912]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 100328]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-07-29 9023488]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2011-08-11 88176]
R3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys [2009-10-07 25752]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2008-07-26 627864]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2008-07-26 41752]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-05-13 6504]
R3 pepifilter;Volume Adapter; C:\Windows\system32\DRIVERS\lv302af.sys [2008-07-26 13848]
R3 PID_PEPI;Logitech QuickCam IM(PID_PEPI); C:\Windows\system32\DRIVERS\LV302V32.SYS [2008-07-26 2570520]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2013-06-26 583848]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2013-06-26 197800]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2013-06-26 24232]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2013-06-26 20136]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\Windows\system32\DRIVERS\vpchbus.sys [2009-09-23 165376]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\Windows\system32\DRIVERS\vpcusb.sys [2009-09-23 78336]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-08 39272]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2011-08-17 23168]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2011-08-17 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2011-08-17 8192]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 BBSvc;BingBar Service; C:\Program Files\Microsoft\BingBar\7.2.241.0\BBSvc.exe [2013-07-23 193696]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [2012-02-21 142432]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc.exe [2011-12-12 122000]
R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-10-07 154136]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 20456]
R2 OfficeSvc;Služba Microsoft Office; C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe [2013-07-21 1316536]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [2013-01-09 1324104]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [2013-01-09 795208]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-08-14 3291008]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 295232]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-11-09 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-11 257416]
S3 BBUpdate;BBUpdate; C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe [2013-07-23 240288]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-05-04 194032]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-08-18 117656]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-08-20 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2013-08-20 4846168]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-01-02 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Libor at 2013-09-13 22:54:27
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (79%) free of 469 GB
Total RAM: 2013 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:55:14, on 13.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\EPSON Software\Event Manager\EEventManager.exe
C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIIME.EXE
C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Libor\Downloads\RSIT(2).exe
C:\Program Files\trend micro\Libor.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\SearchFilterHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www2.delta-search.com/?babsrc=HP ... 3&tsp=5004
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll
O2 - BHO: HelloWorldBHO - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIME.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-202 203 206 Series"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Seiko Epson Corporation - C:\Windows\system32\EscSvc.exe
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PDF Architect Helper Service - pdfforge GbR - C:\Program Files\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GbR - C:\Program Files\PDF Architect\ConversionService.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
--
End of file - 10030 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
prefs.js - "browser.startup.homepage" - "http://www2.delta-search.com/?babsrc=HP ... 3&tsp=5004"
"FFPDFArchitectConverter@pdfarchitect.com"=C:\Program Files\PDF Architect\FFPDFArchitectExt
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\extensions\
7go@7go.com
{ea614400-e918-4741-9a97-7a972ff7c30b}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files\PDF Architect\PDFIEHelper.dll [2013-01-09 92232]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7825CFB6-490A-436B-9F26-4A7B5CFC01A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 319488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-06-20 192592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-08-14 4533120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2013-09-13 705240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 319488]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-06-20 192592]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll [2013-07-23 1451680]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-10 136216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-10 171032]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-10 170520]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-07-07 10754664]
"LogitechQuickCamRibbon"=C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2009-10-14 2793304]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 947152]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2011-10-31 1058400]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
"cz.seznam.software.szndesktop"=C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-01-22 92152]
"EPLTarget\P0000000000000000"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIME.EXE [2012-02-29 249440]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2013-05-04 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-07-29 228864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=i420vfw.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"MSVideo"=vfwwdm32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.yv12"=yv12vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-09-13 22:41:26 ----D---- C:\Users\Libor\AppData\Roaming\File Scout
2013-09-13 22:41:23 ----D---- C:\ProgramData\DSearchLink
2013-09-13 22:41:13 ----D---- C:\Users\Libor\AppData\Roaming\SpeedAnalysis3
2013-09-13 22:41:13 ----D---- C:\Users\Libor\AppData\Roaming\PerformerSoft
2013-09-13 22:41:12 ----D---- C:\ProgramData\IBUpdaterService
2013-09-13 22:41:11 ----A---- C:\Windows\system32\roboot.exe
2013-09-13 22:41:04 ----D---- C:\ProgramData\Babylon
2013-09-13 22:41:03 ----D---- C:\Users\Libor\AppData\Roaming\Babylon
2013-09-13 22:40:55 ----D---- C:\Users\Libor\AppData\Roaming\7go
2013-09-13 08:24:18 ----D---- C:\Program Files\Microsoft SkyDrive
2013-09-13 08:23:56 ----D---- C:\ProgramData\Microsoft SkyDrive
2013-09-13 08:15:25 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2013-09-13 08:11:48 ----D---- C:\Program Files\Microsoft Office 15
2013-09-12 12:57:44 ----A---- C:\Windows\system32\jscript.dll
2013-09-12 12:57:43 ----A---- C:\Windows\system32\jscript9.dll
2013-09-12 12:57:42 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-12 12:57:42 ----A---- C:\Windows\system32\ieui.dll
2013-09-12 12:57:42 ----A---- C:\Windows\system32\iesetup.dll
2013-09-12 12:57:41 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-12 12:57:41 ----A---- C:\Windows\system32\iernonce.dll
2013-09-12 12:57:41 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-12 12:57:40 ----A---- C:\Windows\system32\urlmon.dll
2013-09-12 12:57:40 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-12 12:57:40 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-12 12:57:39 ----A---- C:\Windows\system32\iertutil.dll
2013-09-12 12:57:38 ----A---- C:\Windows\system32\wininet.dll
2013-09-12 12:57:37 ----A---- C:\Windows\system32\ieframe.dll
2013-09-12 12:57:34 ----A---- C:\Windows\system32\mshtml.dll
2013-09-12 10:06:43 ----A---- C:\Windows\system32\shell32.dll
2013-09-12 10:06:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-12 10:06:29 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 10:06:24 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\winsrv.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\kernel32.dll
2013-09-12 10:06:24 ----A---- C:\Windows\system32\conhost.exe
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 10:06:23 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 10:06:22 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 10:06:21 ----A---- C:\Windows\system32\win32k.sys
2013-09-10 10:32:42 ----D---- C:\ProgramData\WinZip
2013-09-10 10:32:38 ----D---- C:\Program Files\WinZip
2013-08-20 02:26:20 ----A---- C:\Windows\system32\msvcr100.dll
2013-08-20 02:26:20 ----A---- C:\Windows\system32\msvcp100.dll
2013-08-14 21:37:57 ----D---- C:\Windows\system32\MRT
2013-08-14 21:37:07 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-14 21:37:03 ----A---- C:\Windows\system32\crypt32.dll
2013-08-14 21:37:02 ----A---- C:\Windows\system32\wintrust.dll
2013-08-14 21:37:02 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-14 21:37:01 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-14 21:36:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-08-14 21:36:41 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-08-14 21:36:41 ----A---- C:\Windows\system32\ntdll.dll
2013-08-14 21:36:40 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-08-14 21:36:39 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-14 21:36:18 ----A---- C:\Windows\system32\tzres.dll
2013-08-14 21:36:07 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
======List of files/folders modified in the last 1 month======
2013-09-13 22:55:14 ----D---- C:\Windows\system32\config
2013-09-13 22:55:00 ----D---- C:\Windows\Temp
2013-09-13 22:54:29 ----D---- C:\Program Files\trend micro
2013-09-13 22:51:23 ----D---- C:\Windows
2013-09-13 22:48:41 ----RD---- C:\Program Files
2013-09-13 22:47:32 ----D---- C:\Windows\Tasks
2013-09-13 22:47:32 ----D---- C:\Windows\system32\Tasks
2013-09-13 22:47:04 ----D---- C:\Users\Libor\AppData\Roaming\Skype
2013-09-13 22:41:32 ----HD---- C:\Program Files\Uninstall Information
2013-09-13 22:41:23 ----HD---- C:\ProgramData
2013-09-13 22:41:11 ----D---- C:\Windows\System32
2013-09-13 21:19:18 ----SHD---- C:\Windows\Installer
2013-09-13 21:18:11 ----D---- C:\Users\Libor\AppData\Roaming\Seznam.cz
2013-09-13 21:14:13 ----D---- C:\Windows\system32\FxsTmp
2013-09-13 10:04:51 ----SHD---- C:\System Volume Information
2013-09-13 09:23:04 ----D---- C:\Windows\Panther
2013-09-13 09:23:04 ----D---- C:\Windows\inf
2013-09-13 09:23:02 ----D---- C:\Windows\debug
2013-09-13 08:50:56 ----RSD---- C:\Windows\Fonts
2013-09-13 08:48:18 ----D---- C:\Windows\Microsoft.NET
2013-09-13 08:48:16 ----RSD---- C:\Windows\assembly
2013-09-13 08:25:39 ----SD---- C:\Users\Libor\AppData\Roaming\Microsoft
2013-09-13 08:23:55 ----SD---- C:\ProgramData\Microsoft
2013-09-13 08:23:51 ----D---- C:\Program Files\Microsoft Office
2013-09-13 08:23:19 ----D---- C:\Program Files\Common Files\microsoft shared
2013-09-13 08:23:18 ----D---- C:\Program Files\Common Files\DESIGNER
2013-09-13 08:23:14 ----D---- C:\Program Files\Microsoft.NET
2013-09-13 08:22:49 ----D---- C:\Windows\system32\DriverStore
2013-09-13 07:24:10 ----D---- C:\Windows\winsxs
2013-09-13 07:21:40 ----D---- C:\Program Files\Internet Explorer
2013-09-13 07:21:39 ----D---- C:\Windows\system32\cs-CZ
2013-09-13 07:21:36 ----D---- C:\Windows\system32\drivers
2013-09-12 12:58:48 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-12 12:58:47 ----D---- C:\Program Files\Microsoft Application Virtualization Client
2013-09-12 12:57:55 ----D---- C:\Windows\system32\catroot
2013-09-12 12:57:52 ----D---- C:\Windows\system32\catroot2
2013-09-12 12:56:37 ----D---- C:\Windows\Prefetch
2013-09-12 10:06:13 ----A---- C:\Windows\system32\MRT.exe
2013-09-11 08:29:18 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-09-11 08:19:11 ----D---- C:\Users\Libor\AppData\Roaming\SoftGrid Client
2013-08-19 07:32:53 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-08-18 17:10:58 ----D---- C:\Program Files\Mozilla Firefox
2013-08-17 11:39:06 ----D---- C:\ProgramData\Skype
2013-08-17 11:39:05 ----RD---- C:\Program Files\Skype
2013-08-16 15:30:51 ----D---- C:\Windows\rescache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 195296]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2009-09-23 55040]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2009-09-23 294912]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 100328]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-07-29 9023488]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-07-07 3531176]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2011-08-11 88176]
R3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys [2009-10-07 25752]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2008-07-26 627864]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2008-07-26 41752]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-05-13 6504]
R3 pepifilter;Volume Adapter; C:\Windows\system32\DRIVERS\lv302af.sys [2008-07-26 13848]
R3 PID_PEPI;Logitech QuickCam IM(PID_PEPI); C:\Windows\system32\DRIVERS\LV302V32.SYS [2008-07-26 2570520]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2013-06-26 583848]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2013-06-26 197800]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2013-06-26 24232]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2013-06-26 20136]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\Windows\system32\DRIVERS\vpchbus.sys [2009-09-23 165376]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\Windows\system32\DRIVERS\vpcusb.sys [2009-09-23 78336]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-03-08 39272]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2011-08-17 23168]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2011-08-17 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2011-08-17 8192]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 BBSvc;BingBar Service; C:\Program Files\Microsoft\BingBar\7.2.241.0\BBSvc.exe [2013-07-23 193696]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [2012-02-21 142432]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc.exe [2011-12-12 122000]
R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-10-07 154136]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 20456]
R2 OfficeSvc;Služba Microsoft Office; C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe [2013-07-21 1316536]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [2013-01-09 1324104]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [2013-01-09 795208]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-08-14 3291008]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 1713536]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 295232]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-11-09 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-11 257416]
S3 BBUpdate;BBUpdate; C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe [2013-07-23 240288]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-03-08 1492840]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-05-04 194032]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-08-18 117656]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-08-20 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2013-08-20 4846168]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-01-02 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Re: Prosím o kontrolu logu
Zdravim
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: Prosím o kontrolu logu
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.0 (09.12.2013:1)
OS: Windows 7 Home Premium x86
Ran by Libor on p 13.09.2013 at 23:23:38,23
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\Main\\Start Page
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211671166}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211671166}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
~~~ Files
Successfully deleted: [File] "C:\Windows\system32\roboot.exe"
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\ibupdaterservice"
Successfully deleted: [Folder] "C:\Users\Libor\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Libor\AppData\Roaming\file scout"
Successfully deleted: [Folder] "C:\Users\Libor\AppData\Roaming\performersoft"
Successfully deleted: [Folder] "C:\Program Files\mypc backup"
~~~ FireFox
Successfully deleted the following from C:\Users\Libor\AppData\Roaming\mozilla\firefox\profiles\cozz22r6.default\prefs.js
user_pref("browser.newtab.url", "hxxp://www2.delta-search.com/?babsrc=NT_ss&mntrId=08855404A6627F89&affID=119943&tsp=5004");
user_pref("browser.startup.homepage", "hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=08855404A6627F89&affID=119943&tsp=5004");
Emptied folder: C:\Users\Libor\AppData\Roaming\mozilla\firefox\profiles\cozz22r6.default\minidumps [90 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p 13.09.2013 at 23:59:41,08
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Version: 6.0.0 (09.12.2013:1)
OS: Windows 7 Home Premium x86
Ran by Libor on p 13.09.2013 at 23:23:38,23
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-726496295-2317986126-1619368687-1000\Software\Microsoft\Internet Explorer\Main\\Start Page
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211671166}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211671166}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
~~~ Files
Successfully deleted: [File] "C:\Windows\system32\roboot.exe"
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\ibupdaterservice"
Successfully deleted: [Folder] "C:\Users\Libor\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Libor\AppData\Roaming\file scout"
Successfully deleted: [Folder] "C:\Users\Libor\AppData\Roaming\performersoft"
Successfully deleted: [Folder] "C:\Program Files\mypc backup"
~~~ FireFox
Successfully deleted the following from C:\Users\Libor\AppData\Roaming\mozilla\firefox\profiles\cozz22r6.default\prefs.js
user_pref("browser.newtab.url", "hxxp://www2.delta-search.com/?babsrc=NT_ss&mntrId=08855404A6627F89&affID=119943&tsp=5004");
user_pref("browser.startup.homepage", "hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=08855404A6627F89&affID=119943&tsp=5004");
Emptied folder: C:\Users\Libor\AppData\Roaming\mozilla\firefox\profiles\cozz22r6.default\minidumps [90 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p 13.09.2013 at 23:59:41,08
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Re: Prosím o kontrolu logu
# AdwCleaner v3.003 - Report created 14/09/2013 at 00:29:02
# Updated 07/09/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Libor - LIBOR-PC
# Running from : C:\Users\Libor\Downloads\adwcleaner(4).exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\Libor\AppData\Roaming\7go
Folder Deleted : C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\Extensions\7go@7go.com
File Deleted : C:\Users\Libor\AppData\Roaming\speedanalysis.ico
File Deleted : C:\Users\Libor\Desktop\7go.lnk
File Deleted : C:\Users\Libor\Desktop\SpeedAnalysis.lnk
***** [ Shortcuts ] *****
Shortcut Disinfected : C:\Users\Libor\Desktop\Search.lnk
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\Software\PIP
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16686
-\\ Mozilla Firefox v23.0.1 (cs)
[ File : C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\prefs.js ]
-\\ Google Chrome v28.0.1500.95
[ File : C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : homepage
Deleted : icon_url
Deleted : search_url
Deleted : keyword
Deleted : urls_to_restore_on_startup
*************************
AdwCleaner[R0].txt - [2139 octets] - [14/09/2013 00:28:20]
AdwCleaner[S0].txt - [1997 octets] - [14/09/2013 00:29:02]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2057 octets] ##########
# Updated 07/09/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Libor - LIBOR-PC
# Running from : C:\Users\Libor\Downloads\adwcleaner(4).exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\Libor\AppData\Roaming\7go
Folder Deleted : C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\Extensions\7go@7go.com
File Deleted : C:\Users\Libor\AppData\Roaming\speedanalysis.ico
File Deleted : C:\Users\Libor\Desktop\7go.lnk
File Deleted : C:\Users\Libor\Desktop\SpeedAnalysis.lnk
***** [ Shortcuts ] *****
Shortcut Disinfected : C:\Users\Libor\Desktop\Search.lnk
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\Software\PIP
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16686
-\\ Mozilla Firefox v23.0.1 (cs)
[ File : C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\prefs.js ]
-\\ Google Chrome v28.0.1500.95
[ File : C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : homepage
Deleted : icon_url
Deleted : search_url
Deleted : keyword
Deleted : urls_to_restore_on_startup
*************************
AdwCleaner[R0].txt - [2139 octets] - [14/09/2013 00:28:20]
AdwCleaner[S0].txt - [1997 octets] - [14/09/2013 00:29:02]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2057 octets] ##########
Re: Prosím o kontrolu logu
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-09-2013 04
Ran by Libor (administrator) on LIBOR-PC on 14-09-2013 23:03:15
Running from C:\Users\Libor\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Seiko Epson Corporation) C:\Windows\system32\EscSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
() C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\w32x86\3\E_FATIIME.EXE
() C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingBar.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10754664 2011-07-07] (Realtek Semiconductor)
HKLM\...\Run: [LogitechQuickCamRibbon] - C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2793304 2009-10-14] ()
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [947152 2013-01-27] (Microsoft Corporation)
HKLM\...\Run: [EEventManager] - C:\Program Files\Epson Software\Event Manager\EEventManager.exe [1058400 2011-10-31] (SEIKO EPSON CORPORATION)
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe [1009288 2012-09-13] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92152 2013-01-22] ()
HKCU\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIME.EXE [249440 2012-02-29] (SEIKO EPSON CORPORATION)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-05-04] (Google Inc.)
==================== Internet (Whitelisted) ====================
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO: No Name - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - No File
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKCU -Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.20
FireFox:
========
FF ProfilePath: C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
FF DefaultSearchEngine: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Seznam lištička - C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR DefaultSearchURL: (Delta Search) - http://www2.delta-search.com/?q={search ... 3&tsp=5004
CHR DefaultSuggestURL: (Delta Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\28.0.1500.95\pdf.dll ()
CHR Plugin: (Skype Click to Call) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.5.0.11422_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Relevant-Knowledge) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.332.1_0\plugins/rlcm.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live\u0102\u201A\u00E2\u201E\u02D8 Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_135.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Extension: (Google Drive) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Email) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig\1.3.13_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Slovn\u00EDk) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd\1.2.13_0
CHR Extension: (YouTube) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Skype Click to Call) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.11.0.13348_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Rychl\u00E1 volba) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak\1.5.14_0
CHR Extension: (Gmail) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM\...\Chrome\Extension: [gjajpkikblccgefaibcafkfbanllpefi] - C:\Users\Libor\AppData\Roaming\7go\7go.crx
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc.exe [122000 2011-12-12] (Seiko Epson Corporation)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [20456 2013-01-27] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [295232 2013-01-27] (Microsoft Corporation)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe [1316536 2013-07-21] (Microsoft Corporation)
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3291008 2013-08-14] (Skype Technologies S.A.)
==================== Drivers (Whitelisted) ====================
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25752 2009-10-07] ()
R3 LVUSBSta; C:\Windows\System32\drivers\LVUSBSta.sys [41752 2008-07-26] (Logitech Inc.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [195296 2013-01-20] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [6504 2009-05-13] ()
R3 pepifilter; C:\Windows\System32\DRIVERS\lv302af.sys [13848 2008-07-26] (Logitech Inc.)
R3 PID_PEPI; C:\Windows\System32\DRIVERS\LV302V32.SYS [2570520 2008-07-26] (Logitech Inc.)
R3 vpcbus; C:\Windows\System32\DRIVERS\vpchbus.sys [165376 2009-09-23] (Microsoft Corporation)
R1 vpcnfltr; C:\Windows\System32\DRIVERS\vpcnfltr.sys [55040 2009-09-23] (Microsoft Corporation)
R3 vpcusb; C:\Windows\System32\DRIVERS\vpcusb.sys [78336 2009-09-23] (Microsoft Corporation)
R1 vpcvmm; C:\Windows\System32\drivers\vpcvmm.sys [294912 2009-09-23] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-14 23:03 - 2013-09-13 21:11 - 01083285 _____ (Farbar) C:\Users\Libor\Desktop\FRST.exe
2013-09-14 23:02 - 2013-09-14 23:02 - 00000000 ____D C:\Users\Libor\AppData\Local\qb649C8E.CC
2013-09-14 21:13 - 2013-09-14 21:13 - 00000056 _____ C:\Windows\setupact.log
2013-09-14 21:13 - 2013-09-14 21:13 - 00000000 _____ C:\Windows\setuperr.log
2013-09-14 01:53 - 2013-09-14 01:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-09-14 01:41 - 2013-09-14 01:42 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-09-14 01:41 - 2013-09-14 01:41 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_(1).exe
2013-09-14 01:34 - 2013-09-14 01:38 - 00000000 ____D C:\Program Files\office.tmp
2013-09-14 00:28 - 2013-09-14 00:29 - 00000000 ____D C:\AdwCleaner
2013-09-14 00:27 - 2013-09-14 00:27 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(4).exe
2013-09-14 00:15 - 2013-09-14 00:15 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(3).exe
2013-09-13 23:22 - 2013-09-13 23:23 - 01029509 _____ (Thisisu) C:\Users\Libor\Downloads\JRT.exe
2013-09-13 22:54 - 2013-09-13 22:54 - 00781383 _____ C:\Users\Libor\Downloads\RSIT(2).exe
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\Users\Libor\AppData\Roaming\SpeedAnalysis3
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\ProgramData\DSearchLink
2013-09-13 22:36 - 2013-09-13 22:39 - 137211565 _____ C:\Users\Libor\Downloads\oo-setup.exe
2013-09-13 22:35 - 2013-09-13 22:35 - 00801664 _____ () C:\Users\Libor\Downloads\77ZipSetup.exe
2013-09-13 21:27 - 2013-09-13 22:46 - 00002368 _____ C:\Users\Libor\Downloads\Gympl s (r)učením omezeným 70.díl Rozvod.avi
2013-09-13 09:34 - 2013-09-13 09:44 - 570570144 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\X16-32004Office2010CzechSingleImage32bit.exe
2013-09-13 08:34 - 2013-09-13 08:34 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_.exe
2013-09-13 08:24 - 2013-09-14 01:53 - 00002188 _____ C:\Users\Libor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-14 01:53 - 00000000 ___RD C:\Users\Libor\SkyDrive
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00000000 ____D C:\Program Files\Microsoft SkyDrive
2013-09-13 08:23 - 2013-09-13 08:23 - 00000000 ____D C:\ProgramData\Microsoft SkyDrive
2013-09-12 12:57 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-12 12:57 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-12 12:57 - 2013-08-10 05:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-12 12:57 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-12 12:57 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-12 12:57 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-12 10:06 - 2013-08-08 03:03 - 02348544 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-09-12 10:06 - 2013-08-05 03:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2013-09-12 10:06 - 2013-08-02 03:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-09-12 10:06 - 2013-08-02 03:49 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-09-12 10:06 - 2013-08-02 03:49 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2013-09-12 10:06 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 10:06 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-09-12 10:06 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-09-10 10:33 - 2013-09-10 10:34 - 05955636 _____ C:\Users\Libor\Documents\Václav Neckář a Helena Vondráčková - Hezkej den.flv
2013-09-10 10:33 - 2013-09-10 10:33 - 00002307 _____ C:\Users\Public\Desktop\WinZip.lnk
2013-09-10 10:33 - 2013-09-10 10:33 - 00000000 ____D C:\Users\Libor\AppData\Local\WinZip
2013-09-10 10:32 - 2013-09-10 10:33 - 00000000 ____D C:\Program Files\WinZip
2013-09-10 10:32 - 2013-09-10 10:32 - 00000000 ____D C:\ProgramData\WinZip
2013-09-10 10:31 - 2013-09-10 10:31 - 04873520 _____ C:\Users\Libor\Downloads\YTDSetup.exe
2013-08-28 22:59 - 2013-08-28 22:59 - 00002082 _____ C:\Users\Libor\Downloads\tiscali_email_732676746_fwd_prilohy.zip
2013-08-21 20:29 - 2013-09-14 22:29 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-20 02:26 - 2013-08-20 02:26 - 00773968 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2013-08-20 02:26 - 2013-08-20 02:26 - 00421200 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
==================== One Month Modified Files and Folders =======
2013-09-14 23:02 - 2013-09-14 23:02 - 00000000 ____D C:\Users\Libor\AppData\Local\qb649C8E.CC
2013-09-14 22:44 - 2013-08-02 08:30 - 01430755 _____ C:\Windows\WindowsUpdate.log
2013-09-14 22:29 - 2013-08-21 20:29 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-14 21:20 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-14 21:20 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-14 21:19 - 2013-03-03 16:40 - 00000000 ____D C:\Users\Libor\AppData\Roaming\Seznam.cz
2013-09-14 21:15 - 2009-07-14 06:52 - 00000000 ____D C:\Windows\system32\FxsTmp
2013-09-14 21:13 - 2013-09-14 21:13 - 00000056 _____ C:\Windows\setupact.log
2013-09-14 21:13 - 2013-09-14 21:13 - 00000000 _____ C:\Windows\setuperr.log
2013-09-14 21:13 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-14 13:51 - 2012-01-14 11:49 - 00000000 ____D C:\Users\Libor\AppData\Roaming\Skype
2013-09-14 12:57 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2013-09-14 08:47 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2013-09-14 08:29 - 2012-08-31 07:13 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-09-14 08:29 - 2012-01-11 12:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-09-14 02:00 - 2012-01-12 10:23 - 00000000 ____D C:\Users\Libor\AppData\Local\Adobe
2013-09-14 01:54 - 2012-01-02 11:37 - 00002026 _____ C:\Windows\epplauncher.mif
2013-09-14 01:53 - 2013-09-14 01:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-09-14 01:53 - 2013-09-13 08:24 - 00002188 _____ C:\Users\Libor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-14 01:53 - 2013-09-13 08:24 - 00000000 ___RD C:\Users\Libor\SkyDrive
2013-09-14 01:53 - 2012-01-02 12:57 - 00000000 ____D C:\Program Files\Microsoft.NET
2013-09-14 01:53 - 2009-07-14 04:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-09-14 01:45 - 2011-12-19 15:06 - 00000000 ____D C:\Program Files\Microsoft Office
2013-09-14 01:42 - 2013-09-14 01:41 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-09-14 01:41 - 2013-09-14 01:41 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_(1).exe
2013-09-14 01:38 - 2013-09-14 01:34 - 00000000 ____D C:\Program Files\office.tmp
2013-09-14 01:36 - 2012-01-02 11:41 - 00000000 ____D C:\Users\Libor\AppData\Roaming\SoftGrid Client
2013-09-14 00:29 - 2013-09-14 00:28 - 00000000 ____D C:\AdwCleaner
2013-09-14 00:27 - 2013-09-14 00:27 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(4).exe
2013-09-14 00:15 - 2013-09-14 00:15 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(3).exe
2013-09-13 23:23 - 2013-09-13 23:22 - 01029509 _____ (Thisisu) C:\Users\Libor\Downloads\JRT.exe
2013-09-13 22:54 - 2013-09-13 22:54 - 00781383 _____ C:\Users\Libor\Downloads\RSIT(2).exe
2013-09-13 22:54 - 2013-05-04 14:16 - 00000000 ____D C:\Program Files\trend micro
2013-09-13 22:46 - 2013-09-13 21:27 - 00002368 _____ C:\Users\Libor\Downloads\Gympl s (r)učením omezeným 70.díl Rozvod.avi
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\Users\Libor\AppData\Roaming\SpeedAnalysis3
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\ProgramData\DSearchLink
2013-09-13 22:39 - 2013-09-13 22:36 - 137211565 _____ C:\Users\Libor\Downloads\oo-setup.exe
2013-09-13 22:35 - 2013-09-13 22:35 - 00801664 _____ () C:\Users\Libor\Downloads\77ZipSetup.exe
2013-09-13 21:11 - 2013-09-14 23:03 - 01083285 _____ (Farbar) C:\Users\Libor\Desktop\FRST.exe
2013-09-13 09:44 - 2013-09-13 09:34 - 570570144 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\X16-32004Office2010CzechSingleImage32bit.exe
2013-09-13 09:23 - 2011-12-19 15:01 - 00000000 ____D C:\Windows\Panther
2013-09-13 08:34 - 2013-09-13 08:34 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_.exe
2013-09-13 08:29 - 2012-02-11 19:48 - 00112240 _____ C:\Users\Libor\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-13 08:29 - 2009-07-14 06:53 - 00032558 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-09-13 08:28 - 2009-07-14 06:33 - 03794056 _____ C:\Windows\system32\FNTCACHE.DAT
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00000000 ____D C:\Program Files\Microsoft SkyDrive
2013-09-13 08:24 - 2012-01-02 11:31 - 00000000 ____D C:\Users\Libor
2013-09-13 08:23 - 2013-09-13 08:23 - 00000000 ____D C:\ProgramData\Microsoft SkyDrive
2013-09-13 07:24 - 2012-01-02 11:31 - 00000000 ___RD C:\Users\Libor\Virtual Machines
2013-09-12 12:58 - 2010-11-20 23:01 - 01499742 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-12 10:08 - 2013-08-14 21:37 - 00000000 ____D C:\Windows\system32\MRT
2013-09-12 10:06 - 2012-01-02 11:51 - 76725432 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-10 11:04 - 2012-01-29 17:55 - 00028160 _____ C:\Users\Libor\Documents\Sporožiro.xls
2013-09-10 10:34 - 2013-09-10 10:33 - 05955636 _____ C:\Users\Libor\Documents\Václav Neckář a Helena Vondráčková - Hezkej den.flv
2013-09-10 10:33 - 2013-09-10 10:33 - 00002307 _____ C:\Users\Public\Desktop\WinZip.lnk
2013-09-10 10:33 - 2013-09-10 10:33 - 00000000 ____D C:\Users\Libor\AppData\Local\WinZip
2013-09-10 10:33 - 2013-09-10 10:32 - 00000000 ____D C:\Program Files\WinZip
2013-09-10 10:32 - 2013-09-10 10:32 - 00000000 ____D C:\ProgramData\WinZip
2013-09-10 10:31 - 2013-09-10 10:31 - 04873520 _____ C:\Users\Libor\Downloads\YTDSetup.exe
2013-09-04 01:13 - 2012-01-18 00:19 - 00061100 _____ C:\Users\Libor\Documents\Faktury hud.2012.xlsx
2013-08-28 22:59 - 2013-08-28 22:59 - 00002082 _____ C:\Users\Libor\Downloads\tiscali_email_732676746_fwd_prilohy.zip
2013-08-20 02:26 - 2013-08-20 02:26 - 00773968 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2013-08-20 02:26 - 2013-08-20 02:26 - 00421200 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
2013-08-19 07:32 - 2013-05-02 07:46 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-08-18 17:10 - 2013-05-02 07:46 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-08-17 11:39 - 2012-01-14 11:49 - 00000000 ___RD C:\Program Files\Skype
2013-08-17 11:39 - 2012-01-14 11:49 - 00000000 ____D C:\ProgramData\Skype
Some content of TEMP:
====================
C:\Users\Libor\AppData\Local\Temp\OfficeSetup.exe
C:\Users\Libor\AppData\Local\Temp\Quarantine.exe
C:\Users\Libor\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== Alternate Data Streams (whitelisted) ====
AlternateDataStreams: C:\ProgramData\TEMP:88050731
==================== Loaded Modules (whitelisted) ============
2013-03-03 16:41 - 2012-09-13 15:45 - 00058424 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxloader.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00222712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\SkyDriveShell.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00534480 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCP110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00862664 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCR110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00542712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\Telemetry.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00039432 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\logging.dll
2013-09-14 21:13 - 2009-10-07 02:47 - 00109080 _____ (Logitech Inc.) C:\Windows\TEMP\logishrd\LVPrcInj01.dll
2009-10-21 18:39 - 2009-10-21 18:39 - 00291328 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\LcMgr.dll
2011-04-14 10:16 - 2011-04-14 10:16 - 00136704 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\ScanEngine30.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00055808 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnMgr10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00206336 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnCom10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00082944 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnEps25.dll
2011-11-25 18:47 - 2011-11-25 18:47 - 00110080 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\epnsm.dll
2005-01-13 11:47 - 2005-01-13 11:47 - 00049152 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ESPSUTL.dll
2013-03-03 23:47 - 2011-04-14 02:00 - 00105472 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FAUDIME.DLL
2013-03-03 23:47 - 2012-07-02 06:00 - 00178688 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FMAIIME.DLL
2013-03-03 23:47 - 2012-07-23 07:00 - 01526784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FUICIME.DLL
2013-03-03 16:41 - 2013-01-21 15:16 - 00891896 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00773968 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCR100.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00421200 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCP100.dll
2013-03-03 16:41 - 2013-01-22 14:55 - 01676312 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxcub.dll
2013-09-13 22:29 - 2013-06-27 19:58 - 00164352 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Mail_15642ee020d2449d86382022aa6f2548\7.2.103\mailcomm.dll
2013-09-13 22:30 - 2013-04-23 03:06 - 00090112 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\LanguageDetector.dll
2013-09-13 22:30 - 2012-02-01 16:15 - 01042432 _____ () C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\Blingext.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00162304 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchHistoryStore.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00140800 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchGhosting.dll
2013-05-02 07:46 - 2013-08-18 17:10 - 03551640 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
==================== Scheduled Tasks (whitelisted) ===========
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Supplementary Scan (All) ================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=dword:00000005
"ConsentPromptBehaviorUser"=dword:00000003
"EnableInstallerDetection"=dword:00000001
"EnableLUA"=dword:00000001
"EnableSecureUIAPaths"=dword:00000001
"EnableUIADesktopToggle"=dword:00000000
"EnableVirtualization"=dword:00000001
"PromptOnSecureDesktop"=dword:00000001
"ValidateAdminCodeSignatures"=dword:00000000
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"scforceoption"=dword:00000000
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"FilterAdministratorToken"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval"=dword:00000001
"AntiVirusOverride"=dword:00000000
"AntiSpywareOverride"=dword:00000000
"FirewallOverride"=dword:00000000
AV: Microsoft Security Essentials *Enabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"="msrle32.dll"
"vidc.msvc"="msvidc32.dll"
"msacm.imaadpcm"="imaadp32.acm"
"msacm.msg711"="msg711.acm"
"msacm.msgsm610"="msgsm32.acm"
"msacm.msadpcm"="msadp32.acm"
"midimapper"="midimap.dll"
"wavemapper"="msacm32.drv"
"VIDC.UYVY"="msyuv.dll"
"VIDC.YUY2"="msyuv.dll"
"VIDC.YVYU"="msyuv.dll"
"VIDC.IYUV"="iyuv_32.dll"
"VIDC.I420"="i420vfw.dll"
"VIDC.YVU9"="tsbyuv.dll"
"msacm.l3acm"="C:\\Windows\\System32\\l3codeca.acm"
"vidc.cvid"="iccvid.dll"
"wave"="wdmaud.drv"
"midi"="wdmaud.drv"
"mixer"="wdmaud.drv"
"aux"="wdmaud.drv"
"msacm.siren"="sirenacm.dll"
"MSVideo"="vfwwdm32.dll"
"MSVideo8"="VfWWDM32.dll"
"wave1"="wdmaud.drv"
"midi1"="wdmaud.drv"
"mixer1"="wdmaud.drv"
"aux1"="wdmaud.drv"
"vidc.yv12"="yv12vfw.dll"
==================== Drive and Memory info ===================
Drive c: (System) (Fixed) (Total:457.94 GB) (Free:361.35 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Available physical RAM: 1011.73 MB
Total physical RAM: 2013.12 MB
Percentage of memory in use: 49%
==================== MBR and Partition Table =================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 6197B7D3)
Partition 1: (Active) - (Size=458 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=8 GB) - (Type=27)
LastRegBack: 2013-09-13 10:06
==================== End Of Log ==============================
Ran by Libor (administrator) on LIBOR-PC on 14-09-2013 23:03:15
Running from C:\Users\Libor\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Seiko Epson Corporation) C:\Windows\system32\EscSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
() C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\w32x86\3\E_FATIIME.EXE
() C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingBar.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BingSurrogate.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10754664 2011-07-07] (Realtek Semiconductor)
HKLM\...\Run: [LogitechQuickCamRibbon] - C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2793304 2009-10-14] ()
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [947152 2013-01-27] (Microsoft Corporation)
HKLM\...\Run: [EEventManager] - C:\Program Files\Epson Software\Event Manager\EEventManager.exe [1058400 2011-10-31] (SEIKO EPSON CORPORATION)
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe [1009288 2012-09-13] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92152 2013-01-22] ()
HKCU\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIME.EXE [249440 2012-02-29] (SEIKO EPSON CORPORATION)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-05-04] (Google Inc.)
==================== Internet (Whitelisted) ====================
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO: No Name - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - No File
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKCU -Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.20
FireFox:
========
FF ProfilePath: C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
FF DefaultSearchEngine: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Seznam lištička - C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR DefaultSearchURL: (Delta Search) - http://www2.delta-search.com/?q={search ... 3&tsp=5004
CHR DefaultSuggestURL: (Delta Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\28.0.1500.95\pdf.dll ()
CHR Plugin: (Skype Click to Call) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.5.0.11422_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Relevant-Knowledge) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.332.1_0\plugins/rlcm.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live\u0102\u201A\u00E2\u201E\u02D8 Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_135.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Extension: (Google Drive) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Email) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig\1.3.13_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Slovn\u00EDk) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd\1.2.13_0
CHR Extension: (YouTube) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Skype Click to Call) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.11.0.13348_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Rychl\u00E1 volba) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak\1.5.14_0
CHR Extension: (Gmail) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM\...\Chrome\Extension: [gjajpkikblccgefaibcafkfbanllpefi] - C:\Users\Libor\AppData\Roaming\7go\7go.crx
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc.exe [122000 2011-12-12] (Seiko Epson Corporation)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [20456 2013-01-27] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [295232 2013-01-27] (Microsoft Corporation)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe [1316536 2013-07-21] (Microsoft Corporation)
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3291008 2013-08-14] (Skype Technologies S.A.)
==================== Drivers (Whitelisted) ====================
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25752 2009-10-07] ()
R3 LVUSBSta; C:\Windows\System32\drivers\LVUSBSta.sys [41752 2008-07-26] (Logitech Inc.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [195296 2013-01-20] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [6504 2009-05-13] ()
R3 pepifilter; C:\Windows\System32\DRIVERS\lv302af.sys [13848 2008-07-26] (Logitech Inc.)
R3 PID_PEPI; C:\Windows\System32\DRIVERS\LV302V32.SYS [2570520 2008-07-26] (Logitech Inc.)
R3 vpcbus; C:\Windows\System32\DRIVERS\vpchbus.sys [165376 2009-09-23] (Microsoft Corporation)
R1 vpcnfltr; C:\Windows\System32\DRIVERS\vpcnfltr.sys [55040 2009-09-23] (Microsoft Corporation)
R3 vpcusb; C:\Windows\System32\DRIVERS\vpcusb.sys [78336 2009-09-23] (Microsoft Corporation)
R1 vpcvmm; C:\Windows\System32\drivers\vpcvmm.sys [294912 2009-09-23] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-14 23:03 - 2013-09-13 21:11 - 01083285 _____ (Farbar) C:\Users\Libor\Desktop\FRST.exe
2013-09-14 23:02 - 2013-09-14 23:02 - 00000000 ____D C:\Users\Libor\AppData\Local\qb649C8E.CC
2013-09-14 21:13 - 2013-09-14 21:13 - 00000056 _____ C:\Windows\setupact.log
2013-09-14 21:13 - 2013-09-14 21:13 - 00000000 _____ C:\Windows\setuperr.log
2013-09-14 01:53 - 2013-09-14 01:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-09-14 01:41 - 2013-09-14 01:42 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-09-14 01:41 - 2013-09-14 01:41 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_(1).exe
2013-09-14 01:34 - 2013-09-14 01:38 - 00000000 ____D C:\Program Files\office.tmp
2013-09-14 00:28 - 2013-09-14 00:29 - 00000000 ____D C:\AdwCleaner
2013-09-14 00:27 - 2013-09-14 00:27 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(4).exe
2013-09-14 00:15 - 2013-09-14 00:15 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(3).exe
2013-09-13 23:22 - 2013-09-13 23:23 - 01029509 _____ (Thisisu) C:\Users\Libor\Downloads\JRT.exe
2013-09-13 22:54 - 2013-09-13 22:54 - 00781383 _____ C:\Users\Libor\Downloads\RSIT(2).exe
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\Users\Libor\AppData\Roaming\SpeedAnalysis3
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\ProgramData\DSearchLink
2013-09-13 22:36 - 2013-09-13 22:39 - 137211565 _____ C:\Users\Libor\Downloads\oo-setup.exe
2013-09-13 22:35 - 2013-09-13 22:35 - 00801664 _____ () C:\Users\Libor\Downloads\77ZipSetup.exe
2013-09-13 21:27 - 2013-09-13 22:46 - 00002368 _____ C:\Users\Libor\Downloads\Gympl s (r)učením omezeným 70.díl Rozvod.avi
2013-09-13 09:34 - 2013-09-13 09:44 - 570570144 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\X16-32004Office2010CzechSingleImage32bit.exe
2013-09-13 08:34 - 2013-09-13 08:34 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_.exe
2013-09-13 08:24 - 2013-09-14 01:53 - 00002188 _____ C:\Users\Libor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-14 01:53 - 00000000 ___RD C:\Users\Libor\SkyDrive
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00000000 ____D C:\Program Files\Microsoft SkyDrive
2013-09-13 08:23 - 2013-09-13 08:23 - 00000000 ____D C:\ProgramData\Microsoft SkyDrive
2013-09-12 12:57 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-12 12:57 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-12 12:57 - 2013-08-10 05:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-12 12:57 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-12 12:57 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-12 12:57 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-12 12:57 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-12 10:06 - 2013-08-08 03:03 - 02348544 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-09-12 10:06 - 2013-08-05 03:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2013-09-12 10:06 - 2013-08-02 03:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-09-12 10:06 - 2013-08-02 03:49 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-09-12 10:06 - 2013-08-02 03:49 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2013-09-12 10:06 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 10:06 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 10:06 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-09-12 10:06 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-09-10 10:33 - 2013-09-10 10:34 - 05955636 _____ C:\Users\Libor\Documents\Václav Neckář a Helena Vondráčková - Hezkej den.flv
2013-09-10 10:33 - 2013-09-10 10:33 - 00002307 _____ C:\Users\Public\Desktop\WinZip.lnk
2013-09-10 10:33 - 2013-09-10 10:33 - 00000000 ____D C:\Users\Libor\AppData\Local\WinZip
2013-09-10 10:32 - 2013-09-10 10:33 - 00000000 ____D C:\Program Files\WinZip
2013-09-10 10:32 - 2013-09-10 10:32 - 00000000 ____D C:\ProgramData\WinZip
2013-09-10 10:31 - 2013-09-10 10:31 - 04873520 _____ C:\Users\Libor\Downloads\YTDSetup.exe
2013-08-28 22:59 - 2013-08-28 22:59 - 00002082 _____ C:\Users\Libor\Downloads\tiscali_email_732676746_fwd_prilohy.zip
2013-08-21 20:29 - 2013-09-14 22:29 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-20 02:26 - 2013-08-20 02:26 - 00773968 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2013-08-20 02:26 - 2013-08-20 02:26 - 00421200 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
==================== One Month Modified Files and Folders =======
2013-09-14 23:02 - 2013-09-14 23:02 - 00000000 ____D C:\Users\Libor\AppData\Local\qb649C8E.CC
2013-09-14 22:44 - 2013-08-02 08:30 - 01430755 _____ C:\Windows\WindowsUpdate.log
2013-09-14 22:29 - 2013-08-21 20:29 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-14 21:20 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-14 21:20 - 2009-07-14 06:34 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-14 21:19 - 2013-03-03 16:40 - 00000000 ____D C:\Users\Libor\AppData\Roaming\Seznam.cz
2013-09-14 21:15 - 2009-07-14 06:52 - 00000000 ____D C:\Windows\system32\FxsTmp
2013-09-14 21:13 - 2013-09-14 21:13 - 00000056 _____ C:\Windows\setupact.log
2013-09-14 21:13 - 2013-09-14 21:13 - 00000000 _____ C:\Windows\setuperr.log
2013-09-14 21:13 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-14 13:51 - 2012-01-14 11:49 - 00000000 ____D C:\Users\Libor\AppData\Roaming\Skype
2013-09-14 12:57 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2013-09-14 08:47 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2013-09-14 08:29 - 2012-08-31 07:13 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-09-14 08:29 - 2012-01-11 12:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-09-14 02:00 - 2012-01-12 10:23 - 00000000 ____D C:\Users\Libor\AppData\Local\Adobe
2013-09-14 01:54 - 2012-01-02 11:37 - 00002026 _____ C:\Windows\epplauncher.mif
2013-09-14 01:53 - 2013-09-14 01:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-09-14 01:53 - 2013-09-13 08:24 - 00002188 _____ C:\Users\Libor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-14 01:53 - 2013-09-13 08:24 - 00000000 ___RD C:\Users\Libor\SkyDrive
2013-09-14 01:53 - 2012-01-02 12:57 - 00000000 ____D C:\Program Files\Microsoft.NET
2013-09-14 01:53 - 2009-07-14 04:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-09-14 01:45 - 2011-12-19 15:06 - 00000000 ____D C:\Program Files\Microsoft Office
2013-09-14 01:42 - 2013-09-14 01:41 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-09-14 01:41 - 2013-09-14 01:41 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_(1).exe
2013-09-14 01:38 - 2013-09-14 01:34 - 00000000 ____D C:\Program Files\office.tmp
2013-09-14 01:36 - 2012-01-02 11:41 - 00000000 ____D C:\Users\Libor\AppData\Roaming\SoftGrid Client
2013-09-14 00:29 - 2013-09-14 00:28 - 00000000 ____D C:\AdwCleaner
2013-09-14 00:27 - 2013-09-14 00:27 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(4).exe
2013-09-14 00:15 - 2013-09-14 00:15 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(3).exe
2013-09-13 23:23 - 2013-09-13 23:22 - 01029509 _____ (Thisisu) C:\Users\Libor\Downloads\JRT.exe
2013-09-13 22:54 - 2013-09-13 22:54 - 00781383 _____ C:\Users\Libor\Downloads\RSIT(2).exe
2013-09-13 22:54 - 2013-05-04 14:16 - 00000000 ____D C:\Program Files\trend micro
2013-09-13 22:46 - 2013-09-13 21:27 - 00002368 _____ C:\Users\Libor\Downloads\Gympl s (r)učením omezeným 70.díl Rozvod.avi
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\Users\Libor\AppData\Roaming\SpeedAnalysis3
2013-09-13 22:41 - 2013-09-13 22:41 - 00000000 ____D C:\ProgramData\DSearchLink
2013-09-13 22:39 - 2013-09-13 22:36 - 137211565 _____ C:\Users\Libor\Downloads\oo-setup.exe
2013-09-13 22:35 - 2013-09-13 22:35 - 00801664 _____ () C:\Users\Libor\Downloads\77ZipSetup.exe
2013-09-13 21:11 - 2013-09-14 23:03 - 01083285 _____ (Farbar) C:\Users\Libor\Desktop\FRST.exe
2013-09-13 09:44 - 2013-09-13 09:34 - 570570144 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\X16-32004Office2010CzechSingleImage32bit.exe
2013-09-13 09:23 - 2011-12-19 15:01 - 00000000 ____D C:\Windows\Panther
2013-09-13 08:34 - 2013-09-13 08:34 - 00572608 _____ (Microsoft Corporation) C:\Users\Libor\Downloads\Setup.X86.cs-CZ_O365HomePremRetail_5b4433c7-2cb6-48ad-b781-6adfd04388f4_TX_DB_.exe
2013-09-13 08:29 - 2012-02-11 19:48 - 00112240 _____ C:\Users\Libor\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-13 08:29 - 2009-07-14 06:53 - 00032558 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-09-13 08:28 - 2009-07-14 06:33 - 03794056 _____ C:\Windows\system32\FNTCACHE.DAT
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00002088 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2013-09-13 08:24 - 2013-09-13 08:24 - 00000000 ____D C:\Program Files\Microsoft SkyDrive
2013-09-13 08:24 - 2012-01-02 11:31 - 00000000 ____D C:\Users\Libor
2013-09-13 08:23 - 2013-09-13 08:23 - 00000000 ____D C:\ProgramData\Microsoft SkyDrive
2013-09-13 07:24 - 2012-01-02 11:31 - 00000000 ___RD C:\Users\Libor\Virtual Machines
2013-09-12 12:58 - 2010-11-20 23:01 - 01499742 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-12 10:08 - 2013-08-14 21:37 - 00000000 ____D C:\Windows\system32\MRT
2013-09-12 10:06 - 2012-01-02 11:51 - 76725432 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-10 11:04 - 2012-01-29 17:55 - 00028160 _____ C:\Users\Libor\Documents\Sporožiro.xls
2013-09-10 10:34 - 2013-09-10 10:33 - 05955636 _____ C:\Users\Libor\Documents\Václav Neckář a Helena Vondráčková - Hezkej den.flv
2013-09-10 10:33 - 2013-09-10 10:33 - 00002307 _____ C:\Users\Public\Desktop\WinZip.lnk
2013-09-10 10:33 - 2013-09-10 10:33 - 00000000 ____D C:\Users\Libor\AppData\Local\WinZip
2013-09-10 10:33 - 2013-09-10 10:32 - 00000000 ____D C:\Program Files\WinZip
2013-09-10 10:32 - 2013-09-10 10:32 - 00000000 ____D C:\ProgramData\WinZip
2013-09-10 10:31 - 2013-09-10 10:31 - 04873520 _____ C:\Users\Libor\Downloads\YTDSetup.exe
2013-09-04 01:13 - 2012-01-18 00:19 - 00061100 _____ C:\Users\Libor\Documents\Faktury hud.2012.xlsx
2013-08-28 22:59 - 2013-08-28 22:59 - 00002082 _____ C:\Users\Libor\Downloads\tiscali_email_732676746_fwd_prilohy.zip
2013-08-20 02:26 - 2013-08-20 02:26 - 00773968 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2013-08-20 02:26 - 2013-08-20 02:26 - 00421200 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
2013-08-19 07:32 - 2013-05-02 07:46 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-08-18 17:10 - 2013-05-02 07:46 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-08-17 11:39 - 2012-01-14 11:49 - 00000000 ___RD C:\Program Files\Skype
2013-08-17 11:39 - 2012-01-14 11:49 - 00000000 ____D C:\ProgramData\Skype
Some content of TEMP:
====================
C:\Users\Libor\AppData\Local\Temp\OfficeSetup.exe
C:\Users\Libor\AppData\Local\Temp\Quarantine.exe
C:\Users\Libor\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== Alternate Data Streams (whitelisted) ====
AlternateDataStreams: C:\ProgramData\TEMP:88050731
==================== Loaded Modules (whitelisted) ============
2013-03-03 16:41 - 2012-09-13 15:45 - 00058424 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxloader.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00222712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\SkyDriveShell.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00534480 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCP110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00862664 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCR110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00542712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\Telemetry.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00039432 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\logging.dll
2013-09-14 21:13 - 2009-10-07 02:47 - 00109080 _____ (Logitech Inc.) C:\Windows\TEMP\logishrd\LVPrcInj01.dll
2009-10-21 18:39 - 2009-10-21 18:39 - 00291328 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\LcMgr.dll
2011-04-14 10:16 - 2011-04-14 10:16 - 00136704 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\ScanEngine30.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00055808 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnMgr10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00206336 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnCom10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00082944 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnEps25.dll
2011-11-25 18:47 - 2011-11-25 18:47 - 00110080 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\epnsm.dll
2005-01-13 11:47 - 2005-01-13 11:47 - 00049152 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ESPSUTL.dll
2013-03-03 23:47 - 2011-04-14 02:00 - 00105472 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FAUDIME.DLL
2013-03-03 23:47 - 2012-07-02 06:00 - 00178688 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FMAIIME.DLL
2013-03-03 23:47 - 2012-07-23 07:00 - 01526784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FUICIME.DLL
2013-03-03 16:41 - 2013-01-21 15:16 - 00891896 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00773968 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCR100.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00421200 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCP100.dll
2013-03-03 16:41 - 2013-01-22 14:55 - 01676312 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxcub.dll
2013-09-13 22:29 - 2013-06-27 19:58 - 00164352 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Mail_15642ee020d2449d86382022aa6f2548\7.2.103\mailcomm.dll
2013-09-13 22:30 - 2013-04-23 03:06 - 00090112 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\LanguageDetector.dll
2013-09-13 22:30 - 2012-02-01 16:15 - 01042432 _____ () C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\Blingext.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00162304 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchHistoryStore.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00140800 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchGhosting.dll
2013-05-02 07:46 - 2013-08-18 17:10 - 03551640 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
==================== Scheduled Tasks (whitelisted) ===========
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Supplementary Scan (All) ================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=dword:00000005
"ConsentPromptBehaviorUser"=dword:00000003
"EnableInstallerDetection"=dword:00000001
"EnableLUA"=dword:00000001
"EnableSecureUIAPaths"=dword:00000001
"EnableUIADesktopToggle"=dword:00000000
"EnableVirtualization"=dword:00000001
"PromptOnSecureDesktop"=dword:00000001
"ValidateAdminCodeSignatures"=dword:00000000
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"scforceoption"=dword:00000000
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"FilterAdministratorToken"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval"=dword:00000001
"AntiVirusOverride"=dword:00000000
"AntiSpywareOverride"=dword:00000000
"FirewallOverride"=dword:00000000
AV: Microsoft Security Essentials *Enabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"="msrle32.dll"
"vidc.msvc"="msvidc32.dll"
"msacm.imaadpcm"="imaadp32.acm"
"msacm.msg711"="msg711.acm"
"msacm.msgsm610"="msgsm32.acm"
"msacm.msadpcm"="msadp32.acm"
"midimapper"="midimap.dll"
"wavemapper"="msacm32.drv"
"VIDC.UYVY"="msyuv.dll"
"VIDC.YUY2"="msyuv.dll"
"VIDC.YVYU"="msyuv.dll"
"VIDC.IYUV"="iyuv_32.dll"
"VIDC.I420"="i420vfw.dll"
"VIDC.YVU9"="tsbyuv.dll"
"msacm.l3acm"="C:\\Windows\\System32\\l3codeca.acm"
"vidc.cvid"="iccvid.dll"
"wave"="wdmaud.drv"
"midi"="wdmaud.drv"
"mixer"="wdmaud.drv"
"aux"="wdmaud.drv"
"msacm.siren"="sirenacm.dll"
"MSVideo"="vfwwdm32.dll"
"MSVideo8"="VfWWDM32.dll"
"wave1"="wdmaud.drv"
"midi1"="wdmaud.drv"
"mixer1"="wdmaud.drv"
"aux1"="wdmaud.drv"
"vidc.yv12"="yv12vfw.dll"
==================== Drive and Memory info ===================
Drive c: (System) (Fixed) (Total:457.94 GB) (Free:361.35 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Available physical RAM: 1011.73 MB
Total physical RAM: 2013.12 MB
Percentage of memory in use: 49%
==================== MBR and Partition Table =================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 6197B7D3)
Partition 1: (Active) - (Size=458 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=8 GB) - (Type=27)
LastRegBack: 2013-09-13 10:06
==================== End Of Log ==============================
Re: Prosím o kontrolu logu
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13-09-2013 04
Ran by Libor at 2013-09-14 23:04:40
Running from C:\Users\Libor\Desktop
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212)
Adobe AIR (Version: 1.5.3.9120)
Adobe Community Help (Version: 3.0.0)
Adobe Community Help (Version: 3.0.0.400)
Adobe Flash Player 11 ActiveX (Version: 11.8.800.174)
Adobe Flash Player 11 Plugin (Version: 11.8.800.168)
Adobe Media Player (Version: 1.8)
Adobe Photoshop CS5 (Version: 12.0)
Adobe Reader X (10.1.6) - Czech (Version: 10.1.6)
Any Video Converter 3.3.5
Bing Bar (Version: 7.2.241.0)
Canon ScanGear Starter
CCleaner (Version: 4.02)
D3DX10 (Version: 15.4.2368.0902)
Download Navigator (Version: 3.4.1)
Epson Easy Photo Print 2 (Version: 2.3.2.0)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (Version: 1.00.0000)
Epson Event Manager (Version: 3.01.0000)
EPSON Scan
EPSON XP-202 203 206 Series Printer Uninstall
EpsonNet Print (Version: 2.5.00)
Google Earth (Version: 7.0.3.8542)
Google Chrome (Version: 28.0.1500.95)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.5.4209.2358)
Google Update Helper (Version: 1.3.21.153)
Intel(R) Graphics Media Accelerator Driver (Version: 8.15.10.2189)
IrfanView (remove only) (Version: 4.32)
Junk Mail filter update (Version: 15.4.3502.0922)
Logitech Vid HD (Version: 7.2 (7259))
Logitech Webcam Software (Version: 12.10.1113)
Mesh Runtime (Version: 15.4.5722.2)
Messenger Companion (Version: 15.4.3502.0922)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (Version: 4.0.30319)
Microsoft Antimalware Service CS-CZ Language Pack (Version: 3.0.8402.2)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Office 365 Home Premium - cs-cz (Version: 15.0.4535.1004)
Microsoft PowerPoint Viewer (Version: 14.0.6029.1000)
Microsoft Security Client (Version: 4.2.0223.1)
Microsoft Security Client CS-CZ Language Pack (Version: 2.1.1116.0)
Microsoft Security Essentials (Version: 4.2.223.1)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SkyDrive (HKCU Version: 17.0.2003.1112)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft_VC80_ATL_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (Version: 8.0.50727.4053)
Microsoft_VC90_ATL_x86 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86 (Version: 1.00.0000)
Mozilla Firefox 23.0.1 (x86 cs) (Version: 23.0.1)
Mozilla Maintenance Service (Version: 23.0.1)
MSVCRT (Version: 15.4.2862.0708)
Nokia Connectivity Cable Driver (Version: 7.1.32.69)
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4535.1004)
Office 15 Click-to-Run Licensing Component (Version: 15.0.4535.1004)
Office 15 Click-to-Run Localization Component (Version: 15.0.4535.1004)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (Version: 15.4.5722.2)
PDF Architect (Version: 1.0.52.8917)
PDF Settings CS5 (Version: 10.0)
PdfConvertor
PDFCreator (Version: 1.6.2)
Příručka pro síť EPSON XP-202 203 206 Series
Realtek High Definition Audio Driver (Version: 6.0.1.6410)
Seznam Software
Skype Click to Call (Version: 6.11.13348)
Skype™ 6.0 (Version: 6.0.126)
Sonic Foundry ACID Pro 3.0 (Version: 3.0.189)
Sonic Foundry ACID Pro 3.0 Crack
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
Steinberg Cubase VST32
SUPER © v2012.build.51 (April 7, 2012) verze v2012.build.51 (Version: v2012.build.51)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Uživatelská příručka EPSON XP-202 203 206 Series
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3555.0308)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live Fotogalerie (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
WinRAR 4.01 (32-bit) (Version: 4.01.0)
WinZip 17.5 (Version: 17.5.10480)
==================== Restore Points =========================
19-08-2013 05:43:45 Windows Update
23-08-2013 10:08:25 Windows Update
26-08-2013 17:18:43 Windows Update
30-08-2013 18:00:39 Windows Update
03-09-2013 20:09:46 Windows Update
06-09-2013 20:58:26 Windows Update
10-09-2013 20:06:29 Windows Update
12-09-2013 08:05:19 Windows Update
12-09-2013 10:56:24 Windows Update
13-09-2013 23:36:57 Odebráno: Microsoft Office Klikni a spusť 2010
13-09-2013 23:42:37 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0D9B5D92-3A22-486D-A887-3AA21597CF27} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => Sc.exe start w32time task_started
Task: {0E842105-7F7C-4A07-A245-045372AA7765} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation)
Task: {102724B5-9F75-4F3A-B206-F0C84CF20CF0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02] (Google Inc.)
Task: {30A681F2-248E-4AEC-97DE-B44C94467DD9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd)
Task: {3E0487EA-EE99-47DA-B14B-F47241F96D1B} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-11] (Microsoft Corporation)
Task: {3EDAF3C8-0B66-4D01-87C4-22ACB0B3BF7A} - System32\Tasks\4685 => C:\Windows\System32\wscript.exe [2009-07-14] (Microsoft Corporation)
Task: {56B05C01-AFA9-46E4-BCEC-520747A074A8} - System32\Tasks\AdobeAAMUpdater-1.0-Libor-PC-Libor => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-12-15] (Adobe Systems Incorporated)
Task: {844D33FD-09F2-49CF-B875-3EFA83C9EBBB} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {A95C2115-FFDA-42AA-9C09-552C5C43BD2A} - System32\Tasks\0 => Iexplore.exe
Task: {B61AA539-9788-4726-9EB2-5F2146CA4F95} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe [2013-07-21] (Microsoft Corporation)
Task: {C14761E8-0D9D-441D-804A-009704C9FFFE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2013-09-14] (Microsoft Corporation)
Task: {F333B598-D2FD-4551-BEA8-6F17A3FDB198} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-14] (Adobe Systems Incorporated)
Task: {FBDC6E79-7C55-4CA4-BD58-B82030A8468C} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {FF9AE215-6135-4B0E-8C11-1D723B84DD4A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2013-03-03 16:41 - 2012-09-13 15:45 - 00058424 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxloader.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00222712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\SkyDriveShell.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00534480 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCP110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00862664 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCR110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00542712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\Telemetry.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00039432 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\logging.dll
2011-12-19 14:36 - 2010-07-29 05:24 - 00085504 _____ (Intel Corporation) C:\Windows\system32\igfxrCSY.lrc
2013-09-14 21:13 - 2009-10-07 02:47 - 00109080 _____ (Logitech Inc.) C:\Windows\TEMP\logishrd\LVPrcInj01.dll
2009-10-21 18:39 - 2009-10-21 18:39 - 00291328 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\LcMgr.dll
2011-04-14 10:16 - 2011-04-14 10:16 - 00136704 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\ScanEngine30.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00055808 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnMgr10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00206336 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnCom10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00082944 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnEps25.dll
2011-11-25 18:47 - 2011-11-25 18:47 - 00110080 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\epnsm.dll
2005-01-13 11:47 - 2005-01-13 11:47 - 00049152 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ESPSUTL.dll
2013-03-03 23:47 - 2011-04-14 02:00 - 00105472 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FAUDIME.DLL
2013-03-03 23:47 - 2012-07-02 06:00 - 00178688 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FMAIIME.DLL
2013-03-03 23:47 - 2012-07-23 07:00 - 01526784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FUICIME.DLL
2013-03-03 16:41 - 2013-01-21 15:16 - 00891896 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00773968 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCR100.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00421200 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCP100.dll
2013-03-03 16:41 - 2013-01-22 14:55 - 01676312 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxcub.dll
2013-09-13 22:29 - 2013-06-27 19:58 - 00164352 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Mail_15642ee020d2449d86382022aa6f2548\7.2.103\mailcomm.dll
2013-09-13 22:30 - 2013-04-23 03:06 - 00090112 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\LanguageDetector.dll
2013-09-13 22:30 - 2012-02-01 16:15 - 01042432 _____ () C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\Blingext.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00162304 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchHistoryStore.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00140800 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchGhosting.dll
2013-05-02 07:46 - 2013-08-18 17:10 - 03551640 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) ==========
AlternateDataStreams: C:\ProgramData\TEMP:88050731
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (09/14/2013 09:15:05 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 00:51:16 PM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro assemblyIdentity1 se nezdařilo. Chyba v souboru manifestu nebo zásady assemblyIdentity2 na řádku assemblyIdentity3.
Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu version v prvku assemblyIdentity je neplatná.
Error: (09/14/2013 00:50:30 PM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro 1 se nezdařilo. Chyba v souboru manifestu nebo zásady 2 na řádku 3.
Kořenový prvek souboru manifestu musí být symbolická adresa.
Error: (09/14/2013 00:50:25 PM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/14/2013 11:39:00 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 15.0.4535.1000, časové razítko: 0x51de6fa2
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x004ad52c
ID chybujícího procesu: 0x4d8
Čas spuštění chybující aplikace: 0xWINWORD.EXE0
Cesta k chybující aplikaci: WINWORD.EXE1
Cesta k chybujícímu modulu: WINWORD.EXE2
ID zprávy: WINWORD.EXE3
Error: (09/14/2013 07:46:05 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 15.0.4535.1000, časové razítko: 0x51de6fa2
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0029daa4
ID chybujícího procesu: 0xd84
Čas spuštění chybující aplikace: 0xWINWORD.EXE0
Cesta k chybující aplikaci: WINWORD.EXE1
Cesta k chybujícímu modulu: WINWORD.EXE2
ID zprávy: WINWORD.EXE3
Error: (09/14/2013 07:42:33 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 02:31:47 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: firefox.exe, verze: 23.0.1.4974, časové razítko: 0x520bc252
Název chybujícího modulu: xul.dll, verze: 23.0.1.4974, časové razítko: 0x520bc166
Kód výjimky: 0xc0000005
Posun chyby: 0x0017af08
ID chybujícího procesu: 0x12c0
Čas spuštění chybující aplikace: 0xfirefox.exe0
Cesta k chybující aplikaci: firefox.exe1
Cesta k chybujícímu modulu: firefox.exe2
ID zprávy: firefox.exe3
Error: (09/14/2013 01:55:12 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 15.0.4535.1000, časové razítko: 0x51de6fa2
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x001dd854
ID chybujícího procesu: 0x12d8
Čas spuštění chybující aplikace: 0xWINWORD.EXE0
Cesta k chybující aplikaci: WINWORD.EXE1
Cesta k chybujícímu modulu: WINWORD.EXE2
ID zprávy: WINWORD.EXE3
Error: (09/14/2013 01:54:28 AM) (Source: Microsoft Security Client Setup) (User: Libor-PC)
Description: HRESULT:0x8004FF0A
Description:Upgrade installation canceled. To upgrade later, run the Security Essentials Upgrade Wizard again. Error code:0x8004FF0A.
System errors:
=============
Microsoft Office Sessions:
=========================
Error: (09/14/2013 09:15:05 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 00:51:16 PM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
Error: (09/14/2013 00:50:30 PM) (Source: SideBySide)(User: )
Description: C:\Program Files\WinZip\adxloader.dll.ManifestC:\Program Files\WinZip\adxloader.dll.Manifest2
Error: (09/14/2013 00:50:25 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\EPSON Software\Download Navigator\EPSDNLMW.EXE
Error: (09/14/2013 11:39:00 AM) (Source: Application Error)(User: )
Description: WINWORD.EXE15.0.4535.100051de6fa2unknown0.0.0.000000000c0000005004ad52c4d801ceb12e37fcc5beC:\Program Files\Microsoft Office 15\Root\Office15\WINWORD.EXEunknown7b6d25c8-1d21-11e3-84dc-5404a6627f89
Error: (09/14/2013 07:46:05 AM) (Source: Application Error)(User: )
Description: WINWORD.EXE15.0.4535.100051de6fa2unknown0.0.0.000000000c00000050029daa4d8401ceb10da95d26bbC:\Program Files\Microsoft Office 15\Root\Office15\WINWORD.EXEunknownf1f6a27d-1d00-11e3-84dc-5404a6627f89
Error: (09/14/2013 07:42:33 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 02:31:47 AM) (Source: Application Error)(User: )
Description: firefox.exe23.0.1.4974520bc252xul.dll23.0.1.4974520bc166c00000050017af0812c001ceb0dd891ef528C:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dll0974f1b8-1cd5-11e3-999b-5404a6627f89
Error: (09/14/2013 01:55:12 AM) (Source: Application Error)(User: )
Description: WINWORD.EXE15.0.4535.100051de6fa2unknown0.0.0.000000000c0000005001dd85412d801ceb0dca93228cbC:\Program Files\Microsoft Office 15\Root\Office15\WINWORD.EXEunknowned7fe8cf-1ccf-11e3-999b-5404a6627f89
Error: (09/14/2013 01:54:28 AM) (Source: Microsoft Security Client Setup)(User: Libor-PC)
Description: HRESULT:0x8004FF0A
Description:Upgrade installation canceled. To upgrade later, run the Security Essentials Upgrade Wizard again. Error code:0x8004FF0A.
==================== Memory info ===========================
Percentage of memory in use: 49%
Total physical RAM: 2013.12 MB
Available physical RAM: 1011.73 MB
Total Pagefile: 4026.23 MB
Available Pagefile: 2793.94 MB
Total Virtual: 2047.88 MB
Available Virtual: 1921.55 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:457.94 GB) (Free:361.35 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 6197B7D3)
Partition 1: (Active) - (Size=458 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=8 GB) - (Type=27)
==================== End Of Log ============================
Ran by Libor at 2013-09-14 23:04:40
Running from C:\Users\Libor\Desktop
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212)
Adobe AIR (Version: 1.5.3.9120)
Adobe Community Help (Version: 3.0.0)
Adobe Community Help (Version: 3.0.0.400)
Adobe Flash Player 11 ActiveX (Version: 11.8.800.174)
Adobe Flash Player 11 Plugin (Version: 11.8.800.168)
Adobe Media Player (Version: 1.8)
Adobe Photoshop CS5 (Version: 12.0)
Adobe Reader X (10.1.6) - Czech (Version: 10.1.6)
Any Video Converter 3.3.5
Bing Bar (Version: 7.2.241.0)
Canon ScanGear Starter
CCleaner (Version: 4.02)
D3DX10 (Version: 15.4.2368.0902)
Download Navigator (Version: 3.4.1)
Epson Easy Photo Print 2 (Version: 2.3.2.0)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (Version: 1.00.0000)
Epson Event Manager (Version: 3.01.0000)
EPSON Scan
EPSON XP-202 203 206 Series Printer Uninstall
EpsonNet Print (Version: 2.5.00)
Google Earth (Version: 7.0.3.8542)
Google Chrome (Version: 28.0.1500.95)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.5.4209.2358)
Google Update Helper (Version: 1.3.21.153)
Intel(R) Graphics Media Accelerator Driver (Version: 8.15.10.2189)
IrfanView (remove only) (Version: 4.32)
Junk Mail filter update (Version: 15.4.3502.0922)
Logitech Vid HD (Version: 7.2 (7259))
Logitech Webcam Software (Version: 12.10.1113)
Mesh Runtime (Version: 15.4.5722.2)
Messenger Companion (Version: 15.4.3502.0922)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (Version: 4.0.30319)
Microsoft Antimalware Service CS-CZ Language Pack (Version: 3.0.8402.2)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Office 365 Home Premium - cs-cz (Version: 15.0.4535.1004)
Microsoft PowerPoint Viewer (Version: 14.0.6029.1000)
Microsoft Security Client (Version: 4.2.0223.1)
Microsoft Security Client CS-CZ Language Pack (Version: 2.1.1116.0)
Microsoft Security Essentials (Version: 4.2.223.1)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SkyDrive (HKCU Version: 17.0.2003.1112)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft_VC80_ATL_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (Version: 8.0.50727.4053)
Microsoft_VC90_ATL_x86 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86 (Version: 1.00.0000)
Mozilla Firefox 23.0.1 (x86 cs) (Version: 23.0.1)
Mozilla Maintenance Service (Version: 23.0.1)
MSVCRT (Version: 15.4.2862.0708)
Nokia Connectivity Cable Driver (Version: 7.1.32.69)
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4535.1004)
Office 15 Click-to-Run Licensing Component (Version: 15.0.4535.1004)
Office 15 Click-to-Run Localization Component (Version: 15.0.4535.1004)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (Version: 15.4.5722.2)
PDF Architect (Version: 1.0.52.8917)
PDF Settings CS5 (Version: 10.0)
PdfConvertor
PDFCreator (Version: 1.6.2)
Příručka pro síť EPSON XP-202 203 206 Series
Realtek High Definition Audio Driver (Version: 6.0.1.6410)
Seznam Software
Skype Click to Call (Version: 6.11.13348)
Skype™ 6.0 (Version: 6.0.126)
Sonic Foundry ACID Pro 3.0 (Version: 3.0.189)
Sonic Foundry ACID Pro 3.0 Crack
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
Steinberg Cubase VST32
SUPER © v2012.build.51 (April 7, 2012) verze v2012.build.51 (Version: v2012.build.51)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Uživatelská příručka EPSON XP-202 203 206 Series
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3555.0308)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live Fotogalerie (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
WinRAR 4.01 (32-bit) (Version: 4.01.0)
WinZip 17.5 (Version: 17.5.10480)
==================== Restore Points =========================
19-08-2013 05:43:45 Windows Update
23-08-2013 10:08:25 Windows Update
26-08-2013 17:18:43 Windows Update
30-08-2013 18:00:39 Windows Update
03-09-2013 20:09:46 Windows Update
06-09-2013 20:58:26 Windows Update
10-09-2013 20:06:29 Windows Update
12-09-2013 08:05:19 Windows Update
12-09-2013 10:56:24 Windows Update
13-09-2013 23:36:57 Odebráno: Microsoft Office Klikni a spusť 2010
13-09-2013 23:42:37 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0D9B5D92-3A22-486D-A887-3AA21597CF27} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => Sc.exe start w32time task_started
Task: {0E842105-7F7C-4A07-A245-045372AA7765} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-01-27] (Microsoft Corporation)
Task: {102724B5-9F75-4F3A-B206-F0C84CF20CF0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02] (Google Inc.)
Task: {30A681F2-248E-4AEC-97DE-B44C94467DD9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd)
Task: {3E0487EA-EE99-47DA-B14B-F47241F96D1B} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-11] (Microsoft Corporation)
Task: {3EDAF3C8-0B66-4D01-87C4-22ACB0B3BF7A} - System32\Tasks\4685 => C:\Windows\System32\wscript.exe [2009-07-14] (Microsoft Corporation)
Task: {56B05C01-AFA9-46E4-BCEC-520747A074A8} - System32\Tasks\AdobeAAMUpdater-1.0-Libor-PC-Libor => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-12-15] (Adobe Systems Incorporated)
Task: {844D33FD-09F2-49CF-B875-3EFA83C9EBBB} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {A95C2115-FFDA-42AA-9C09-552C5C43BD2A} - System32\Tasks\0 => Iexplore.exe
Task: {B61AA539-9788-4726-9EB2-5F2146CA4F95} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\integratedoffice.exe [2013-07-21] (Microsoft Corporation)
Task: {C14761E8-0D9D-441D-804A-009704C9FFFE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2013-09-14] (Microsoft Corporation)
Task: {F333B598-D2FD-4551-BEA8-6F17A3FDB198} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-14] (Adobe Systems Incorporated)
Task: {FBDC6E79-7C55-4CA4-BD58-B82030A8468C} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {FF9AE215-6135-4B0E-8C11-1D723B84DD4A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-02] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2013-03-03 16:41 - 2012-09-13 15:45 - 00058424 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxloader.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00222712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\SkyDriveShell.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00534480 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCP110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00862664 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\MSVCR110.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00542712 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\Telemetry.dll
2013-09-14 01:53 - 2013-09-14 01:53 - 00039432 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2\logging.dll
2011-12-19 14:36 - 2010-07-29 05:24 - 00085504 _____ (Intel Corporation) C:\Windows\system32\igfxrCSY.lrc
2013-09-14 21:13 - 2009-10-07 02:47 - 00109080 _____ (Logitech Inc.) C:\Windows\TEMP\logishrd\LVPrcInj01.dll
2009-10-21 18:39 - 2009-10-21 18:39 - 00291328 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\LcMgr.dll
2011-04-14 10:16 - 2011-04-14 10:16 - 00136704 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\ScanEngine30.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00055808 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnMgr10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00206336 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnCom10.dll
2011-04-14 10:25 - 2011-04-14 10:25 - 00082944 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ScnEps25.dll
2011-11-25 18:47 - 2011-11-25 18:47 - 00110080 _____ (SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\epnsm.dll
2005-01-13 11:47 - 2005-01-13 11:47 - 00049152 _____ (SEIKO EPSON CORP.) C:\Program Files\EPSON Software\Event Manager\ESPSUTL.dll
2013-03-03 23:47 - 2011-04-14 02:00 - 00105472 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FAUDIME.DLL
2013-03-03 23:47 - 2012-07-02 06:00 - 00178688 _____ (SEIKO EPSON Corporation) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FMAIIME.DLL
2013-03-03 23:47 - 2012-07-23 07:00 - 01526784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FUICIME.DLL
2013-03-03 16:41 - 2013-01-21 15:16 - 00891896 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00773968 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCR100.dll
2013-03-03 16:41 - 2012-07-26 11:44 - 00421200 _____ (Microsoft Corporation) C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\MSVCP100.dll
2013-03-03 16:41 - 2013-01-22 14:55 - 01676312 _____ () C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\libfoxcub.dll
2013-09-13 22:29 - 2013-06-27 19:58 - 00164352 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Mail_15642ee020d2449d86382022aa6f2548\7.2.103\mailcomm.dll
2013-09-13 22:30 - 2013-04-23 03:06 - 00090112 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\LanguageDetector.dll
2013-09-13 22:30 - 2012-02-01 16:15 - 01042432 _____ () C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Translator_f5cbd3ef4c144434b17913278004e270\7.2.230\Blingext.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00162304 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchHistoryStore.dll
2013-09-13 22:30 - 2013-03-27 02:55 - 00140800 _____ (Microsoft Corporation.) C:\Users\Libor\AppData\Local\Microsoft\BingBar\Apps\Search_6f21d9007fa34bc78d94309126de58f5\7.2.232\SearchGhosting.dll
2013-05-02 07:46 - 2013-08-18 17:10 - 03551640 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) ==========
AlternateDataStreams: C:\ProgramData\TEMP:88050731
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (09/14/2013 09:15:05 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 00:51:16 PM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro assemblyIdentity1 se nezdařilo. Chyba v souboru manifestu nebo zásady assemblyIdentity2 na řádku assemblyIdentity3.
Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu version v prvku assemblyIdentity je neplatná.
Error: (09/14/2013 00:50:30 PM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro 1 se nezdařilo. Chyba v souboru manifestu nebo zásady 2 na řádku 3.
Kořenový prvek souboru manifestu musí být symbolická adresa.
Error: (09/14/2013 00:50:25 PM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (09/14/2013 11:39:00 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 15.0.4535.1000, časové razítko: 0x51de6fa2
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x004ad52c
ID chybujícího procesu: 0x4d8
Čas spuštění chybující aplikace: 0xWINWORD.EXE0
Cesta k chybující aplikaci: WINWORD.EXE1
Cesta k chybujícímu modulu: WINWORD.EXE2
ID zprávy: WINWORD.EXE3
Error: (09/14/2013 07:46:05 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 15.0.4535.1000, časové razítko: 0x51de6fa2
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0029daa4
ID chybujícího procesu: 0xd84
Čas spuštění chybující aplikace: 0xWINWORD.EXE0
Cesta k chybující aplikaci: WINWORD.EXE1
Cesta k chybujícímu modulu: WINWORD.EXE2
ID zprávy: WINWORD.EXE3
Error: (09/14/2013 07:42:33 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 02:31:47 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: firefox.exe, verze: 23.0.1.4974, časové razítko: 0x520bc252
Název chybujícího modulu: xul.dll, verze: 23.0.1.4974, časové razítko: 0x520bc166
Kód výjimky: 0xc0000005
Posun chyby: 0x0017af08
ID chybujícího procesu: 0x12c0
Čas spuštění chybující aplikace: 0xfirefox.exe0
Cesta k chybující aplikaci: firefox.exe1
Cesta k chybujícímu modulu: firefox.exe2
ID zprávy: firefox.exe3
Error: (09/14/2013 01:55:12 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: WINWORD.EXE, verze: 15.0.4535.1000, časové razítko: 0x51de6fa2
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x001dd854
ID chybujícího procesu: 0x12d8
Čas spuštění chybující aplikace: 0xWINWORD.EXE0
Cesta k chybující aplikaci: WINWORD.EXE1
Cesta k chybujícímu modulu: WINWORD.EXE2
ID zprávy: WINWORD.EXE3
Error: (09/14/2013 01:54:28 AM) (Source: Microsoft Security Client Setup) (User: Libor-PC)
Description: HRESULT:0x8004FF0A
Description:Upgrade installation canceled. To upgrade later, run the Security Essentials Upgrade Wizard again. Error code:0x8004FF0A.
System errors:
=============
Microsoft Office Sessions:
=========================
Error: (09/14/2013 09:15:05 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 00:51:16 PM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3
Error: (09/14/2013 00:50:30 PM) (Source: SideBySide)(User: )
Description: C:\Program Files\WinZip\adxloader.dll.ManifestC:\Program Files\WinZip\adxloader.dll.Manifest2
Error: (09/14/2013 00:50:25 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\EPSON Software\Download Navigator\EPSDNLMW.EXE
Error: (09/14/2013 11:39:00 AM) (Source: Application Error)(User: )
Description: WINWORD.EXE15.0.4535.100051de6fa2unknown0.0.0.000000000c0000005004ad52c4d801ceb12e37fcc5beC:\Program Files\Microsoft Office 15\Root\Office15\WINWORD.EXEunknown7b6d25c8-1d21-11e3-84dc-5404a6627f89
Error: (09/14/2013 07:46:05 AM) (Source: Application Error)(User: )
Description: WINWORD.EXE15.0.4535.100051de6fa2unknown0.0.0.000000000c00000050029daa4d8401ceb10da95d26bbC:\Program Files\Microsoft Office 15\Root\Office15\WINWORD.EXEunknownf1f6a27d-1d00-11e3-84dc-5404a6627f89
Error: (09/14/2013 07:42:33 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/14/2013 02:31:47 AM) (Source: Application Error)(User: )
Description: firefox.exe23.0.1.4974520bc252xul.dll23.0.1.4974520bc166c00000050017af0812c001ceb0dd891ef528C:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dll0974f1b8-1cd5-11e3-999b-5404a6627f89
Error: (09/14/2013 01:55:12 AM) (Source: Application Error)(User: )
Description: WINWORD.EXE15.0.4535.100051de6fa2unknown0.0.0.000000000c0000005001dd85412d801ceb0dca93228cbC:\Program Files\Microsoft Office 15\Root\Office15\WINWORD.EXEunknowned7fe8cf-1ccf-11e3-999b-5404a6627f89
Error: (09/14/2013 01:54:28 AM) (Source: Microsoft Security Client Setup)(User: Libor-PC)
Description: HRESULT:0x8004FF0A
Description:Upgrade installation canceled. To upgrade later, run the Security Essentials Upgrade Wizard again. Error code:0x8004FF0A.
==================== Memory info ===========================
Percentage of memory in use: 49%
Total physical RAM: 2013.12 MB
Available physical RAM: 1011.73 MB
Total Pagefile: 4026.23 MB
Available Pagefile: 2793.94 MB
Total Virtual: 2047.88 MB
Available Virtual: 1921.55 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:457.94 GB) (Free:361.35 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 6197B7D3)
Partition 1: (Active) - (Size=458 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=8 GB) - (Type=27)
==================== End Of Log ============================
Re: Prosím o kontrolu logu
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start KCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe [1009288 2012-09-13] () HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92152 2013-01-22] () HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-05-04] (Google Inc.) SearchScopes: HKLM - DefaultScope value is missing. BHO: No Name - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - No File CHR DefaultSearchURL: (Delta Search) - http://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=08855404A6627F89&affID=119943&tsp=5004 CHR DefaultSuggestURL: (Delta Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION 2013-09-13 22:54 - 2013-09-13 22:54 - 00781383 _____ C:\Users\Libor\Downloads\RSIT(2).exe 2013-09-14 00:27 - 2013-09-14 00:27 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(4).exe 2013-09-14 00:15 - 2013-09-14 00:15 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(3).exe AlternateDataStreams: C:\ProgramData\TEMP:88050731 Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Hosts: CMD: shutdown /r /f /t 2 End- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST
- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
Re: Prosím o kontrolu logu
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 13-09-2013 04
Ran by Libor at 2013-09-14 23:29:51 Run:3
Running from C:\Users\Libor\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
KCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe [1009288 2012-09-13] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92152 2013-01-22] ()
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-05-04] (Google Inc.)
SearchScopes: HKLM - DefaultScope value is missing.
BHO: No Name - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - No File
CHR DefaultSearchURL: (Delta Search) - http://www2.delta-search.com/?q={search ... 3&tsp=5004
CHR DefaultSuggestURL: (Delta Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
2013-09-13 22:54 - 2013-09-13 22:54 - 00781383 _____ C:\Users\Libor\Downloads\RSIT(2).exe
2013-09-14 00:27 - 2013-09-14 00:27 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(4).exe
2013-09-14 00:15 - 2013-09-14 00:15 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(3).exe
AlternateDataStreams: C:\ProgramData\TEMP:88050731
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7825CFB6-490A-436B-9F26-4A7B5CFC01A9} => Key deleted successfully.
HKCR\CLSID\{7825CFB6-490A-436B-9F26-4A7B5CFC01A9} => Key not found.
CHR DefaultSearchURL: (Delta Search) - http://www2.delta-search.com/?q={search ... 3&tsp=5004 ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSuggestURL: (Delta Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} ==> The Chrome "Settings" can be used to fix the entry.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
HKCU\SOFTWARE\Policies\Google => Key deleted successfully.
C:\Users\Libor\Downloads\RSIT(2).exe => Moved successfully.
C:\Users\Libor\Downloads\adwcleaner(4).exe => Moved successfully.
C:\Users\Libor\Downloads\adwcleaner(3).exe => Moved successfully.
C:\ProgramData\TEMP => ":88050731" ADS removed successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Ran by Libor at 2013-09-14 23:29:51 Run:3
Running from C:\Users\Libor\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
KCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Libor\AppData\Roaming\Seznam.cz\szninstall.exe [1009288 2012-09-13] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Libor\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92152 2013-01-22] ()
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-05-04] (Google Inc.)
SearchScopes: HKLM - DefaultScope value is missing.
BHO: No Name - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - No File
CHR DefaultSearchURL: (Delta Search) - http://www2.delta-search.com/?q={search ... 3&tsp=5004
CHR DefaultSuggestURL: (Delta Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
2013-09-13 22:54 - 2013-09-13 22:54 - 00781383 _____ C:\Users\Libor\Downloads\RSIT(2).exe
2013-09-14 00:27 - 2013-09-14 00:27 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(4).exe
2013-09-14 00:15 - 2013-09-14 00:15 - 01037278 _____ C:\Users\Libor\Downloads\adwcleaner(3).exe
AlternateDataStreams: C:\ProgramData\TEMP:88050731
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7825CFB6-490A-436B-9F26-4A7B5CFC01A9} => Key deleted successfully.
HKCR\CLSID\{7825CFB6-490A-436B-9F26-4A7B5CFC01A9} => Key not found.
CHR DefaultSearchURL: (Delta Search) - http://www2.delta-search.com/?q={search ... 3&tsp=5004 ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSuggestURL: (Delta Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} ==> The Chrome "Settings" can be used to fix the entry.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
HKCU\SOFTWARE\Policies\Google => Key deleted successfully.
C:\Users\Libor\Downloads\RSIT(2).exe => Moved successfully.
C:\Users\Libor\Downloads\adwcleaner(4).exe => Moved successfully.
C:\Users\Libor\Downloads\adwcleaner(3).exe => Moved successfully.
C:\ProgramData\TEMP => ":88050731" ADS removed successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Re: Prosím o kontrolu logu
Jak se chova PC 
Re: Prosím o kontrolu logu
Vypadá to dobře, žádný problém
Re: Prosím o kontrolu logu
Tak jeste uklidime
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC
- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte
Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy
Re: Prosím o kontrolu logu
Hotovo...děkuju za pomoc 




Přispějete na provoz fóra?