Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola logu - vyskakovací okna

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
zdek
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 15 říj 2009 21:34

Kontrola logu - vyskakovací okna

#1 Příspěvek od zdek »

Zdravím,
poslední dobou mě neustále otravují vyskakovací okna, takže si myslím, že se mi nějaká havěť dostala do PC. Z vyčtení fór jsem si stáhnul a nainstaloval AdBlock, ale ani ten vyskakování oken nezabránil. Přikládám tedy log z RSIT a doufám, že to nějak vyřešíme, předem děkuji


Logfile of random's system information tool 1.09 (written by random/random)
Run by Zdeněk at 2013-10-16 16:02:49
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 994 MB (0%) free of 455 GB
Total RAM: 3835 MB (32% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:02:57, on 16.10.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16720)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\GIGABYTE\GIGABYTE Sim Series7\Mouse.exe
C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Webteh\BSplayer\bsplayer.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Zdeněk.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1:9421;<local>
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll
O2 - BHO: HP SimplePass Identity Protection Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files (x86)\DigitalPersona\Bin\dpotspluginie8.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: EEbooakkBrOOwsE - {9A6D88B6-E6B4-F283-D89D-C032BDD1007D} - C:\ProgramData\EEbooakkBrOOwsE\51b1dff439aff.dll
O2 - BHO: coonttinnuietosAvue - {A7D2C95D-7208-D4C9-65BC-9E7AFEAF3004} - C:\ProgramData\coonttinnuietosAvue\51b1dfece5b02.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
O4 - HKLM\..\Run: [GIGABYTEMOUSE] C:\Program Files (x86)\GIGABYTE\GIGABYTE Sim Series7\Mouse.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/202
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Users\Zdeněk\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Zdeněk\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Se&nd to OneNote - res:///105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\Skype4COM.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BitComet Disk Boost Service (BITCOMET_HELPER_SERVICE) - www.BitComet.com - C:\Program Files (x86)\BitComet\tools\BitCometService.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @C:\Program Files\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\SwSetup\QuickWeb\QW.SYS\config\DVMExportService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: HPWMISVC - Unknown owner - C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Správce úloh aplikace Autodesk Moldflow Inventor Tool Suite Integration 2012 (mitsijm2012) - Autodesk, Inc. - C:\Program Files\Autodesk\Inventor 2012\Moldflow\bin\mitsijm.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 16644 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\STacSV64.exe
C:\Windows\system32\Hpservice.exe
atieclxx
C:\Windows\system32\vcsFPService.exe
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 3152560
\??\C:\Windows\system32\conhost.exe "349029412-33532224-165798275420366041071724247249-421688965-1044480876979885663
C:\Windows\System32\spoolsv.exe
"C:\Program Files\DigitalPersona\Bin\DpHostW.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\AESTSr64.exe
C:\Windows\SysWOW64\svchost.exe -k Akamai
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Java\jre6\bin\jusched.exe"
"C:\Program Files\Hewlett-Packard\HPToneControl\HPToneCtl.exe"
"C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" /background
"C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe"
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:/Users/Zdeněk/AppData/Local/Akamai/netsession_win.exe" --client
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\SwSetup\QuickWeb\QW.SYS\config\DVMExportService.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\GIGABYTE\GIGABYTE Sim Series7\Mouse.exe"
"C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
C:\Windows\SysWOW64\ezSharedSvcHost.exe
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc" /escort 3564
"C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"C:\Program Files\Autodesk\Inventor 2012\Moldflow\bin\mitsijm.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4104
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc" /escort 4364
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-207a84eb-26ca-4a6b-83aa-f72a35948b7b -SystemEventPortName:HostProcess-73260aef-662b-4a3c-9986-1da9ce302e19 -IoCancelEventPortName:HostProcess-6a8d672c-c102-40ea-84cc-bb0de25e7c17 -NonStateChangingEventPortName:HostProcess-80982136-166d-40dd-acd6-9b517f580ef6 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:26eb121a-901c-4d26-8c93-7fe0ed7fe75a -DeviceGroupId:WpdFsGroup
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5740.0.682739665\934176337" --disable-image-transport-surface --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,18,24,26 --reduce-gpu-sandbox --gpu-vendor-id=0x1002 --gpu-device-id=0x68c1 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.712.1.2000 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.2.1097525959\948450178" /prefetch:673131151
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.3.1229169513\759125761" /prefetch:673131151
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.4.226883443\92360976" /prefetch:673131151
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5740.5.987796690\1972391555" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: Off</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_off.ico</IconPath><ID>51746302</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.13.1259908577\1628649541" /prefetch:673131151
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.14.80673788\783922041" /prefetch:673131151
"C:\Program Files (x86)\Webteh\BSplayer\bsplayer.exe"
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --instant-process --enable-threaded-compositing --disable-html-notifications --channel="5740.21.1803545228\495082724" /prefetch:673131151
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.25.1083926916\1354507701" /prefetch:673131151
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.30.1493688360\783640817" /prefetch:673131151
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.31.1517705775\1466606117" /prefetch:673131151
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.32.1807859375\1858479170" /prefetch:673131151
taskeng.exe {0A471911-2818-4AB9-8125-0E6C2B84149F}
taskeng.exe {93F76AE7-B4F9-441A-9EF0-8929F303503E}
"C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/PP_EnableZeroSuggest_R1_ExperimentB/CookieRetentionPriorityStudy/ExperimentOn/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group6 pct:10e stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-1-Percent/group_28/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_04/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5740.33.1775736977\1273968674" /prefetch:673131151
"C:\Users\Zdeněk\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA.job
C:\Windows\tasks\HPCeeScheduleForZdeněk.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}:6.0.33, {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}:6.0.35, {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}:6.0.37, {CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}:6.0.38, fbchathistory@firechm.com:1.2, testpilot@labs.mozilla.com:1.1, {35379F86-8CCB-4724-AE33-4278DE266C70}:1.0.5, {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1, {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.25, {BAEBEF65-9289-47c5-8524-C345CC5D860D}:1.9, {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.5, otis@digitalpersona.com:5.0.0.4248, {BBDA0591-3099-440a-AA10-41764D9DB4DB}:3.0, {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}:2010.9.0.6, vinceturk@gmail.com:2.6.0.715, bx3_fo@owg-ufn.org:3.9, fhjqu@iueu-.net:4.20, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.117 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18]
"Description"=Veetle TV Core
"Path"=C:\Program Files (x86)\Veetle\plugins\npVeetle.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18]
"Description"=Veetle TV Player
"Path"=C:\Program Files (x86)\Veetle\Player\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.117 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIBitCometAgent.xpt
nsIFillerPlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
npBitCometAgent.dll
npfiller.dll
NPOFF12.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\extensions\
bx3_fo@owg-ufn.org
fhjqu@iueu-.net
{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}-trash
{e4a8a97b-f2ed-450b-b12d-ee082ba24781}

C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\
icq-search.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-08-30 245592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP SimplePass Identity Protection Extension - C:\Program Files\DigitalPersona\Bin\dpotspluginie8.dll [2009-12-30 2213128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-05-15 43520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000123B4-9B42-4900-B3F7-F4B073EFC214}]
Octh Class - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll [2010-10-18 237644]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
HP SimplePass Identity Protection Extension - C:\Program Files (x86)\DigitalPersona\Bin\dpotspluginie8.dll [2009-12-30 1262856]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-06-23 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-08-30 201784]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9A6D88B6-E6B4-F283-D89D-C032BDD1007D}]
EEbooakkBrOOwsE - C:\ProgramData\EEbooakkBrOOwsE\51b1dff439aff.dll [2013-06-07 118272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7D2C95D-7208-D4C9-65BC-9E7AFEAF3004}]
coonttinnuietosAvue - C:\ProgramData\coonttinnuietosAvue\51b1dfece5b02.dll [2013-06-07 118272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-02-28 1089288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-06-23 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-08-30 245592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{C55BBCD6-41AD-48AD-9953-3609C48EACC7} - Grab Pro - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll [2010-10-18 684032]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-02-28 1089288]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-08-30 201784]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-04-10 2104104]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-02-01 487424]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-05-15 172032]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-01-27 8192]
"HPToneControl"=C:\Program Files\Hewlett-Packard\HPToneControl\HPTonectl.exe [2009-08-19 107832]
"SmartMenu"=C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [2010-01-20 611896]
"HP Quick Launch"=C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2010-01-18 451072]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-08-12 1356240]
"VDownloader"=C:\Program Files\VDownloader\VDownloader.exe [2012-12-20 879104]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2010-01-22 2363392]
"Akamai NetSession Interface"=C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe [2013-06-05 4489472]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2009-07-14 427520]
"Google Update"=C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-11 136176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX400 Series]
C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEGE.EXE [2007-12-17 221696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-11 136176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\T-Mobile Communication Centre]
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Zdeněk^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^VMLoad.lnk]
C:\Users\ZDENK~1\AppData\Roaming\VMLoad\VMLoad.exe [2011-09-22 41984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-04-16 98304]
"Easybits Recovery"=C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [2010-01-25 61112]
""= []
"GIGABYTEMOUSE"=C:\Program Files (x86)\GIGABYTE\GIGABYTE Sim Series7\Mouse.exe [2009-11-26 1278464]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-08-30 4858968]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-10-01 2345296]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{E54729E8-BB3D-4270-9D49-7389EA579090}"=C:\Windows\SysWow64\EZUPBH~1.DLL [2010-05-15 52920]
"UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"= []
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableLockWorkstation"=0
"DisableChangePassword"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"HideFastUserSwitching"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Orbitdownloader\orbitdm.exe"="C:\Program Files (x86)\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit"
"C:\Program Files (x86)\Orbitdownloader\orbitnet.exe"="C:\Program Files (x86)\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2013-10-09 12:23:58 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-10-09 12:23:58 ----A---- C:\Windows\system32\ieui.dll
2013-10-09 12:23:56 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-10-09 12:23:55 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-10-09 12:23:55 ----A---- C:\Windows\system32\iesetup.dll
2013-10-09 12:23:55 ----A---- C:\Windows\system32\iernonce.dll
2013-10-09 12:23:54 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-10-09 12:23:54 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-10-09 12:23:54 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-09 12:23:54 ----A---- C:\Windows\system32\iesysprep.dll
2013-10-09 12:23:54 ----A---- C:\Windows\system32\ie4uinit.exe
2013-10-09 12:23:53 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-10-09 12:23:52 ----A---- C:\Windows\system32\iertutil.dll
2013-10-09 12:23:49 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-10-09 12:23:49 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-09 12:23:48 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-10-09 12:23:48 ----A---- C:\Windows\system32\jscript.dll
2013-10-09 12:23:46 ----A---- C:\Windows\system32\jscript9.dll
2013-10-09 12:23:45 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-10-09 12:23:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-10-09 12:23:43 ----A---- C:\Windows\system32\urlmon.dll
2013-10-09 12:23:41 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-09 12:23:40 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-10-09 12:23:40 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-10-09 12:23:38 ----A---- C:\Windows\system32\wininet.dll
2013-10-09 12:23:37 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-10-09 12:23:35 ----A---- C:\Windows\system32\ieframe.dll
2013-10-09 12:23:32 ----A---- C:\Windows\system32\mshtml.dll
2013-10-09 12:23:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-10-09 11:15:04 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2013-10-09 09:36:34 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-10-09 09:36:34 ----A---- C:\Windows\system32\comctl32.dll
2013-10-09 09:36:31 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-10-09 09:36:31 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-10-09 09:36:31 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-10-09 09:36:31 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-10-09 09:36:31 ----A---- C:\Windows\system32\lpk.dll
2013-10-09 09:36:31 ----A---- C:\Windows\system32\fontsub.dll
2013-10-09 09:36:31 ----A---- C:\Windows\system32\dciman32.dll
2013-10-09 09:36:31 ----A---- C:\Windows\system32\atmfd.dll
2013-10-09 09:36:30 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-10-09 09:36:30 ----A---- C:\Windows\system32\atmlib.dll
2013-10-09 09:36:29 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-10-09 09:36:28 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-10-09 09:36:27 ----A---- C:\Windows\system32\drivers\usbscan.sys
2013-10-09 09:36:27 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-10-09 09:36:27 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-10-09 09:36:26 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-10-09 09:36:26 ----A---- C:\Windows\system32\WebClnt.dll
2013-10-09 09:36:25 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-10-09 09:36:25 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-10-09 09:36:25 ----A---- C:\Windows\system32\davclnt.dll
2013-10-09 09:36:24 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-10-09 09:36:23 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-10-09 09:36:23 ----A---- C:\Windows\system32\mswsock.dll
2013-10-09 09:36:23 ----A---- C:\Windows\system32\drivers\afd.sys
2013-10-09 09:36:21 ----A---- C:\Windows\system32\win32k.sys
2013-10-09 09:36:17 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-10-09 09:36:15 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-10-09 09:36:14 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-10-09 09:36:12 ----A---- C:\Windows\system32\advapi32.dll
2013-10-09 09:36:11 ----A---- C:\Windows\system32\tdh.dll
2013-10-09 09:36:11 ----A---- C:\Windows\system32\ntdll.dll
2013-10-09 09:36:10 ----A---- C:\Windows\SYSWOW64\tdh.dll
2013-10-09 09:36:10 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-10-09 09:36:09 ----A---- C:\Windows\system32\wow64.dll
2013-10-09 09:36:08 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-10-09 09:36:07 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-10-09 09:36:06 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-10-09 09:36:06 ----A---- C:\Windows\SYSWOW64\user.exe
2013-10-09 09:36:06 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-10-09 09:36:06 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-10-09 09:35:52 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 09:35:52 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 09:35:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-10-09 09:35:50 ----A---- C:\Windows\system32\scavengeui.dll
2013-10-09 09:35:36 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-10-09 09:35:36 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-10-09 09:35:35 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-10-09 09:35:35 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-10-09 09:35:35 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-10-09 09:35:35 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-10-09 09:35:34 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-10-03 06:25:34 ----D---- C:\ProgramData\LogMeIn
2013-10-02 22:04:54 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-09-25 16:24:16 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-09-25 16:24:15 ----A---- C:\Windows\system32\drivers\aswSP.sys
2013-09-25 16:24:10 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2013-09-25 16:24:09 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-09-25 16:24:08 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-09-25 16:24:05 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-09-25 16:24:04 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-09-25 16:24:02 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-09-25 16:23:11 ----A---- C:\Windows\avastSS.scr
2013-09-24 16:50:50 ----SD---- C:\Windows\SYSWOW64\Microsoft
2013-09-24 15:25:30 ----A---- C:\Windows\system32\aswBoot.exe
2013-09-24 15:23:52 ----D---- C:\Program Files\AVAST Software
2013-09-24 15:23:08 ----D---- C:\ProgramData\AVAST Software

======List of files/folders modified in the last 1 month======

2013-10-16 16:02:53 ----D---- C:\Program Files\trend micro
2013-10-16 14:51:05 ----D---- C:\Windows\temp
2013-10-16 14:19:48 ----D---- C:\Windows\system32\config
2013-10-16 14:13:58 ----D---- C:\Windows\System32
2013-10-16 14:13:58 ----D---- C:\Windows\inf
2013-10-16 14:13:58 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-10-16 09:39:27 ----SHD---- C:\System Volume Information
2013-10-15 23:52:13 ----D---- C:\Windows\system32\catroot
2013-10-15 23:51:45 ----SHD---- C:\Windows\Installer
2013-10-15 23:51:23 ----D---- C:\Windows
2013-10-15 23:51:19 ----AD---- C:\Windows\system32\drivers
2013-10-15 23:51:14 ----D---- C:\Program Files\Microsoft Security Client
2013-10-15 23:51:14 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-10-15 22:34:23 ----D---- C:\Windows\Tasks
2013-10-15 22:34:23 ----D---- C:\Windows\system32\Tasks
2013-10-15 18:26:19 ----D---- C:\ProgramData\Recovery
2013-10-12 21:50:09 ----RSD---- C:\Windows\assembly
2013-10-12 21:50:09 ----D---- C:\Windows\Microsoft.NET
2013-10-09 13:11:47 ----D---- C:\Windows\winsxs
2013-10-09 13:07:22 ----D---- C:\Windows\SysWOW64
2013-10-09 13:07:21 ----D---- C:\Program Files (x86)\Internet Explorer
2013-10-09 13:07:20 ----D---- C:\Program Files\Internet Explorer
2013-10-09 13:07:17 ----D---- C:\Windows\AppPatch
2013-10-09 13:07:14 ----D---- C:\Windows\system32\cs-CZ
2013-10-09 13:07:12 ----D---- C:\Windows\system32\DriverStore
2013-10-09 13:04:48 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-10-09 12:26:25 ----D---- C:\ProgramData\Microsoft Help
2013-10-09 12:24:16 ----D---- C:\Windows\system32\catroot2
2013-10-09 12:21:40 ----D---- C:\Program Files\Microsoft Silverlight
2013-10-09 12:18:23 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-10-09 12:04:46 ----D---- C:\Windows\system32\MRT
2013-10-09 12:04:41 ----A---- C:\Windows\system32\MRT.exe
2013-10-09 11:15:32 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-10-08 15:31:43 ----D---- C:\ProgramData\IObit
2013-10-03 06:25:34 ----D---- C:\ProgramData
2013-10-02 22:04:54 ----RD---- C:\Program Files (x86)
2013-10-01 18:05:53 ----D---- C:\Windows\Prefetch
2013-09-27 17:24:48 ----D---- C:\Program Files (x86)\SafeQ
2013-09-25 17:14:08 ----D---- C:\ProgramData\coonttinnuietosAvue
2013-09-24 18:40:22 ----D---- C:\Games
2013-09-24 15:31:29 ----D---- C:\ProgramData\Norton
2013-09-24 15:23:52 ----RD---- C:\Program Files
2013-09-24 15:13:48 ----D---- C:\Program Files\Common Files
2013-09-23 07:24:57 ----D---- C:\Windows\system32\NDF
2013-09-17 11:53:35 ----D---- C:\Users\Zdeněk\AppData\Roaming\DAEMON Tools Lite

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-08-30 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-08-30 204880]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-08-24 16440]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-06-18 247216]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-09-20 526392]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-08-30 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-08-30 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-08-30 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-08-30 64288]
R1 DVMIO;DeviceVM IO Service; C:\Windows\system32\DRIVERS\dvmio.sys [2009-11-11 20056]
R1 truecrypt;truecrypt; C:\Windows\System32\drivers\truecrypt.sys [2010-10-11 230352]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 acedrv11;acedrv11; \??\C:\Windows\system32\drivers\acedrv11.sys [2010-02-24 191616]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-08-30 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-08-30 80816]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-02-01 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2011-02-01 43680]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-06-18 139616]
R3 Accelerometer;HP Accelerometer; C:\Windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atipmdag.sys [2010-04-16 6403584]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-04-16 188928]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-01-28 116736]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-07-30 3058168]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2013-05-12 33344]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-02-09 239136]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-11-28 295424]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt64.sys [2010-02-01 505856]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-04-10 315440]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S1 acedrv07;acedrv07; \??\C:\Windows\system32\drivers\acedrv07.sys [2010-10-22 125440]
S2 Nsynas32;Nsynas32; C:\Windows\system32\drivers\Nsynas32.sys []
S3 AF15BDA;AF9015 BDA Device; C:\Windows\system32\DRIVERS\AF15BDA.sys [2010-11-20 507392]
S3 AVerAF35;HP USB DVB-T TV Tuner; C:\Windows\System32\Drivers\HPAF35.sys [2009-10-19 511104]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\Windows\system32\drivers\btwampfl.sys [2010-02-04 328232]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-02-04 102440]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2010-02-04 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-02-04 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-02-04 21544]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [2009-10-02 26240]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 48488]
S3 HPIR;HP TV Tuner Infrared Receiver; C:\Windows\system32\DRIVERS\HPIR.sys [2009-11-16 93184]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-09-10 117248]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-10-12 114304]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\AESTSr64.exe [2009-03-03 89600]
R2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-04-16 202752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-08-30 46808]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-01-28 920352]
R2 DpHost;@C:\Program Files\DigitalPersona\Bin\DpHostW.exe,-128; C:\Program Files\DigitalPersona\Bin\DpHostW.exe [2009-12-30 444680]
R2 DvmMDES;DeviceVM Meta Data Export Service; C:\SwSetup\QuickWeb\QW.SYS\config\DVMExportService.exe [2010-03-05 338168]
R2 ezSharedSvc;Easybits Services for Windows; C:\Windows\syswow64\ezSharedSvcHost.exe [2010-01-25 514232]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-10-01 2746704]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2009-10-15 120832]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-01-27 102968]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2009-07-08 30520]
R2 HPWMISVC;HPWMISVC; C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-01-18 20480]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2010-01-22 73728]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 mitsijm2012;Správce úloh aplikace Autodesk Moldflow Inventor Tool Suite Integration 2012; C:\Program Files\Autodesk\Inventor 2012\Moldflow\bin\mitsijm.exe [2010-12-08 848184]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-08-12 23808]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-12-22 75136]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\STacSV64.exe [2010-02-01 244736]
R2 TeamViewer6;TeamViewer 6; C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2010-12-07 2228008]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2010-01-06 2184496]
R3 hpqwmiex;hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2010-02-08 230968]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-08-12 366600]
S2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2010-11-29 85096]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-02-28 183560]
S3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service; C:\Program Files (x86)\BitComet\tools\BitCometService.exe [2010-12-28 1296728]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-11-10 1431888]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe [2010-01-04 238328]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-07-13 129976]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-02-05 541608]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-10-10 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kontrola logu - vyskakovací okna

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zdek
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 15 říj 2009 21:34

Re: Kontrola logu - vyskakovací okna

#3 Příspěvek od zdek »

Tak Junkware Removal Tool mi nešel ani nainstalovat, co mi to píše je v příloze, log z AdwCleaner:

# AdwCleaner v3.008 - Report created 17/10/2013 at 06:43:27
# Updated 17/10/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Zdeněk - ZDENĚK-PC
# Running from : C:\Users\Zdeněk\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : DvmMDES

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\StarApp
Folder Deleted : C:\ProgramData\coonttinnuietosAvue
Folder Deleted : C:\ProgramData\EEbooakkBrOOwsE
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\coonttinnuietosAvue
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EEbooakkBrOOwsE
Folder Deleted : C:\Program Files (x86)\GadgetBox
Folder Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{ACAA314B-EEBA-48E4-AD47-84E31C44796C}
Folder Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\fhjqu@iueu-.net
File Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\GadgetBox.xml
File Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icqplugin-9.xml
File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [fhjqu@iueu-.net]
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HPSF_Tasks_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HPSF_Tasks_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SP_57da8c42
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_camstudio_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_camstudio_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9A6D88B6-E6B4-F283-D89D-C032BDD1007D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3E288F79-03E4-4983-A48E-0D879B51FF19}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9A6D88B6-E6B4-F283-D89D-C032BDD1007D}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{01BD49D7-C76B-4310-8BEB-14D7E5F322C6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{01BD49D7-C76B-4310-8BEB-14D7E5F322C6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\AppDataLow\SProtector
Key Deleted : HKLM\Software\DeviceVM
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\SP Global
Key Deleted : HKLM\Software\SProtector
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sweetpacks Bundle Uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E5B7E1B4-21FC-6765-A3D7-BA0416DC6AF7}
Key Deleted : [x64] HKLM\SOFTWARE\DeviceVM
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\gadget~1\sprote~1.dll

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v12.0 (cs)

[ File : C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\prefs.js ]

Line Deleted : user_pref("browser.startup.homepage", "hxxp://search.gboxapp.com/?pid=388&src=ff1&r=2013/10/17&hid=16233675780511719039&lg=EN&cc=CZ");
Line Deleted : user_pref("browser.search.order.1", "GadgetBox");
Line Deleted : user_pref("browser.search.defaultenginename", "GadgetBox");
Line Deleted : user_pref("browser.search.selectedEngine", "GadgetBox");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.gboxapp.com/?pid=388&src=ff2&r=2013/10/17&hid=16233675780511719039&lg=EN&cc=CZ&q=");
Line Deleted : user_pref("browser.search.order.1,S", "GadgetBox");
Line Deleted : user_pref("browser.search.defaultenginename,S", "GadgetBox");
Line Deleted : user_pref("browser.search.selectedEngine,S", "GadgetBox");
Line Deleted : user_pref("keyword.URL", "hxxp://search.gboxapp.com/?pid=388&src=ff2&r=2013/10/17&hid=16233675780511719039&lg=EN&cc=CZ&q=");

-\\ Google Chrome v

[ File : C:\Users\Zdeněk\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage
Deleted : urls_to_restore_on_startup

*************************

AdwCleaner[R0].txt - [6768 octets] - [17/10/2013 06:41:44]
AdwCleaner[S0].txt - [6212 octets] - [17/10/2013 06:43:27]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6272 octets] ##########
Přílohy
nejde box.jpg
nejde box.jpg (46.3 KiB) Zobrazeno 5430 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kontrola logu - vyskakovací okna

#4 Příspěvek od vyosek »

:arrow: Tak to nevim co za JRT jste stahl, jelikoz ten na ktery jsem odkazal se takto vubec nechova a zadny takovy instalator nema...

:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zdek
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 15 říj 2009 21:34

Re: Kontrola logu - vyskakovací okna

#5 Příspěvek od zdek »

log MBAM:

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.10.17.03

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16721
Zdeněk :: ZDENĚK-PC [administrátor]

17.10.2013 12:15:24
MBAM-log-2013-10-17 (18-12-39).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 754144
Uplynulý čas: 4 hodin, 22 minut, 21 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9322CCE6-6402-F820-5939-63C86BF73116} (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3A78F57B-71AA-2326-4871-35824F54B0C2} (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C576AD4A-3A84-D4AC-EA34-D841FB0B7E7F} (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4D37C485-04ED-F6FB-860F-742C6D7ED41C} (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 27
C:\AdwCleaner\Quarantine\C\Program Files (x86)\GadgetBox\sprotector.dll.vir (PUP.Optional.SProtect.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\coonttinnuietosAvue\51b1dfece5b02.dll.vir (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\coonttinnuietosAvue\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\EEbooakkBrOOwsE\51b1dff439aff.dll.vir (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\ProgramData\EEbooakkBrOOwsE\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{6FB96924-69EE-4567-A78C-21CCB45A4BD2}\Setup.exe (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{6FB96924-69EE-4567-A78C-21CCB45A4BD2}\TsuDll.dll (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{D8287A2A-DFA3-47B7-A55C-978103CB58DC}\Setup.exe (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{D8287A2A-DFA3-47B7-A55C-978103CB58DC}\TsuDll.dll (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{F3D47C05-D2B7-4EE1-AC0A-9A9528375EF3}\Custom.dll (Trojan.MSIL.Injector) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{F3D47C05-D2B7-4EE1-AC0A-9A9528375EF3}\Setup.exe (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{F3D47C05-D2B7-4EE1-AC0A-9A9528375EF3}\TsuDll.dll (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{F701141C-8EDD-4ED4-AC3F-C6FF2CE236EA}\Setup.exe (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{F701141C-8EDD-4ED4-AC3F-C6FF2CE236EA}\TsuDll.dll (PUP.Optional.Tarma.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J7PT18EM\search_defender_166[1].exe (PUP.Optional.SProtect.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Desktop\http---thisisudax.org-downloads-JRT.exe.exe (PUP.Optional.InstalleRex) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\.torrent.exe (PUP.BundleInstaller.DW) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\CheatEngine62.exe (PUP.Optional.Somoto) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\ETS2 keygen.exe (PUP.RiskwareTool.CK.gen) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\Euro-Truck-Simulator-2-KEYGEN-(eurotruck).zip (PUP.RiskwareTool.CK.gen) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\Nepotvrzeno 474263.crdownload (PUP.Optional.Handy.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\pri teo 11 04 rizeniautomobilu posilovacerizeni pdf.exe (PUP.Optional.Installex) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\TZ-simulator-No-CD-Patch.rar (PUP.Hacktool.Patcher) -> Nebyla provedena žádná instrukce.
C:\Users\Zdeněk\Downloads\ESET Smart Security 4 v4.2.64.12 100 Works Licence 32bit a 64bit CZ\TNODUP\TNod User & Password Finder\uninst-tnod.exe (Trojan.Agent.CK) -> Nebyla provedena žádná instrukce.
C:\Windows\Installer\155372.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Windows\Installer\155379.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Windows\Installer\155380.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kontrola logu - vyskakovací okna

#6 Příspěvek od vyosek »

:arrow: Nalezy MBAMu smazte, obejvi se log,ten rad uvidim

:arrow: Crack\Keygen je nejlepsi cesta k zavirovani PC, nehlede na porusovani autorskeho zakona :evil:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zdek
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 15 říj 2009 21:34

Re: Kontrola logu - vyskakovací okna

#7 Příspěvek od zdek »

Log po smazání:


Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.10.17.03

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16721
Zdeněk :: ZDENĚK-PC [administrátor]

17.10.2013 12:15:24
mbam-log-2013-10-17 (12-15-24).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 754144
Uplynulý čas: 4 hodin, 22 minut, 21 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9322CCE6-6402-F820-5939-63C86BF73116} (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3A78F57B-71AA-2326-4871-35824F54B0C2} (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C576AD4A-3A84-D4AC-EA34-D841FB0B7E7F} (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4D37C485-04ED-F6FB-860F-742C6D7ED41C} (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 27
C:\AdwCleaner\Quarantine\C\Program Files (x86)\GadgetBox\sprotector.dll.vir (PUP.Optional.SProtect.A) -> Přesun do karantény a smazání se zdařilo.
C:\AdwCleaner\Quarantine\C\ProgramData\coonttinnuietosAvue\51b1dfece5b02.dll.vir (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\AdwCleaner\Quarantine\C\ProgramData\coonttinnuietosAvue\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Přesun do karantény a smazání se zdařilo.
C:\AdwCleaner\Quarantine\C\ProgramData\EEbooakkBrOOwsE\51b1dff439aff.dll.vir (PUP.Optional.MultiPlug.A) -> Přesun do karantény a smazání se zdařilo.
C:\AdwCleaner\Quarantine\C\ProgramData\EEbooakkBrOOwsE\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{6FB96924-69EE-4567-A78C-21CCB45A4BD2}\Setup.exe (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{6FB96924-69EE-4567-A78C-21CCB45A4BD2}\TsuDll.dll (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{D8287A2A-DFA3-47B7-A55C-978103CB58DC}\Setup.exe (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{D8287A2A-DFA3-47B7-A55C-978103CB58DC}\TsuDll.dll (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{F3D47C05-D2B7-4EE1-AC0A-9A9528375EF3}\Custom.dll (Trojan.MSIL.Injector) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{F3D47C05-D2B7-4EE1-AC0A-9A9528375EF3}\Setup.exe (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{F3D47C05-D2B7-4EE1-AC0A-9A9528375EF3}\TsuDll.dll (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{F701141C-8EDD-4ED4-AC3F-C6FF2CE236EA}\Setup.exe (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\ProgramData\InstallMate\{F701141C-8EDD-4ED4-AC3F-C6FF2CE236EA}\TsuDll.dll (PUP.Optional.Tarma.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J7PT18EM\search_defender_166[1].exe (PUP.Optional.SProtect.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Desktop\http---thisisudax.org-downloads-JRT.exe.exe (PUP.Optional.InstalleRex) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\.torrent.exe (PUP.BundleInstaller.DW) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\CheatEngine62.exe (PUP.Optional.Somoto) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\ETS2 keygen.exe (PUP.RiskwareTool.CK.gen) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\Euro-Truck-Simulator-2-KEYGEN-(eurotruck).zip (PUP.RiskwareTool.CK.gen) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\Nepotvrzeno 474263.crdownload (PUP.Optional.Handy.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\pri teo 11 04 rizeniautomobilu posilovacerizeni pdf.exe (PUP.Optional.Installex) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\TZ-simulator-No-CD-Patch.rar (PUP.Hacktool.Patcher) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zdeněk\Downloads\ESET Smart Security 4 v4.2.64.12 100 Works Licence 32bit a 64bit CZ\TNODUP\TNod User & Password Finder\uninst-tnod.exe (Trojan.Agent.CK) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Installer\155372.msi (PUP.Optional.SweetIM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Installer\155379.msi (PUP.Optional.SweetIM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Installer\155380.msi (PUP.Optional.SweetIM) -> Přesun do karantény a smazání se zdařilo.

(konec)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kontrola logu - vyskakovací okna

#8 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zdek
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 15 říj 2009 21:34

Re: Kontrola logu - vyskakovací okna

#9 Příspěvek od zdek »

Log FRST.txt:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-10-2013
Ran by Zdeněk (administrator) on ZDENĚK-PC on 22-10-2013 07:28:25
Running from C:\Users\Zdeněk\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\STacSV64.exe
(Hewlett-Packard) C:\Windows\system32\Hpservice.exe
(Validity Sensors, Inc.) C:\Windows\system32\vcsFPService.exe
(AMD) C:\Windows\system32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(DigitalPersona, Inc.) C:\Program Files\DigitalPersona\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\AESTSr64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
() C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
() C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Inventor 2012\Moldflow\bin\mitsijm.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe
(Hewlett-Packard ) C:\Program Files\Hewlett-Packard\HPToneControl\HPToneCtl.exe
() C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Akamai Technologies, Inc.) C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
() C:\Program Files (x86)\GIGABYTE\GIGABYTE Sim Series7\Mouse.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Zdeněk\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2104104 2010-04-10] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-02-01] (IDT, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [172032 2010-05-15] (Sun Microsystems, Inc.)
HKLM\...\Run: [HPWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-01-27] (Hewlett-Packard)
HKLM\...\Run: [HPToneControl] - C:\Program Files\Hewlett-Packard\HPToneControl\HPTonectl.exe [107832 2009-08-19] (Hewlett-Packard )
HKLM\...\Run: [SmartMenu] - C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [611896 2010-01-20] ()
HKLM\...\Run: [HP Quick Launch] - C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [451072 2010-01-18] (Hewlett-Packard Company)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1356240 2013-08-12] (Microsoft Corporation)
HKLM\...\Run: [VDownloader] - C:\Program Files\VDownloader\VDownloader.exe [879104 2012-12-20] (Vitzo)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2010-01-22] (Hewlett-Packard Company)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [4910912 2011-08-02] (DT Soft Ltd)
HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
HKCU\...\Run: [Google Update] - C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-04-11] (Google Inc.)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-04-16] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2010-01-25] (EasyBits Software AS)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [GIGABYTEMOUSE] - C:\Program Files (x86)\GIGABYTE\GIGABYTE Sim Series7\Mouse.exe [1278464 2009-11-26] ()
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2345296 2013-10-01] (LogMeIn Inc.)
HKU\Default\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\Default User\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\Guest\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\Guest\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2010-01-22] (Hewlett-Packard Company)
Lsa: [Notification Packages] DPPassFilter scecli

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: HP SimplePass Identity Protection Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files\DigitalPersona\Bin\dpotspluginie8.dll (DigitalPersona, Inc.)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Octh Class - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll (Orbitdownloader.com)
BHO-x32: HP SimplePass Identity Protection Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files (x86)\DigitalPersona\Bin\dpotspluginie8.dll (DigitalPersona, Inc.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: coonttinnuietosAvue - {A7D2C95D-7208-D4C9-65BC-9E7AFEAF3004} - C:\ProgramData\coonttinnuietosAvue\51b1dfece5b02.dll No File
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll ()
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No File
DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWow64\EZUPBH~1.DLL [52920 2010-05-15] (EasyBits Software Corp.)
ShellExecuteHooks-x32: - UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File [ ]
Tcpip\Parameters: [DhcpNameServer] 172.20.0.93 217.197.152.135 217.197.145.94

FireFox:
========
FF ProfilePath: C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @veetle.com/veetleCorePlugin,version=0.9.18 - C:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF Plugin-x32: @veetle.com/veetlePlayerPlugin,version=0.9.18 - C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Zdeněk\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Zdeněk\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF SearchPlugin: C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icq-search.xml
FF SearchPlugin: C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\slunecnice-cz.xml
FF Extension: coonttinnuietosAvue - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\bx3_fo@owg-ufn.org
FF Extension: BitComet 视频下载器 - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
FF Extension: No Name - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}-trash
FF Extension: Greasemonkey - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
FF Extension: fbchathistory - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\fbchathistory@firechm.com.xpi
FF Extension: testpilot - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\testpilot@labs.mozilla.com.xpi
FF Extension: No Name - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{35379F86-8CCB-4724-AE33-4278DE266C70}
FF Extension: No Name - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{BAEBEF65-9289-47c5-8524-C345CC5D860D}.xpi
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt\
FF Extension: DigitalPersona Extension - C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt\
FF HKLM-x32\...\Firefox\Extensions: [bx3_fo@owg-ufn.org] - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\extensions\bx3_fo@owg-ufn.org
FF Extension: coonttinnuietosAvue - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\extensions\bx3_fo@owg-ufn.org
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKCU\...\Firefox\Extensions: [vinceturk@gmail.com] - C:\Program Files (x86)\KwiClick LLC\KwiClick\
FF Extension: KwiClick - C:\Program Files (x86)\KwiClick LLC\KwiClick\

Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Zden\u011Bk\AppData\Local\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Zden\u011Bk\AppData\Local\Google\Chrome\Application\30.0.1599.101\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Users\Zden\u011Bk\AppData\Local\Google\Chrome\Application\30.0.1599.101\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft\u00AE Windows Media Player Firefox Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (BitCometAgent) - C:\Program Files (x86)\Mozilla Firefox\plugins\npBitCometAgent.dll (BitComet)
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (602XML Filler) - C:\Program Files (x86)\Mozilla Firefox\plugins\npfiller.dll ( )
CHR Plugin: (2007 Microsoft Office system) - C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
CHR Plugin: (Veetle TV Player) - C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
CHR Plugin: (Veetle TV Core) - C:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Users\Zden\u011Bk\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Extension: (YouTube) - C:\Users\ZDENK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\ZDENK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (coonttinnuietosAvue) - C:\Users\ZDENK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkadfglfebkodagofkiapeonadmhngco\1
CHR Extension: (AdBlock) - C:\Users\ZDENK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.10_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\ZDENK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Facebook Sidebar Chat Reversion) - C:\Users\ZDENK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfophgoebcoehkldfgeffhnlcabhhomn\2.0.5_1
CHR Extension: (Gmail) - C:\Users\ZDENK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1

==================== Services (Whitelisted) =================

R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-01] (Akamai Technologies, Inc.)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
S3 Autodesk Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe [85096 2010-11-29] (Autodesk)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
S3 BITCOMET_HELPER_SERVICE; C:\Program Files (x86)\BitComet\tools\BitCometService.exe [1296728 2010-12-28] (www.BitComet.com)
S3 COMSysApp; C:\Windows\SysWow64\dllhost.exe [7168 2009-07-14] (Microsoft Corporation)
R2 HPWMISVC; C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [20480 2010-01-18] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 mitsijm2012; C:\Program Files\Autodesk\Inventor 2012\Moldflow\bin\mitsijm.exe [848184 2010-12-08] (Autodesk, Inc.)
S3 msiserver; C:\Windows\SysWow64\msiexec.exe [73216 2010-11-20] (Microsoft Corporation)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-08-12] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366600 2013-08-12] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [75136 2012-12-22] ()
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_471277d5d45019ea\STacSV64.exe [244736 2010-02-01] (IDT, Inc.)
R2 WSearch; C:\Windows\SysWow64\SearchIndexer.exe [427520 2011-05-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S1 acedrv07; C:\Windows\system32\drivers\acedrv07.sys [125440 2010-10-22] ()
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-02-01] ()
S3 AVerAF35; C:\Windows\System32\Drivers\HPAF35.sys [511104 2009-10-19] (Hewlett-Packard)
R1 DVMIO; C:\Windows\System32\DRIVERS\dvmio.sys [20056 2009-11-11] (DeviceVM, Inc.)
S3 HPIR; C:\Windows\System32\DRIVERS\HPIR.sys [93184 2009-11-16] (Hewlett-Packard)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114304 2009-10-12] (Huawei Technologies Co., Ltd.)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-02-01] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [247216 2013-06-18] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [139616 2013-06-18] (Microsoft Corporation)
S2 Nsynas32; C:\Windows\SysWow64\Drivers\Nsynas32.sys [17784 2001-04-09] (Syncrosoft Hard- und Software GmbH)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [526392 2011-09-20] ()
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
U3 ae85c17c; C:\Windows\System32\Drivers\ae85c17c.sys [0 ] (Advanced Micro Devices)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 EverestDriver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [x]
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [243200 2009-10-21] (Huawei Technologies Co., Ltd.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-22 07:28 - 2013-10-22 07:28 - 00000000 ____D C:\FRST
2013-10-22 07:27 - 2013-10-22 07:27 - 00029696 _____ C:\Users\Zdeněk\AppData\Local\MSGBOX.EXE
2013-10-22 07:27 - 2013-10-22 07:27 - 00015327 _____ C:\Users\Zdeněk\Desktop\LM.bat
2013-10-22 07:26 - 2013-10-22 07:26 - 01954682 _____ (Farbar) C:\Users\Zdeněk\Desktop\FRST64.exe
2013-10-22 07:26 - 2013-10-22 07:26 - 00112128 _____ (forum.viry.cz) C:\Users\Zdeněk\Desktop\FRSTLauncher.exe
2013-10-21 20:05 - 2013-10-21 20:06 - 01521523 _____ C:\Users\Zdeněk\Downloads\Zadání projektu (1).pptx
2013-10-21 19:51 - 2013-10-21 20:10 - 148434621 _____ C:\Users\Zdeněk\Downloads\David-Guetta---Nothing-But-The-Beat-2.0-(2012)-(www.SongsLover.pk).rar
2013-10-18 19:36 - 2013-10-18 20:53 - 515490966 _____ C:\Users\Zdeněk\Downloads\Farma.4.E37.Den.tridsiaty.15.10.2013.DVB.704x396.DivX.SK.avi
2013-10-17 09:17 - 2013-10-17 09:17 - 00001131 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-17 09:16 - 2013-10-17 09:16 - 10284816 _____ (Malwarebytes Corporation ) C:\Users\Zdeněk\Downloads\mbam-setup.exe
2013-10-17 06:41 - 2013-10-17 06:44 - 00000000 ____D C:\AdwCleaner
2013-10-17 06:36 - 2013-10-17 06:36 - 00000000 ____D C:\ProgramData\SummerSoft
2013-10-17 06:33 - 2013-10-17 06:33 - 01050644 _____ C:\Users\Zdeněk\Desktop\adwcleaner.exe
2013-10-16 14:48 - 2013-10-16 14:48 - 15550930 _____ C:\Users\Zdeněk\Downloads\Nová složka.zip
2013-10-15 22:34 - 2013-10-21 22:34 - 00003192 _____ C:\Windows\System32\Tasks\HPCeeScheduleForZdeněk
2013-10-15 22:34 - 2013-10-21 22:34 - 00000336 _____ C:\Windows\Tasks\HPCeeScheduleForZdeněk.job
2013-10-14 16:00 - 2013-10-14 16:00 - 09800704 _____ C:\Users\Zdeněk\Downloads\FASH_fotbal.ppt
2013-10-13 20:10 - 2013-10-13 20:12 - 07741050 _____ C:\Users\Zdeněk\Downloads\175575.rar
2013-10-11 17:30 - 2013-10-11 18:30 - 364933120 _____ C:\Users\Zdeněk\Downloads\The-Vampire-Diaries---5x02-True-Lies-(CZ-Titulky).avi
2013-10-11 11:15 - 2013-10-11 11:15 - 00000000 ____D C:\Users\Zdeněk\AppData\Local\{555B2D7B-592D-496A-A549-94E330187EB5}
2013-10-11 09:15 - 2013-10-11 09:56 - 356534272 _____ C:\Users\Zdeněk\Downloads\The-Originals-1x02-CZ-titulky.avi
2013-10-09 12:23 - 2013-09-23 01:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-09 12:23 - 2013-09-23 01:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-09 12:23 - 2013-09-23 01:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-09 12:23 - 2013-09-23 00:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-09 12:23 - 2013-09-23 00:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-09 12:23 - 2013-09-23 00:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-09 12:23 - 2013-09-23 00:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-09 12:23 - 2013-09-23 00:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-09 12:23 - 2013-09-21 05:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-09 12:23 - 2013-09-21 05:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-09 12:23 - 2013-09-21 04:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-09 12:23 - 2013-09-21 04:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-09 11:15 - 2013-10-09 11:15 - 17813896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2013-10-09 09:36 - 2013-09-14 03:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-09 09:36 - 2013-09-08 04:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-09 09:36 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-09 09:36 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-09 09:36 - 2013-08-29 04:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-09 09:36 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-09 09:36 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-09 09:36 - 2013-08-29 04:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-09 09:36 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-09 09:36 - 2013-08-29 03:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-09 09:36 - 2013-08-29 03:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-09 09:36 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-09 09:36 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-09 09:36 - 2013-08-29 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-09 09:36 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-09 09:36 - 2013-08-29 02:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-09 09:36 - 2013-08-29 02:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-09 09:36 - 2013-08-29 02:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-09 09:36 - 2013-08-29 02:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-09 09:36 - 2013-08-28 03:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-09 09:36 - 2013-07-12 12:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-09 09:36 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-09 09:36 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-09 09:36 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-09 09:36 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-09 09:36 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-09 09:36 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-09 09:36 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-09 09:36 - 2013-07-03 06:40 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-09 09:36 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-09 09:36 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-09 09:36 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-09 09:36 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-09 09:36 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-09 09:36 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-09 09:36 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-09 09:36 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-09 09:36 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-09 09:36 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-09 09:36 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-09 09:36 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-09 09:36 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-09 09:35 - 2013-09-04 14:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-09 09:35 - 2013-09-04 14:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-09 09:35 - 2013-09-04 14:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-09 09:35 - 2013-09-04 14:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-09 09:35 - 2013-09-04 14:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-09 09:35 - 2013-09-04 14:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-10-09 09:35 - 2013-09-04 14:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-09 09:35 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-09 09:35 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-09 09:35 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 09:35 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-08 19:49 - 2013-10-08 19:55 - 50070225 _____ C:\Users\Zdeněk\Downloads\Morčata-na-útěku---Tradice-z-krabice-(2013).rar
2013-10-03 06:25 - 2013-10-03 06:25 - 00000000 ____D C:\Users\Zdeněk\AppData\Local\LogMeIn
2013-10-03 06:25 - 2013-10-03 06:25 - 00000000 ____D C:\ProgramData\LogMeIn
2013-10-02 22:04 - 2013-10-02 22:04 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2013-09-25 16:24 - 2013-10-22 07:04 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2013-09-25 16:24 - 2013-09-25 16:24 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-09-25 16:24 - 2013-08-30 09:48 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-09-25 16:24 - 2013-08-30 09:48 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-09-25 16:24 - 2013-08-30 09:48 - 00204880 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-09-25 16:24 - 2013-08-30 09:48 - 00080816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2013-09-25 16:24 - 2013-08-30 09:48 - 00072016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2013-09-25 16:24 - 2013-08-30 09:48 - 00065336 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2013-09-25 16:24 - 2013-08-30 09:48 - 00064288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2013-09-25 16:24 - 2013-08-30 09:48 - 00033400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2013-09-25 16:23 - 2013-08-30 09:47 - 00041664 _____ (AVAST Software) C:\Windows\avastSS.scr
2013-09-25 15:42 - 2013-09-25 15:43 - 131918888 _____ C:\Users\Zdeněk\Downloads\avast_free_antivirus_setup.exe
2013-09-24 17:01 - 2013-06-14 17:47 - 00000000 ____D C:\Users\Zdeněk\Desktop\Farm.Machines.Championships.2013-DEFA
2013-09-24 15:25 - 2013-09-25 16:24 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-09-24 15:25 - 2013-08-30 09:47 - 00287840 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2013-09-24 15:23 - 2013-09-25 16:22 - 00000000 ____D C:\ProgramData\AVAST Software
2013-09-24 15:23 - 2013-09-25 16:22 - 00000000 ____D C:\Program Files\AVAST Software
2013-09-24 15:21 - 2013-09-24 15:21 - 147059524 _____ C:\Users\Zdeněk\Downloads\av!intsec_lic.rar
2013-09-24 14:09 - 2013-09-24 15:20 - 1370547064 _____ C:\Users\Zdeněk\Downloads\deffamacha.rar
2013-09-24 09:24 - 2013-09-24 09:24 - 89210173 _____ C:\Users\Zdeněk\Downloads\Avicii---True-2013.rar
2013-09-23 21:45 - 2013-09-23 21:45 - 00001386 _____ C:\Users\Zdeněk\Downloads\TV VLC.zip
2013-09-23 21:45 - 2013-09-16 21:43 - 00001134 _____ C:\Users\Zdeněk\Desktop\TV CZ.vlc
2013-09-23 21:02 - 2013-09-23 21:02 - 00000000 ____D C:\Users\Zdeněk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\John Deere American Farmer v1.02 CZ
2013-09-23 21:00 - 2013-09-23 21:00 - 00000843 _____ C:\Users\Zdeněk\Desktop\John Deere American Farmer.lnk
2013-09-23 21:00 - 2013-09-23 21:00 - 00000843 _____ C:\Users\Guest\Desktop\John Deere American Farmer.lnk
2013-09-23 20:58 - 2013-09-23 21:47 - 00000000 ____D C:\Users\Zdeněk\Desktop\John_Deere
2013-09-23 20:27 - 2013-09-23 20:52 - 134953938 _____ C:\Users\Zdeněk\Downloads\John_Deere-cz.rar
2013-09-23 20:11 - 2013-09-23 20:36 - 438982656 _____ C:\Users\Zdeněk\Downloads\Zetor-simulator-de.iso
2013-09-23 17:06 - 2013-09-23 17:06 - 00000253 _____ C:\Users\Zdeněk\Downloads\CSOB_958300698_23.09.2013.txt

==================== One Month Modified Files and Folders =======

2013-10-22 07:28 - 2013-10-22 07:28 - 00000000 ____D C:\FRST
2013-10-22 07:27 - 2013-10-22 07:27 - 00029696 _____ C:\Users\Zdeněk\AppData\Local\MSGBOX.EXE
2013-10-22 07:27 - 2013-10-22 07:27 - 00015327 _____ C:\Users\Zdeněk\Desktop\LM.bat
2013-10-22 07:26 - 2013-10-22 07:26 - 01954682 _____ (Farbar) C:\Users\Zdeněk\Desktop\FRST64.exe
2013-10-22 07:26 - 2013-10-22 07:26 - 00112128 _____ (forum.viry.cz) C:\Users\Zdeněk\Desktop\FRSTLauncher.exe
2013-10-22 07:15 - 2012-07-10 05:02 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-22 07:12 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-22 07:12 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-22 07:08 - 2010-07-30 01:11 - 01357187 _____ C:\Windows\WindowsUpdate.log
2013-10-22 07:07 - 2013-05-12 19:39 - 00000000 ____D C:\Users\Zdeněk\AppData\Local\LogMeIn Hamachi
2013-10-22 07:04 - 2013-09-25 16:24 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2013-10-22 07:02 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-22 07:01 - 2013-05-06 13:30 - 00271582 _____ C:\Windows\PFRO.log
2013-10-22 07:01 - 2011-09-30 08:51 - 00109426 _____ C:\Windows\setupact.log
2013-10-21 23:01 - 2013-07-10 11:44 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA.job
2013-10-21 22:34 - 2013-10-15 22:34 - 00003192 _____ C:\Windows\System32\Tasks\HPCeeScheduleForZdeněk
2013-10-21 22:34 - 2013-10-15 22:34 - 00000336 _____ C:\Windows\Tasks\HPCeeScheduleForZdeněk.job
2013-10-21 22:06 - 2013-09-11 21:50 - 00000000 ____D C:\Users\Zdeněk\Desktop\Farma 4
2013-10-21 20:10 - 2013-10-21 19:51 - 148434621 _____ C:\Users\Zdeněk\Downloads\David-Guetta---Nothing-But-The-Beat-2.0-(2012)-(www.SongsLover.pk).rar
2013-10-21 20:06 - 2013-10-21 20:05 - 01521523 _____ C:\Users\Zdeněk\Downloads\Zadání projektu (1).pptx
2013-10-19 13:35 - 2010-05-15 23:59 - 00679142 _____ C:\Windows\system32\perfh005.dat
2013-10-19 13:35 - 2010-05-15 23:59 - 00146980 _____ C:\Windows\system32\perfc005.dat
2013-10-19 13:35 - 2009-07-14 07:13 - 01615348 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-18 20:53 - 2013-10-18 19:36 - 515490966 _____ C:\Users\Zdeněk\Downloads\Farma.4.E37.Den.tridsiaty.15.10.2013.DVB.704x396.DivX.SK.avi
2013-10-18 14:01 - 2013-07-10 11:44 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core.job
2013-10-18 10:15 - 2013-02-17 12:15 - 00000000 ____D C:\Users\Zdeněk\Documents\Euro Truck Simulator 2
2013-10-18 10:15 - 2010-10-09 13:00 - 00000000 ____D C:\Games
2013-10-17 09:17 - 2013-10-17 09:17 - 00001131 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-17 09:17 - 2010-11-19 11:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-17 09:16 - 2013-10-17 09:16 - 10284816 _____ (Malwarebytes Corporation ) C:\Users\Zdeněk\Downloads\mbam-setup.exe
2013-10-17 06:52 - 2013-06-07 14:40 - 00000000 ____D C:\ProgramData\InstallMate
2013-10-17 06:44 - 2013-10-17 06:41 - 00000000 ____D C:\AdwCleaner
2013-10-17 06:36 - 2013-10-17 06:36 - 00000000 ____D C:\ProgramData\SummerSoft
2013-10-17 06:33 - 2013-10-17 06:33 - 01050644 _____ C:\Users\Zdeněk\Desktop\adwcleaner.exe
2013-10-16 16:02 - 2013-05-03 16:45 - 00000000 ____D C:\Program Files\trend micro
2013-10-16 14:48 - 2013-10-16 14:48 - 15550930 _____ C:\Users\Zdeněk\Downloads\Nová složka.zip
2013-10-15 23:52 - 2011-01-26 09:45 - 00001912 _____ C:\Windows\epplauncher.mif
2013-10-15 23:51 - 2011-01-26 09:44 - 00000000 ____D C:\Program Files\Microsoft Security Client
2013-10-15 23:51 - 2011-01-26 09:44 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2013-10-15 22:33 - 2010-10-12 19:07 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-10-15 18:26 - 2010-10-22 00:12 - 00000000 ____D C:\ProgramData\Recovery
2013-10-14 16:00 - 2013-10-14 16:00 - 09800704 _____ C:\Users\Zdeněk\Downloads\FASH_fotbal.ppt
2013-10-14 13:56 - 2013-07-10 11:44 - 00003938 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA
2013-10-14 13:56 - 2013-07-10 11:44 - 00003542 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core
2013-10-13 20:13 - 2012-08-19 16:59 - 00000000 ____D C:\Users\Zdeněk\Desktop\Inzeráty
2013-10-13 20:12 - 2013-10-13 20:10 - 07741050 _____ C:\Users\Zdeněk\Downloads\175575.rar
2013-10-13 17:48 - 2010-10-11 11:52 - 00000000 ____D C:\Users\Zdeněk\AppData\Local\CrashDumps
2013-10-13 11:38 - 2011-11-18 10:34 - 00000000 ____D C:\Users\Zdeněk\AppData\Local\cache
2013-10-11 18:30 - 2013-10-11 17:30 - 364933120 _____ C:\Users\Zdeněk\Downloads\The-Vampire-Diaries---5x02-True-Lies-(CZ-Titulky).avi
2013-10-11 11:15 - 2013-10-11 11:15 - 00000000 ____D C:\Users\Zdeněk\AppData\Local\{555B2D7B-592D-496A-A549-94E330187EB5}
2013-10-11 09:56 - 2013-10-11 09:15 - 356534272 _____ C:\Users\Zdeněk\Downloads\The-Originals-1x02-CZ-titulky.avi
2013-10-11 08:43 - 2011-12-09 20:20 - 00000000 ____D C:\Users\Zdeněk\Desktop\Marta
2013-10-09 13:08 - 2009-07-14 06:45 - 00553072 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-09 13:04 - 2013-03-13 08:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-09 12:26 - 2010-05-15 15:04 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-09 12:21 - 2013-03-13 08:40 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-09 12:18 - 2011-01-26 09:44 - 01594570 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-09 12:10 - 2013-07-28 15:48 - 00000000 ____D C:\Windows\system32\MRT
2013-10-09 12:04 - 2010-10-11 19:36 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-09 11:51 - 2013-03-16 19:26 - 00010845 _____ C:\Users\Zdeněk\Desktop\Motodeník.xlsx
2013-10-09 11:15 - 2013-10-09 11:15 - 17813896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2013-10-09 11:15 - 2012-07-10 05:02 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-09 11:15 - 2012-04-29 08:23 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-09 11:15 - 2011-09-06 13:24 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 19:55 - 2013-10-08 19:49 - 50070225 _____ C:\Users\Zdeněk\Downloads\Morčata-na-útěku---Tradice-z-krabice-(2013).rar
2013-10-08 15:31 - 2012-10-19 15:08 - 00000000 ____D C:\ProgramData\IObit
2013-10-05 08:08 - 2011-06-23 20:44 - 00000000 ____D C:\Users\Zdeněk\Documents\čeština - nástavba
2013-10-03 06:25 - 2013-10-03 06:25 - 00000000 ____D C:\Users\Zdeněk\AppData\Local\LogMeIn
2013-10-03 06:25 - 2013-10-03 06:25 - 00000000 ____D C:\ProgramData\LogMeIn
2013-10-02 22:04 - 2013-10-02 22:04 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2013-10-02 22:04 - 2013-07-02 17:26 - 00000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2013-10-02 13:22 - 2010-10-09 04:04 - 00000000 ____D C:\Users\Zdeněk\Desktop\VSB
2013-09-30 21:04 - 2010-11-01 09:34 - 00039424 _____ C:\Users\Zdeněk\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-09-27 17:24 - 2012-11-21 12:25 - 00000000 ____D C:\Program Files (x86)\SafeQ
2013-09-25 16:24 - 2013-09-25 16:24 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-09-25 16:24 - 2013-09-24 15:25 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-09-25 16:22 - 2013-09-24 15:23 - 00000000 ____D C:\ProgramData\AVAST Software
2013-09-25 16:22 - 2013-09-24 15:23 - 00000000 ____D C:\Program Files\AVAST Software
2013-09-25 15:43 - 2013-09-25 15:42 - 131918888 _____ C:\Users\Zdeněk\Downloads\avast_free_antivirus_setup.exe
2013-09-24 15:31 - 2010-07-30 01:38 - 00000000 ____D C:\ProgramData\Norton
2013-09-24 15:21 - 2013-09-24 15:21 - 147059524 _____ C:\Users\Zdeněk\Downloads\av!intsec_lic.rar
2013-09-24 15:20 - 2013-09-24 14:09 - 1370547064 _____ C:\Users\Zdeněk\Downloads\deffamacha.rar
2013-09-24 09:24 - 2013-09-24 09:24 - 89210173 _____ C:\Users\Zdeněk\Downloads\Avicii---True-2013.rar
2013-09-23 21:47 - 2013-09-23 20:58 - 00000000 ____D C:\Users\Zdeněk\Desktop\John_Deere
2013-09-23 21:45 - 2013-09-23 21:45 - 00001386 _____ C:\Users\Zdeněk\Downloads\TV VLC.zip
2013-09-23 21:02 - 2013-09-23 21:02 - 00000000 ____D C:\Users\Zdeněk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\John Deere American Farmer v1.02 CZ
2013-09-23 21:02 - 2010-10-09 08:55 - 00000000 ____D C:\Users\Zdeněk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-09-23 21:00 - 2013-09-23 21:00 - 00000843 _____ C:\Users\Zdeněk\Desktop\John Deere American Farmer.lnk
2013-09-23 21:00 - 2013-09-23 21:00 - 00000843 _____ C:\Users\Guest\Desktop\John Deere American Farmer.lnk
2013-09-23 20:55 - 2010-10-12 19:01 - 00000000 ____D C:\Users\Zdeněk\Documents\My Games
2013-09-23 20:52 - 2013-09-23 20:27 - 134953938 _____ C:\Users\Zdeněk\Downloads\John_Deere-cz.rar
2013-09-23 20:36 - 2013-09-23 20:11 - 438982656 _____ C:\Users\Zdeněk\Downloads\Zetor-simulator-de.iso
2013-09-23 17:06 - 2013-09-23 17:06 - 00000253 _____ C:\Users\Zdeněk\Downloads\CSOB_958300698_23.09.2013.txt
2013-09-23 07:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-09-23 01:28 - 2013-10-09 12:23 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-23 01:28 - 2013-10-09 12:23 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-23 01:27 - 2013-10-09 12:23 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-23 00:55 - 2013-10-09 12:23 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-23 00:55 - 2013-10-09 12:23 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-23 00:55 - 2013-10-09 12:23 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-23 00:54 - 2013-10-09 12:23 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-23 00:54 - 2013-10-09 12:23 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll

Files to move or delete:
====================
C:\Users\Zdeněk\fbchathistory.dat


Some content of TEMP:
====================
C:\Users\Zdeněk\AppData\Local\Temp\bassmod.dll
C:\Users\Zdeněk\AppData\Local\Temp\BitEA77.tmp.exe
C:\Users\Zdeněk\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-09-30 13:27

==================== End Of Log ============================


a přikládám i log Addition.txt, pokud by bude třeba:


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-10-2013
Ran by Zdeněk at 2013-10-22 07:30:43
Running from C:\Users\Zdeněk\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}

==================== Installed Programs ======================

Update for Microsoft Office 2007 (KB2508958) (x32)
602XML Filler (x32 Version: 3.0)
Activation (Nero 9) (x32)
ActiveCheck component for HP Active Support Library (x32 Version: 3.0.0.2)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117)
Adobe Reader X (10.1.8) - Czech (x32 Version: 10.1.8)
Adobe Shockwave Player (x32 Version: 11.5.1.601)
Advertising Center (x32 Version: 0.0.0.1)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.82)
Akamai NetSession Interface (HKCU)
Akamai NetSession Interface Service (x32)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (x32)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (x32)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (x32)
AMD USB Filter Driver (x32 Version: 1.0.15.94)
Ashampoo Burning Studio 6 FREE (x32 Version: 6.7.7)
Assassin's Creed (R) III (x32 Version: 1.01)
ATI Catalyst Install Manager (Version: 3.0.765.0)
Auto Gordian Knot 2.55 (x32 Version: 2.55)
AutoCAD 2008 - English (x32 Version: 17.1.51.0)
AutoCAD 2009 - český (Version: 17.2.56.0)
AutoCAD 2012 - Czech (Version: 18.2.51.0)
AutoCAD 2012 Language Pack - Czech (Version: 18.2.51.0)
Autodesk Content Service (x32 Version: 2.0.90)
Autodesk Inventor Content Center Libraries 2012 (Desktop Content) (Version: 16.0.16000.0000)
Autodesk Inventor Professional 2012 (Version: 16.0.16000.0000)
Autodesk Inventor Professional 2012 Čeština (Version: 16.0.16000.0000)
Autodesk Inventor Professional 2012 Jazykový balíček – čeština (Version: 16.0.16000.0000)
Autodesk Material Library 2012 (x32 Version: 2.5.0.8)
Autodesk Material Library Base Resolution Image Library 2012 (x32 Version: 2.5.0.8)
Autodesk Material Library Low Resolution Image Library 2012 (x32 Version: 2.5.0.8)
avast! Free Antivirus (x32 Version: 8.0.1497.0)
AviSynth 2.5 (x32)
Balíček ovladače systému Windows - Broadcom Corporation (BTHUSB) Bluetooth (01/20/2010 6.3.0.3500) (Version: 01/20/2010 6.3.0.3500)
Balíček ovladače systému Windows - Broadcom Corporation (BTHUSB) Bluetooth (01/28/2010 6.3.0.3800) (Version: 01/28/2010 6.3.0.3800)
Balíček ovladače systému Windows - Broadcom HIDClass (09/11/2009 6.3.0.1500) (Version: 09/11/2009 6.3.0.1500)
Bandisoft MPEG-1 Decoder (x32)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.82)
Bing Bar (x32 Version: 7.0.609.0)
BitComet 1.29 (x32 Version: 1.29)
Blackhawk Striker 2 (x32 Version: 2.2.0.82)
Blasterball 3 (x32 Version: 2.2.0.82)
BlazeDTV 6.0 (x32)
Broadcom 2070 Bluetooth 3.0 (Version: 6.3.0.3800)
Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.48.35)
BS.Player FREE (x32 Version: 2.52.1030)
Bus Driver (x32 Version: 2.2.0.82)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center Core Implementation (x32 Version: 2010.0416.541.8279)
Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0416.541.8279)
Catalyst Control Center Graphics Full New (x32 Version: 2010.0416.541.8279)
Catalyst Control Center Graphics Light (x32 Version: 2010.0416.541.8279)
Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0416.541.8279)
Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0416.541.8279)
Catalyst Control Center InstallProxy (x32 Version: 2010.0416.541.8279)
Catalyst Control Center Localization All (x32 Version: 2010.0416.541.8279)
CCC Help Czech (x32 Version: 2010.0416.0540.8279)
CCC Help Danish (x32 Version: 2010.0416.0540.8279)
CCC Help Dutch (x32 Version: 2010.0416.0540.8279)
CCC Help English (x32 Version: 2010.0416.0540.8279)
CCC Help Finnish (x32 Version: 2010.0416.0540.8279)
CCC Help French (x32 Version: 2010.0416.0540.8279)
CCC Help German (x32 Version: 2010.0416.0540.8279)
CCC Help Greek (x32 Version: 2010.0416.0540.8279)
CCC Help Hungarian (x32 Version: 2010.0416.0540.8279)
CCC Help Chinese Standard (x32 Version: 2010.0416.0540.8279)
CCC Help Chinese Traditional (x32 Version: 2010.0416.0540.8279)
CCC Help Italian (x32 Version: 2010.0416.0540.8279)
CCC Help Japanese (x32 Version: 2010.0416.0540.8279)
CCC Help Korean (x32 Version: 2010.0416.0540.8279)
CCC Help Norwegian (x32 Version: 2010.0416.0540.8279)
CCC Help Polish (x32 Version: 2010.0416.0540.8279)
CCC Help Portuguese (x32 Version: 2010.0416.0540.8279)
CCC Help Russian (x32 Version: 2010.0416.0540.8279)
CCC Help Spanish (x32 Version: 2010.0416.0540.8279)
CCC Help Swedish (x32 Version: 2010.0416.0540.8279)
CCC Help Thai (x32 Version: 2010.0416.0540.8279)
CCC Help Turkish (x32 Version: 2010.0416.0540.8279)
ccc-core-static (x32 Version: 2010.0416.541.8279)
ccc-utility64 (Version: 2010.0416.541.8279)
CCleaner (Version: 3.23)
Compiled Driver Disc (Full) 0.99 (x32 Version: 0.99.0.1)
Compiled Driver Disk (Android) 0.99 (Version: 0.99.1.1)
Compiled Driver Disk (Sony Ericsson) 0.99 (x32 Version: 0.99.0.1)
coonttinnuietosAvue (x32 Version: )
Counter-Strike (x32)
Counter-Strike 1.6 (x32 Version: 1.00.0000)
Counter-Strike(TM) (x32 Version: 1.0.0.0)
Creo Parametric Release 1.0 Datecode M010 (Version: 1.0)
Creo Thumbnail Viewer 1.0 (Version: 29.11.250)
CyberLink DVD Suite (x32 Version: 7.0.2527)
D3DX10 (x32 Version: 15.4.2368.0902)
DAEMON Tools Lite (x32 Version: 4.41.3.0173)
Day of Defeat (x32)
Derive 6 zkušební verze (x32 Version: 6.1)
DesetiPrsty5 5.2 (x32)
DolbyFiles (x32 Version: 2.0)
Dora's Carnival Adventure (x32 Version: 2.2.0.82)
DVD Decrypter (Remove Only) (x32)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.0.3715)
EAX4 Unified Redist (x32 Version: 4.001)
Eco Materials Adviser (x64) (Version: 1.32.0.0)
EPSON Scan (x32)
EPSON Stylus SX400 Series Printer Uninstall
Escape Rosecliff Island (x32 Version: 2.2.0.82)
ESU for Microsoft Windows 7 (x32 Version: 1.0.0)
EVEREST Ultimate Edition v5.30 (x32 Version: 5.30)
Faerie Solitaire (x32 Version: 2.2.0.82)
Farming Simulator 2013 (x32 Version: 1.0)
FARO LS 1.1.406.58 (x32 Version: 4.6.58.2)
FATE (x32 Version: 2.2.0.82)
Ford Racing 3 (x32 Version: 1.0)
Free Studio version 5.0.5 (x32)
GadgetBox (Version: 1.0)
Game Booster 3 (x32 Version: 3.4)
GameSpy (x32)
GIGABYTE Sim Series7 (x32 Version: 1.00.0000)
GOM Player (x32 Version: 2.1.28.5039)
Goniometrické funkce (x32)
Google Chrome (HKCU Version: 30.0.1599.101)
Hamachi 1.0.3.0 (x32)
HP 3D DriveGuard (Version: 4.0.3.1)
HP Advisor (x32 Version: 3.4.10262.3295)
HP Customer Experience Enhancements (x32 Version: 6.0.1.4)
HP DVB-T TV Tuner 8.0.64.43 (x32 Version: 8.0.64.43)
HP Game Console (x32)
HP Games (x32 Version: 1.0.0.80)
HP MediaSmart DVD (x32 Version: 4.0.3822)
HP MediaSmart Internet TV (x32 Version: 3.2.2513)
HP MediaSmart Movies and TV (Version: 1.0.0.10)
HP MediaSmart Music (x32 Version: 4.0.3903)
HP MediaSmart Photo (x32 Version: 4.0.3911)
HP MediaSmart SmartMenu (Version: 3.1.1.12)
HP MediaSmart Video (x32 Version: 4.0.3911)
HP MediaSmart Webcam (x32 Version: 4.0.2511)
HP Power Plan Utility (x32 Version: 1.0.6)
HP Quick Launch (Version: 1.0.18)
HP QuickWeb Installer (x32 Version: 1.2.12.0)
HP Setup (x32 Version: 1.2.3988.3281)
HP SimplePass Identity Protection (Version: 5.00.140)
HP Software Framework (x32 Version: 3.5.17.1)
HP Support Assistant (x32 Version: 4.3.1.2)
HP Tone Control (Version: 2.0.2)
HP Update (x32 Version: 5.001.000.014)
HP User Guides 0193 (x32 Version: 1.01.0001)
HP Wireless Assistant (Version: 4.0.4.2)
HPAsset component for HP Active Support Library (x32 Version: 3.0.2.2)
Cheat Engine 6.2 (x32)
Chuzzle Deluxe (x32 Version: 2.2.0.82)
ICQ7.2 (x32 Version: 7.2)
IDT Audio (x32 Version: 1.0.6269.0)
Insane 2 (x32)
IrfanView (remove only) (x32 Version: 4.27)
IsoBuster 2.8 (x32 Version: 2.8)
Java 7 Update 25 (x32 Version: 7.0.250)
Java Auto Updater (x32 Version: 2.1.9.5)
Java(TM) 6 Update 17 (64-bit) (Version: 6.0.170)
Java(TM) 6 Update 21 (x32 Version: 6.0.210)
Java(TM) 6 Update 38 (x32 Version: 6.0.380)
Jewel Quest 3 (x32 Version: 2.2.0.82)
John Deere American Farmer TM v1.0 (x32)
John Deere: American Farmer v1.02 CZ (x32 Version: 1)
Jpeg Resampler Vs 6+ (x32)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
KwiClick (x32 Version: 2.6)
LabelPrint (x32 Version: 2.5.2515)
LightScribe System Software (x32 Version: 1.18.11.1)
LogMeIn Hamachi (x32 Version: 2.2.0.58)
Magic Desktop (x32)
Malwarebytes Anti-Malware verze 1.75.0.1300 (x32 Version: 1.75.0.1300)
Mathcad 2001 Professional (x32 Version: 10.02.0000)
MATLAB R2010a (Version: 7.10)
Maxthon 3 (x32 Version: )
Metronome 4.0 (x32)
Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended CSY Language Pack (Version: 4.0.30319)
Microsoft Antimalware Service CS-CZ Language Pack (Version: 3.0.8402.2)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.88.0)
Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0)
Microsoft Office 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Access MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Excel MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003)
Microsoft Office Groove MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000)
Microsoft Office OneNote MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (Slovak) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proofing (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Publisher MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Suite Activation Assistant (x32 Version: 2.9)
Microsoft Office Word MUI (Czech) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Report Viewer Redistributable 2005 (x32)
Microsoft Report Viewer Redistributable 2008 (KB971118) (x32 Version: 9.0.21024)
Microsoft Security Client (Version: 4.3.0219.0)
Microsoft Security Client CS-CZ Language Pack (Version: 2.1.1116.0)
Microsoft Security Essentials (Version: 4.3.219.0)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Update ProtectedRoots registry key tool (KB932156) (x32 Version: 1.0.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (Version: 8.0.51011)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (x32 Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (x32 Version: 10.0.30319)
Microsoft Works (x32 Version: 08.05.0822)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0)
Microsoft XML Parser (x32 Version: 8.70.1104.04)
MotoGP 2007 (x32)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.0.3715)
Mozilla Firefox 12.0 (x86 cs) (x32 Version: 12.0)
Mozilla Maintenance Service (x32 Version: 12.0)
MPEG2 Codec(libmpeg2/mad) (x32)
MSCOMP GonioMan 2010 (HKCU)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0)
MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0)
MSXML 4.0 SP3 Parser (KB973685) (x32 Version: 4.30.2107.0)
MSXML4 Parser (x32 Version: 1.0.0)
MX vs ATV Reflex (x32)
Nail'd (x32 Version: 1.00)
Need For Speed™ World (x32 Version: 1.0.0.613)
Nero BurnLite 10 (x32 Version: 10.0.10100.1.100)
Nero BurnLite 10 (x32 Version: 10.0.10500)
Nero Control Center 10 (x32 Version: 10.0.13100.3.1)
Nero ControlCenter (x32 Version: 0.0.0.1)
Nero ControlCenter (x32 Version: 9.0.0.1)
Nero ControlCenter 10 Help (CHM) (x32 Version: 1.0.10700)
Nero Core Components 10 (x32 Version: 2.0.15100.0.1)
Nero Installer (x32 Version: 2.0.0.1)
Nero Update (x32 Version: 1.0.0018)
NHL® 09 (x32 Version: 2.0.1.0)
NVIDIA PhysX (x32 Version: 9.10.0513)
Off-Road Drive (x32)
OpenAL (x32)
Opera 12.12 (x32 Version: 12.12.1707)
Orbit Downloader (x32)
PDFCreator (x32 Version: 1.6.0)
Penguins! (x32 Version: 2.2.0.82)
PhotoFiltre 7 (HKCU)
PhotoFiltre Studio X (HKCU)
PhotoNow! (x32 Version: 1.1.6904)
Pidgin (x32 Version: 2.8.0)
Plants vs. Zombies (x32 Version: 2.2.0.82)
PlayReady PC Runtime amd64 (Version: 1.3.0)
Poker Superstars III (x32 Version: 2.2.0.82)
Polar Bowler (x32 Version: 2.2.0.82)
Polar Golfer (x32 Version: 2.2.0.82)
Power2Go (x32 Version: 6.1.3715)
PowerDirector (x32 Version: 8.0.2514)
ProtectDisc Driver, Version 11 (x32 Version: 11.0.0.14)
PTC Quality Agent (x32 Version: 1.0.1.0)
PunkBuster Services (x32 Version: 0.991)
QIP 2010 10.9.29.4196 (HKCU Version: 10.9.29.4196)
Quick Uninstall Tool for Autodesk Inventor 2012 (Version: 16.0.16000.0000)
Rally Trophy (x32 Version: 1.0.0)
Rapture3D 2.3.22 Game (x32)
Realtek Ethernet Controller Driver For Windows 7 (x32 Version: 7.11.1127.2009)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30113)
Recovery Manager (x32 Version: 5.5.2512)
SafeQ (x32 Version: 0.9)
Sběratelská edice Heroes of Might and Magic V (x32)
Scorpions WinCheater (x32)
SHIFT 2 UNLEASHED™ (x32 Version: 1.0.0.0)
Skype™ 5.10 (x32 Version: 5.10.116)
Sniper Ghost Warrior (x32)
SpeedFan (remove only) (x32)
Steam (x32 Version: 1.0.0.0)
Street Racing Syndicate (TM) (x32 Version: 1.00.0000)
Stronghold 3 Gold (x32)
Stronghold HD (x32 Version: 2.0.0.3)
Super Mario 3 : Mario Forever (x32)
Synaptics Pointing Device Driver (Version: 15.0.13.3)
Syncrosoft's License Control (x32)
TeamViewer 6 (x32 Version: 6.0.9947)
TmUnitedForever Update 2010-03-15 (x32)
Total Commander (Remove or Repair) (x32 Version: 7.56a)
Traktor 2 (x32 Version: 1.0)
TreeSize Free V2.3.3 (x32)
TrueCrypt (x32 Version: 7.0a)
Uninstall 1.0.0.1 (x32)
Update for 2007 Microsoft Office System (KB967642) (x32)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2827325) 32-Bit Edition (x32)
Uplay (x32 Version: 2.0)
Validity Sensors DDK (Version: 4.1.129.0)
VariCADViewer cz 2007 2.01 (x32)
VBA (2627.01) (x32 Version: 6.03.00.9402)
VDownloader 3.9.1360
Veetle TV 0.9.18 (x32 Version: 0.9.18)
Verze 1.12 (x32)
Viper 1.5.00 (x32 Version: 1.5.00)
Virtual Families (x32 Version: 2.2.0.82)
Virtual Villagers - The Secret City (x32 Version: 2.2.0.82)
VLC media player 1.1.4 (x32 Version: 1.1.4)
VMLoad (x32)
VobSub v2.23 (Remove Only) (x32)
VueScan
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Family Safety (Version: 15.4.3502.0922)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8)
WinPcap 4.1.1 (x32 Version: 4.1.0.1753)
WinRAR (x32)
Winter Sports 2012 (x32)
World Racing (x32 Version: 1.0)
XIII (x32 Version: 1.00.000)
X-Moto (x32)
XviD MPEG4 Video Codec (remove only) (x32)
Zuma's Revenge (x32 Version: 2.2.0.82)

==================== Restore Points =========================


==================== Hosts content: ==========================

2009-07-14 04:34 - 2013-05-05 14:32 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {07835565-8FE5-497A-AB6E-8559E833D944} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA => C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-11] (Google Inc.)
Task: {0B57BB29-24C7-4701-9848-AF74BA746A29} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {1DE0773D-61ED-4F5D-897D-9DB68DD2FC66} - \Scheduled Update for Ask Toolbar No Task File
Task: {1E530A35-A68D-4E7A-89E1-DD1598F15C60} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-06-09] ()
Task: {39F63E9C-87C8-4207-92C2-C4A6CE1D7936} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation)
Task: {3D381D3E-BD7F-484C-B388-2BFF392F704C} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-08-30] (AVAST Software)
Task: {4395C787-E0AA-47D5-9B58-4083FD55763B} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
Task: {4DA1E8B4-7560-49BE-970C-D961FF810A34} - System32\Tasks\RunAsStdUser Task => C:\Program Files\MATLAB\R2010a\MATLAB R2010a.lnk [2013-02-26] ()
Task: {72E6FB8F-2EBF-4707-A157-5EED18E65365} - System32\Tasks\{E36B36C3-2D90-4394-8743-6AC895D527A9} => Firefox.exe http://ui.skype.com/ui/0/4.1.0.179.161/ ... otincluded
Task: {7901F0A7-3F87-4289-A9DE-62AD3322CB64} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2009-11-10] (Hewlett-Packard)
Task: {9FFE1BEC-A3D8-43F0-A4A2-679CDD523FF5} - System32\Tasks\HPCeeScheduleForZdeněk => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05] (Hewlett-Packard)
Task: {ACA228AC-4E4C-4F22-96CB-9AA33E4AF331} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2013-09-17] (Microsoft)
Task: {AD0730E4-8234-46BC-9C1A-3F09934C4853} - System32\Tasks\Hewlett-Packard\HP Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2009-11-10] (Hewlett-Packard)
Task: {C0DF2B28-2EB5-4FC0-A82E-97100162884F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09] (Adobe Systems Incorporated)
Task: {C546BC17-3F2D-4CAD-A29E-7D46F7318519} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
Task: {E9420A03-E6E7-4A0A-92DB-5AB0F584001D} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation)
Task: {ED80BF21-07FB-438C-ACFF-51FF16B9B4A0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core => C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-11] (Google Inc.)
Task: {F6C520DB-C4E4-4F0D-8776-73A2B040D727} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-09-24] (Piriform Ltd)
Task: {FDF37422-0DD7-4A04-8A7C-4C4187E49956} - System32\Tasks\CLMLSvc => c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Music\Kernel\CLML\CLMLSvc.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core.job => C:\Users\Zdenk\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA.job => C:\Users\Zdenk\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForZdeněk.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Loaded Modules (whitelisted) =============

2010-01-28 18:04 - 2010-01-28 18:04 - 00173856 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2010-03-09 14:34 - 2010-03-09 14:34 - 00016384 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2010-07-30 01:09 - 2010-07-30 01:09 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-01-27 14:01 - 2010-01-27 14:01 - 00030264 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_LogicLayer.dll
2010-01-27 14:01 - 2010-01-27 14:01 - 00052280 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HardwareAccess.dll
2010-01-27 14:01 - 2010-01-27 14:01 - 00267832 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll
2013-10-22 07:06 - 2013-10-22 00:42 - 02105856 _____ () C:\Program Files\AVAST Software\Avast\defs\13102101\algo.dll
2010-01-22 10:29 - 2010-01-22 10:29 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2010-01-22 10:30 - 2010-01-22 10:30 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2010-01-22 10:29 - 2010-01-22 10:29 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2013-10-17 15:13 - 2013-10-09 02:01 - 00698832 _____ () C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\30.0.1599.101\libglesv2.dll
2013-10-17 15:13 - 2013-10-09 02:01 - 00099792 _____ () C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\30.0.1599.101\libegl.dll
2013-10-17 15:13 - 2013-10-09 02:02 - 04055504 _____ () C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\30.0.1599.101\pdf.dll
2013-10-17 15:13 - 2013-10-09 02:02 - 00415184 _____ () C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll
2013-10-17 15:13 - 2013-10-09 02:01 - 01604560 _____ () C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\30.0.1599.101\ffmpegsumo.dll
2013-10-17 15:13 - 2013-10-09 02:02 - 13584336 _____ () C:\Users\Zdeněk\AppData\Local\Google\Chrome\Application\30.0.1599.101\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Faulty Device Manager Devices =============

Name: Broadcom 2070 Bluetooth
Description: Broadcom 2070 Bluetooth
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Broadcom
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: avast! Firewall NDIS Filter Miniport
Description: avast! Firewall NDIS Filter Miniport
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: ALWIL Software
Service: aswNdis
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/13/2013 05:48:01 PM) (Source: Application Error) (User: )
Description: Název chybující aplikace: fr3.exe, verze: 0.0.0.0, časové razítko: 0x41c6f555
Název chybujícího modulu: fr3.exe, verze: 0.0.0.0, časové razítko: 0x41c6f555
Kód výjimky: 0xc0000005
Posun chyby: 0x0001e29e
ID chybujícího procesu: 0xd64
Čas spuštění chybující aplikace: 0xfr3.exe0
Cesta k chybující aplikaci: fr3.exe1
Cesta k chybujícímu modulu: fr3.exe2
ID zprávy: fr3.exe3

Error: (10/13/2013 11:56:29 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: WSCommCntr3.exe, verze: 3.3.15.0, časové razítko: 0x4d2e8bf0
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18247, časové razítko: 0x521eaf24
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000004e4e4
ID chybujícího procesu: 0xbac
Čas spuštění chybující aplikace: 0xWSCommCntr3.exe0
Cesta k chybující aplikaci: WSCommCntr3.exe1
Cesta k chybujícímu modulu: WSCommCntr3.exe2
ID zprávy: WSCommCntr3.exe3

Error: (10/10/2013 07:59:08 PM) (Source: Application Error) (User: )
Description: Název chybující aplikace: Connect.Service.ContentService.exe, verze: 2.0.90.0, časové razítko: 0x4d49aaf8
Název chybujícího modulu: KERNELBASE.dll, verze: 6.1.7601.18229, časové razítko: 0x51fb1116
Kód výjimky: 0xe0434352
Posun chyby: 0x0000c41f
ID chybujícího procesu: 0x6bc
Čas spuštění chybující aplikace: 0xConnect.Service.ContentService.exe0
Cesta k chybující aplikaci: Connect.Service.ContentService.exe1
Cesta k chybujícímu modulu: Connect.Service.ContentService.exe2
ID zprávy: Connect.Service.ContentService.exe3

Error: (10/10/2013 07:58:52 PM) (Source: .NET Runtime) (User: )
Description: Aplikace: Connect.Service.ContentService.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.Data.SqlServerCe.SqlCeException
Zásobník:
na System.Data.SqlServerCe.SqlCeDataReader.ProcessResults(Int32)
na System.Data.SqlServerCe.SqlCeDataReader.FetchValue(Int32)
na System.Data.SqlServerCe.SqlCeDataReader.IsDBNull(Int32)
na Connect.Utilities.SqlCEUtil.ReadBytesFromBlob(System.Data.SqlServerCe.SqlCeDataReader, Int32)
na Connect.Utilities.SqlCEUtil.GetObjectFromBlob(System.Data.SqlServerCe.SqlCeDataReader, Int32)
na Connect.Scheduler.JobStore.GetJob(System.Data.SqlServerCe.SqlCeDataReader)
na Connect.Scheduler.JobStore.GetNextFutureJob()
na Connect.Scheduler.JobWorker.DoWork()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()

Error: (10/09/2013 11:54:24 AM) (Source: Windows Search Service) (User: )
Description: Sledování výkonu objektu indexování nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.

Kontext: aplikace , katalog SystemIndex

Error: (10/02/2013 10:04:51 PM) (Source: Microsoft-Windows-RestartManager) (User: NT AUTHORITY)
Description: Aplikaci nebo službu avast! Antivirus nelze ukončit.

Error: (10/01/2013 09:39:43 PM) (Source: Windows Backup) (User: )
Description: Zálohování nebylo dokončeno, protože došlo k chybě při zápisu do umístění zálohy G:\. Chyba: Umístění zálohy nebylo nalezeno nebo není platné. Zkontrolujte nastavení zálohování a umístění zálohy. (0x81000006).

Error: (09/24/2013 03:23:33 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary Symantec Vista Network Dispatch Driver.

System Error:
Systém nemůže nalézt uvedený soubor.
.

Error: (09/24/2013 03:23:33 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary Symantec Iron Driver.

System Error:
Systém nemůže nalézt uvedený soubor.
.

Error: (09/24/2013 03:23:33 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary Symantec Eraser Control driver.

System Error:
Systém nemůže nalézt uvedený soubor.
.


System errors:
=============
Error: (10/22/2013 07:04:57 AM) (Source: Service Control Manager) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
acedrv07

Error: (10/22/2013 07:04:02 AM) (Source: Service Control Manager) (User: )
Description: Služba LogMeIn Hamachi Tunneling Engine neuspěla při spuštění v důsledku následující chyby:
%%1053

Error: (10/22/2013 07:04:02 AM) (Source: Service Control Manager) (User: )
Description: Při čekání na připojení služby LogMeIn Hamachi Tunneling Engine bylo dosaženo časového limitu (30000 ms).

Error: (10/22/2013 07:02:19 AM) (Source: Service Control Manager) (User: )
Description: Služba Nsynas32 neuspěla při spuštění v důsledku následující chyby:
%%1275

Error: (10/22/2013 07:02:19 AM) (Source: Application Popup) (User: )
Description: Načtení \SystemRoot\SysWow64\Drivers\Nsynas32.SYS bylo zablokováno kvůli nekompatibilitě s tímto systémem. Požádejte dodavatele softwaru
o kompatibilní verzi ovladače.

Error: (10/21/2013 07:57:11 PM) (Source: volsnap) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (10/21/2013 07:33:06 PM) (Source: Service Control Manager) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
acedrv07

Error: (10/21/2013 07:32:23 PM) (Source: Service Control Manager) (User: )
Description: Služba LogMeIn Hamachi Tunneling Engine neuspěla při spuštění v důsledku následující chyby:
%%1053

Error: (10/21/2013 07:32:23 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na připojení služby LogMeIn Hamachi Tunneling Engine bylo dosaženo časového limitu (30000 ms).

Error: (10/21/2013 07:31:53 PM) (Source: Service Control Manager) (User: )
Description: Při čekání na odezvu transakce služby HPWMISVC bylo dosaženo časového limitu (30000 ms).


Microsoft Office Sessions:
=========================
Error: (05/15/2013 07:19:26 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 16884 seconds with 8760 seconds of active time. This session ended with a crash.

Error: (04/30/2013 10:11:32 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.6600.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1357 seconds with 720 seconds of active time. This session ended with a crash.

Error: (04/08/2013 10:19:04 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 94 seconds with 60 seconds of active time. This session ended with a crash.

Error: (01/09/2013 02:21:22 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 9 seconds with 0 seconds of active time. This session ended with a crash.

Error: (01/02/2013 05:20:24 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 4 seconds with 0 seconds of active time. This session ended with a crash.

Error: (01/02/2013 05:19:53 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 8 seconds with 0 seconds of active time. This session ended with a crash.

Error: (01/02/2013 05:19:36 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 6 seconds with 0 seconds of active time. This session ended with a crash.

Error: (01/02/2013 05:19:20 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 7 seconds with 0 seconds of active time. This session ended with a crash.

Error: (01/02/2013 05:18:59 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 532 seconds with 240 seconds of active time. This session ended with a crash.


CodeIntegrity Errors:
===================================
Date: 2013-10-22 07:01:33.484
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-22 07:01:33.048
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-21 19:29:43.158
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-21 19:29:42.768
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-19 17:33:40.486
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-19 17:33:40.112
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-19 12:53:11.564
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-19 12:53:11.190
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-19 08:31:27.751
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-19 08:31:27.392
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\acedrv07.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Percentage of memory in use: 55%
Total physical RAM: 3834.9 MB
Available physical RAM: 1687.69 MB
Total Pagefile: 7667.98 MB
Available Pagefile: 4976.17 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:444.59 GB) (Free:3.6 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:20.88 GB) (Free:3.02 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32
Drive g: () (Removable) (Total:1.9 GB) (Free:1.9 GB) FAT

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 466 GB) (Disk ID: 3C5AAB84)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=445 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=21 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)

========================================================
Disk: 1 (Size: 2 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=2 GB) - (Type=06)

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kontrola logu - vyskakovací okna

#10 Příspěvek od vyosek »

:arrow: Odinstalujte MSE, je v kolizi s Avastem

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [172032 2010-05-15] (Sun Microsystems, Inc.)
    HKLM\...\Run: [VDownloader] - C:\Program Files\VDownloader\VDownloader.exe [879104 2012-12-20] (Vitzo)
    HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
    HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
    HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [4910912 2011-08-02] (DT Soft Ltd)
    HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
    HKCU\...\Run: [Google Update] - C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-04-11] (Google Inc.)
    HKCU\...\Policies\system: [DisableLockWorkstation] 0
    HKCU\...\Policies\system: [DisableChangePassword] 0
    HKLM-x32\...\Run: [] - [x]
    HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
    HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
    
    SearchScopes: HKLM - DefaultScope value is missing.
    SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    Toolbar: HKCU - No Name - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No File
    ShellExecuteHooks-x32: - UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File [ ]
    
    FF SearchPlugin: C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icq-search.xml
    FF SearchPlugin: C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\searchplugins-backup
    FF Extension: coonttinnuietosAvue - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\bx3_fo@owg-ufn.org
    FF Extension: BitComet 视频下载器 - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
    FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
    
    2013-10-22 07:27 - 2013-10-22 07:27 - 00029696 _____ C:\Users\Zdeněk\AppData\Local\MSGBOX.EXE
    2013-10-22 07:27 - 2013-10-22 07:27 - 00015327 _____ C:\Users\Zdeněk\Desktop\LM.bat
    C:\Users\Zdeněk\fbchathistory.dat
    C:\Users\Zdeněk\AppData\Local\Temp\bassmod.dll
    C:\Users\Zdeněk\AppData\Local\Temp\BitEA77.tmp.exe
    C:\Users\Zdeněk\AppData\Local\Temp\Quarantine.exe
    
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core.job => C:\Users\Zdenk\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA.job => C:\Users\Zdenk\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\HPCeeScheduleForZdeněk.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    
    Hosts:
    
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

zdek
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 15 říj 2009 21:34

Re: Kontrola logu - vyskakovací okna

#11 Příspěvek od zdek »

fixlog:


Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 22-10-2013
Ran by Zdeněk at 2013-10-22 23:07:47 Run:1
Running from C:\Users\Zdeněk\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [172032 2010-05-15] (Sun Microsystems, Inc.)
HKLM\...\Run: [VDownloader] - C:\Program Files\VDownloader\VDownloader.exe [879104 2012-12-20] (Vitzo)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Zdeněk\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [4910912 2011-08-02] (DT Soft Ltd)
HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
HKCU\...\Run: [Google Update] - C:\Users\Zdeněk\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-04-11] (Google Inc.)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)

SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKCU - No Name - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No File
ShellExecuteHooks-x32: - UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File [ ]

FF SearchPlugin: C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icq-search.xml
FF SearchPlugin: C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\searchplugins-backup
FF Extension: coonttinnuietosAvue - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\bx3_fo@owg-ufn.org
FF Extension: BitComet ????? - C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

2013-10-22 07:27 - 2013-10-22 07:27 - 00029696 _____ C:\Users\Zdeněk\AppData\Local\MSGBOX.EXE
2013-10-22 07:27 - 2013-10-22 07:27 - 00015327 _____ C:\Users\Zdeněk\Desktop\LM.bat
C:\Users\Zdeněk\fbchathistory.dat
C:\Users\Zdeněk\AppData\Local\Temp\bassmod.dll
C:\Users\Zdeněk\AppData\Local\Temp\BitEA77.tmp.exe
C:\Users\Zdeněk\AppData\Local\Temp\Quarantine.exe

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core.job => C:\Users\Zdenk\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA.job => C:\Users\Zdenk\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForZdeněk.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

Hosts:

End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\VDownloader => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\EnableShellExecuteHooks => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\RESTART_STICKY_NOTES => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableLockWorkstation => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableChangePassword => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C55BBCD6-41AD-48AD-9953-3609C48EACC7} => Value deleted successfully.
HKCR\CLSID\{C55BBCD6-41AD-48AD-9953-3609C48EACC7} => Key not found.
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{B5A7F190-DDA6-4420-B3BA-52453494E6CD} => Value deleted successfully.
HKCR\Wow6432Node\CLSID\{B5A7F190-DDA6-4420-B3BA-52453494E6CD} => Key deleted successfully.
C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\icq-search.xml => Moved successfully.
C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\searchplugins\searchplugins-backup => Moved successfully.
C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\bx3_fo@owg-ufn.org => Moved successfully.
C:\Users\Zdeněk\AppData\Roaming\Mozilla\Firefox\Profiles\q55mrei6.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} => Moved successfully.
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => Value deleted successfully.
"C:\Users\Zdeněk\AppData\Local\MSGBOX.EXE" => File/Directory not found.
"C:\Users\Zdeněk\Desktop\LM.bat" => File/Directory not found.
C:\Users\Zdeněk\fbchathistory.dat => Moved successfully.
C:\Users\Zdeněk\AppData\Local\Temp\bassmod.dll => Moved successfully.
C:\Users\Zdeněk\AppData\Local\Temp\BitEA77.tmp.exe => Moved successfully.
C:\Users\Zdeněk\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1442760717-3373767655-2911433040-1000UA.job => Moved successfully.
C:\Windows\Tasks\HPCeeScheduleForZdeněk.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kontrola logu - vyskakovací okna

#12 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět