
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosim o pomoc
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
prosim o pomoc
Ahoj, prosim o pomoc mam uplne zasekany PC. Diky
Tady je log:
Logfile of random's system information tool 1.09 (written by random/random)
Run by denisa at 2013-12-14 21:01:36
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 221 GB (48%) free of 458 GB
Total RAM: 3948 MB (55% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:02:03, on 14.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\ProgramData\Updater\updater.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
C:\ProgramData\RHelpers\ChromeHelper\ChromeHelper.exe
C:\ProgramData\RHelpers\FireFoxHelper\FireFoxHelper.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
C:\ProgramData\RHelpers\IEHelper\IeHelper.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
C:\Users\denisa\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\denisa.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\program files (x86)\avira\antivir desktop\ipmGui.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: ArcadeParlor Games - {39AD0726-986D-40F9-972B-E3BFA24B7745} - C:\Users\denisa\AppData\Local\ArcadeParlor\Arcadeparlor.dll
O2 - BHO: SearchDonkey - {44ed99e2-16a6-4b89-80d6-5b21cf42e78b} - C:\ProgramData\SearchDonkey\IE\common.dll
O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: DCA - {B49699FC-1665-4414-A1CB-C4A2A4A13EEC} - C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-bho.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [HPQuickWebProxy] "C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Updater] C:\ProgramData\Updater\Updater.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Updater] C:\ProgramData\Updater\updater.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20614.www2.hp.com/ediags/gmd/In ... ect118.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ConsumerInput Update Service (consumerinput_update) (consumerinput_update) - ConsumerInput - C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
O23 - Service: ConsumerInput Update Service (consumerinput_updatem) (consumerinput_updatem) - ConsumerInput - C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Online Games Manager (ogmservice) - RealNetworks, Inc. - C:\Program Files (x86)\Online Games Manager\ogmservice.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RoxioNow Service - Roxio - C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WebCakeUpdater - cake bake - C:\Program Files (x86)\Movdap\WBDesktop.Updater.1.0.0.16.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 17028 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\ArcadeParlor.job
C:\Windows\tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job
C:\Windows\tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job
C:\Windows\tasks\ConsumerInputUpdateTaskMachineCore.job
C:\Windows\tasks\ConsumerInputUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job
C:\Windows\tasks\HDvid Codec V1-codedownloader.job
C:\Windows\tasks\HDvid Codec V1-enabler.job
C:\Windows\tasks\HDvid Codec V1-updater.job
C:\Windows\tasks\HPCeeScheduleFordenisa.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll [2013-08-06 1561880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39AD0726-986D-40F9-972B-E3BFA24B7745}]
ArcadeParlor Games - C:\Users\denisa\AppData\Local\ArcadeParlor\Arcadeparlor.dll [2013-12-13 187256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44ed99e2-16a6-4b89-80d6-5b21cf42e78b}]
SearchDonkey - C:\ProgramData\SearchDonkey\IE\common.dll [2013-11-20 410256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Security Engine Registrar - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2011-11-03 599680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-10-22 51872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}]
Consumer Input - C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-bho.dll [2013-11-05 1042776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2013-10-11 705240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Security Engine - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2011-11-03 599680]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll [2013-08-06 1561880]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-09-13 283160]
"HPQuickWebProxy"=C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2011-06-28 168504]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2012-07-27 35768]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2011-10-26 74752]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-28 1259376]
"ZoneAlarm"=C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [2011-11-09 73360]
"HPConnectionManager"=C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2011-06-14 103992]
""= []
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-03-05 578944]
"HPOSD"=C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [2011-08-19 379960]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-12-14 683576]
"Updater"=C:\ProgramData\Updater\Updater.exe [2013-11-20 482448]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-25 136176]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-14 20584608]
"Updater"=C:\ProgramData\Updater\updater.exe [2013-11-20 482448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"midi1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"midi3"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
"VIDC.FFDS"=ff_vfw.dll
"msacm.siren"=sirenacm.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-14 20:53:14 ----D---- C:\rsit
2013-12-14 19:50:20 ----A---- C:\Windows\SysWOW64\sho838C.tmp
2013-12-13 22:23:36 ----D---- C:\ProgramData\PC Optimizer Pro
2013-12-13 22:05:29 ----D---- C:\ProgramData\Yahoo! Companion
2013-12-13 22:05:20 ----D---- C:\ProgramData\Yahoo!
2013-12-13 22:05:19 ----D---- C:\Users\denisa\AppData\Roaming\Yahoo!
2013-12-13 22:05:12 ----D---- C:\Program Files (x86)\Yahoo!
2013-12-13 22:05:00 ----A---- C:\out.txt
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Consumer Input
2013-12-13 22:04:46 ----D---- C:\ProgramData\Updater
2013-12-13 22:04:46 ----D---- C:\ProgramData\RHelpers
2013-12-13 22:04:43 ----D---- C:\ProgramData\SearchDonkey
2013-12-11 17:30:47 ----A---- C:\Windows\SysWOW64\shoF368.tmp
2013-12-11 09:20:32 ----A---- C:\Windows\SysWOW64\wmploc.DLL
2013-12-11 09:20:31 ----A---- C:\Windows\SysWOW64\wmp.dll
2013-12-11 09:18:45 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2013-12-11 09:18:45 ----A---- C:\Windows\SysWOW64\ieui.dll
2013-12-11 09:18:43 ----A---- C:\Windows\SysWOW64\jscript9diag.dll
2013-12-11 09:18:43 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2013-12-11 09:18:42 ----A---- C:\Windows\SysWOW64\wininet.dll
2013-12-11 09:18:42 ----A---- C:\Windows\SysWOW64\urlmon.dll
2013-12-11 09:18:42 ----A---- C:\Windows\SysWOW64\iertutil.dll
2013-12-11 09:18:40 ----A---- C:\Windows\SysWOW64\ieframe.dll
2013-12-11 09:18:39 ----A---- C:\Windows\SysWOW64\mshtml.dll
2013-12-11 09:18:38 ----A---- C:\Windows\SysWOW64\jscript9.dll
2013-12-10 21:05:28 ----A---- C:\Windows\SysWOW64\msieftp.dll
2013-12-10 21:05:26 ----A---- C:\Windows\SysWOW64\WMPhoto.dll
2013-12-10 21:05:25 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2013-12-10 21:03:11 ----A---- C:\Windows\SysWOW64\tzres.dll
2013-12-10 21:02:47 ----A---- C:\Windows\SysWOW64\wscript.exe
2013-12-10 21:02:47 ----A---- C:\Windows\SysWOW64\scrrun.dll
2013-12-10 21:02:47 ----A---- C:\Windows\SysWOW64\cscript.exe
2013-12-03 09:14:42 ----A---- C:\Windows\SysWOW64\elshyph.dll
2013-12-03 09:14:35 ----A---- C:\Windows\SysWOW64\jsIntl.dll
2013-12-03 09:14:34 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-03 09:14:34 ----A---- C:\Windows\SysWOW64\msrating.dll
2013-12-03 09:14:34 ----A---- C:\Windows\SysWOW64\msls31.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\url.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\ieapfltr.dat
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\wextract.exe
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\webcheck.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\inseng.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\iexpress.exe
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\iesetup.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\iernonce.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\icardie.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\vbscript.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\pngfilt.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\occache.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\mshtmler.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\mshta.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\jscript.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\imgutil.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\iesysprep.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\iepeers.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-02 21:38:30 ----D---- C:\Users\denisa\AppData\Roaming\Friday's games
2013-12-02 21:38:07 ----D---- C:\ProgramData\Trymedia
2013-12-02 21:38:06 ----D---- C:\Program Files (x86)\Online Games Manager
2013-12-02 20:07:49 ----A---- C:\Windows\GPlrLanc.dat
2013-12-02 20:07:44 ----D---- C:\Program Files (x86)\Free Ride Games
======List of files/folders modified in the last 1 month======
2013-12-14 21:01:43 ----D---- C:\Windows\Temp
2013-12-14 21:01:40 ----D---- C:\Program Files (x86)\trend micro
2013-12-14 20:59:19 ----A---- C:\Windows\SysWOW64\log.txt
2013-12-14 20:51:55 ----D---- C:\Users\denisa\AppData\Roaming\Skype
2013-12-14 20:34:45 ----D---- C:\Windows\System32
2013-12-14 20:34:44 ----D---- C:\Windows\inf
2013-12-14 20:26:35 ----D---- C:\Windows
2013-12-14 20:13:40 ----D---- C:\Users\denisa\AppData\Roaming\Winamp
2013-12-14 20:11:53 ----D---- C:\Windows\Panther
2013-12-14 20:11:30 ----D---- C:\Windows\Logs
2013-12-14 20:11:30 ----D---- C:\Windows\debug
2013-12-14 19:50:20 ----D---- C:\Windows\SysWOW64
2013-12-14 15:00:57 ----D---- C:\Windows\Tasks
2013-12-14 09:32:49 ----RD---- C:\Program Files
2013-12-14 09:32:49 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-12-13 23:06:08 ----D---- C:\Program Files (x86)
2013-12-13 23:05:54 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:23:36 ----HD---- C:\ProgramData
2013-12-13 22:10:22 ----SHD---- C:\Windows\Installer
2013-12-13 22:10:22 ----SHD---- C:\Config.Msi
2013-12-13 22:10:05 ----SHD---- C:\System Volume Information
2013-12-13 22:09:09 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2013-12-13 22:08:58 ----D---- C:\Windows\Downloaded Program Files
2013-12-13 22:05:00 ----D---- C:\Users\denisa\AppData\Roaming\Mozilla
2013-12-13 18:39:22 ----D---- C:\Windows\rescache
2013-12-12 19:39:07 ----D---- C:\Users\denisa\AppData\Roaming\vlc
2013-12-11 17:34:01 ----D---- C:\Windows\Prefetch
2013-12-11 17:32:59 ----D---- C:\Windows\winsxs
2013-12-11 17:30:06 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-11 17:30:04 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-11 17:30:02 ----D---- C:\Windows\SysWOW64\en-US
2013-12-10 22:53:16 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-10 11:02:15 ----D---- C:\Program Files (x86)\Google
2013-12-06 18:59:52 ----D---- C:\Windows\SysWOW64\migration
2013-12-06 18:59:47 ----D---- C:\Windows\PolicyDefinitions
2013-12-03 23:02:19 ----D---- C:\Users\denisa\AppData\Roaming\SoftGrid Client
2013-12-03 00:01:29 ----D---- C:\Program Files (x86)\HDvid Codec V1
2013-12-01 19:50:59 ----D---- C:\ProgramData\Skype
2013-12-01 19:50:51 ----RD---- C:\Program Files (x86)\Skype
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys []
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys []
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys []
R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2011-11-03 33672]
R3 AR5416;Atheros Wireless Adapter Service; C:\Windows\system32\DRIVERS\athwx.sys []
R3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys []
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys []
R3 btath_avdt;Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys []
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys []
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys []
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys []
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys []
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys []
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys []
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys []
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys []
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys []
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys []
R3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys []
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys []
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys []
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys []
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys []
S3 pbfilter;pbfilter; \??\C:\Program Files\PeerBlock\pbfilter.sys [2010-11-06 24176]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
S3 Point64;Microsoft Mouse and Keyboard Center Filter Driver; C:\Windows\system32\DRIVERS\point64.sys []
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS []
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS []
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys []
S3 usbscan;USB Scanner Driver; C:\Windows\system32\drivers\usbscan.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-17 98208]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-12-14 440376]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-12-14 440376]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-10-22 106144]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 HPClientSvc;HP Client Services; C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-08-10 197536]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-03-05 35200]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2010-12-27 1817088]
R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2011-11-03 827520]
R2 OfficeSvc;Microsoft Office Service; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-11-02 1907896]
R2 ogmservice;Online Games Manager; C:\Program Files (x86)\Online Games Manager\ogmservice.exe [2013-08-08 559552]
R2 RoxioNow Service;RoxioNow Service; C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [2010-11-26 399344]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
R2 WebCakeUpdater;WebCakeUpdater; C:\Program Files (x86)\Movdap\WBDesktop.Updater.1.0.0.16.exe [2013-08-15 51992]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R2 YahooAUService;Yahoo! Updater; C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-09 602392]
R2 ZAtheros Bt&Wlan Coex Agent;ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-10-22 158880]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 consumerinput_update;ConsumerInput Update Service (consumerinput_update); C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe [2013-12-13 106296]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07 136176]
S2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-09-13 13336]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-12-03 325656]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-03 2656280]
S2 vsmon;TrueVector Internet Monitor; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2011-11-09 2420616]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10 257416]
S3 consumerinput_updatem;ConsumerInput Update Service (consumerinput_updatem); C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe [2013-12-13 106296]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07 136176]
S3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-06-14 1098296]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe /V []
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-08-20 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2013-08-20 5132888]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-12-14 1164360]
-----------------EOF-----------------
Tady je log:
Logfile of random's system information tool 1.09 (written by random/random)
Run by denisa at 2013-12-14 21:01:36
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 221 GB (48%) free of 458 GB
Total RAM: 3948 MB (55% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:02:03, on 14.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\ProgramData\Updater\updater.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
C:\ProgramData\RHelpers\ChromeHelper\ChromeHelper.exe
C:\ProgramData\RHelpers\FireFoxHelper\FireFoxHelper.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
C:\ProgramData\RHelpers\IEHelper\IeHelper.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
C:\Users\denisa\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\denisa.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\program files (x86)\avira\antivir desktop\ipmGui.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: ArcadeParlor Games - {39AD0726-986D-40F9-972B-E3BFA24B7745} - C:\Users\denisa\AppData\Local\ArcadeParlor\Arcadeparlor.dll
O2 - BHO: SearchDonkey - {44ed99e2-16a6-4b89-80d6-5b21cf42e78b} - C:\ProgramData\SearchDonkey\IE\common.dll
O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: DCA - {B49699FC-1665-4414-A1CB-C4A2A4A13EEC} - C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-bho.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [HPQuickWebProxy] "C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Updater] C:\ProgramData\Updater\Updater.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Updater] C:\ProgramData\Updater\updater.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20614.www2.hp.com/ediags/gmd/In ... ect118.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ConsumerInput Update Service (consumerinput_update) (consumerinput_update) - ConsumerInput - C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
O23 - Service: ConsumerInput Update Service (consumerinput_updatem) (consumerinput_updatem) - ConsumerInput - C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Online Games Manager (ogmservice) - RealNetworks, Inc. - C:\Program Files (x86)\Online Games Manager\ogmservice.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RoxioNow Service - Roxio - C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WebCakeUpdater - cake bake - C:\Program Files (x86)\Movdap\WBDesktop.Updater.1.0.0.16.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 17028 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\ArcadeParlor.job
C:\Windows\tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job
C:\Windows\tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job
C:\Windows\tasks\ConsumerInputUpdateTaskMachineCore.job
C:\Windows\tasks\ConsumerInputUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job
C:\Windows\tasks\HDvid Codec V1-codedownloader.job
C:\Windows\tasks\HDvid Codec V1-enabler.job
C:\Windows\tasks\HDvid Codec V1-updater.job
C:\Windows\tasks\HPCeeScheduleFordenisa.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll [2013-08-06 1561880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39AD0726-986D-40F9-972B-E3BFA24B7745}]
ArcadeParlor Games - C:\Users\denisa\AppData\Local\ArcadeParlor\Arcadeparlor.dll [2013-12-13 187256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44ed99e2-16a6-4b89-80d6-5b21cf42e78b}]
SearchDonkey - C:\ProgramData\SearchDonkey\IE\common.dll [2013-11-20 410256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Security Engine Registrar - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2011-11-03 599680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-10-22 51872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}]
Consumer Input - C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-bho.dll [2013-11-05 1042776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2013-10-11 705240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Security Engine - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll [2011-11-03 599680]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll [2013-08-06 1561880]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-09-13 283160]
"HPQuickWebProxy"=C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [2011-06-28 168504]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2012-07-27 35768]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2011-10-26 74752]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-28 1259376]
"ZoneAlarm"=C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [2011-11-09 73360]
"HPConnectionManager"=C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2011-06-14 103992]
""= []
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-03-05 578944]
"HPOSD"=C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [2011-08-19 379960]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-12-14 683576]
"Updater"=C:\ProgramData\Updater\Updater.exe [2013-11-20 482448]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-25 136176]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-14 20584608]
"Updater"=C:\ProgramData\Updater\updater.exe [2013-11-20 482448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"midi1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"midi3"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
"VIDC.FFDS"=ff_vfw.dll
"msacm.siren"=sirenacm.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-12-14 20:53:14 ----D---- C:\rsit
2013-12-14 19:50:20 ----A---- C:\Windows\SysWOW64\sho838C.tmp
2013-12-13 22:23:36 ----D---- C:\ProgramData\PC Optimizer Pro
2013-12-13 22:05:29 ----D---- C:\ProgramData\Yahoo! Companion
2013-12-13 22:05:20 ----D---- C:\ProgramData\Yahoo!
2013-12-13 22:05:19 ----D---- C:\Users\denisa\AppData\Roaming\Yahoo!
2013-12-13 22:05:12 ----D---- C:\Program Files (x86)\Yahoo!
2013-12-13 22:05:00 ----A---- C:\out.txt
2013-12-13 22:04:53 ----D---- C:\Program Files (x86)\Consumer Input
2013-12-13 22:04:46 ----D---- C:\ProgramData\Updater
2013-12-13 22:04:46 ----D---- C:\ProgramData\RHelpers
2013-12-13 22:04:43 ----D---- C:\ProgramData\SearchDonkey
2013-12-11 17:30:47 ----A---- C:\Windows\SysWOW64\shoF368.tmp
2013-12-11 09:20:32 ----A---- C:\Windows\SysWOW64\wmploc.DLL
2013-12-11 09:20:31 ----A---- C:\Windows\SysWOW64\wmp.dll
2013-12-11 09:18:45 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2013-12-11 09:18:45 ----A---- C:\Windows\SysWOW64\ieui.dll
2013-12-11 09:18:43 ----A---- C:\Windows\SysWOW64\jscript9diag.dll
2013-12-11 09:18:43 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2013-12-11 09:18:42 ----A---- C:\Windows\SysWOW64\wininet.dll
2013-12-11 09:18:42 ----A---- C:\Windows\SysWOW64\urlmon.dll
2013-12-11 09:18:42 ----A---- C:\Windows\SysWOW64\iertutil.dll
2013-12-11 09:18:40 ----A---- C:\Windows\SysWOW64\ieframe.dll
2013-12-11 09:18:39 ----A---- C:\Windows\SysWOW64\mshtml.dll
2013-12-11 09:18:38 ----A---- C:\Windows\SysWOW64\jscript9.dll
2013-12-10 21:05:28 ----A---- C:\Windows\SysWOW64\msieftp.dll
2013-12-10 21:05:26 ----A---- C:\Windows\SysWOW64\WMPhoto.dll
2013-12-10 21:05:25 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2013-12-10 21:03:11 ----A---- C:\Windows\SysWOW64\tzres.dll
2013-12-10 21:02:47 ----A---- C:\Windows\SysWOW64\wscript.exe
2013-12-10 21:02:47 ----A---- C:\Windows\SysWOW64\scrrun.dll
2013-12-10 21:02:47 ----A---- C:\Windows\SysWOW64\cscript.exe
2013-12-03 09:14:42 ----A---- C:\Windows\SysWOW64\elshyph.dll
2013-12-03 09:14:35 ----A---- C:\Windows\SysWOW64\jsIntl.dll
2013-12-03 09:14:34 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-03 09:14:34 ----A---- C:\Windows\SysWOW64\msrating.dll
2013-12-03 09:14:34 ----A---- C:\Windows\SysWOW64\msls31.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\url.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\ieapfltr.dat
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2013-12-03 09:14:33 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\wextract.exe
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\webcheck.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\licmgr10.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\inseng.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\iexpress.exe
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\iesetup.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\iernonce.dll
2013-12-03 09:14:32 ----A---- C:\Windows\SysWOW64\icardie.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\vbscript.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\pngfilt.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\occache.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\mshtmler.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\mshta.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\msfeedssync.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\jscript.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\imgutil.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\iesysprep.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\iepeers.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-03 09:14:31 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-02 21:38:30 ----D---- C:\Users\denisa\AppData\Roaming\Friday's games
2013-12-02 21:38:07 ----D---- C:\ProgramData\Trymedia
2013-12-02 21:38:06 ----D---- C:\Program Files (x86)\Online Games Manager
2013-12-02 20:07:49 ----A---- C:\Windows\GPlrLanc.dat
2013-12-02 20:07:44 ----D---- C:\Program Files (x86)\Free Ride Games
======List of files/folders modified in the last 1 month======
2013-12-14 21:01:43 ----D---- C:\Windows\Temp
2013-12-14 21:01:40 ----D---- C:\Program Files (x86)\trend micro
2013-12-14 20:59:19 ----A---- C:\Windows\SysWOW64\log.txt
2013-12-14 20:51:55 ----D---- C:\Users\denisa\AppData\Roaming\Skype
2013-12-14 20:34:45 ----D---- C:\Windows\System32
2013-12-14 20:34:44 ----D---- C:\Windows\inf
2013-12-14 20:26:35 ----D---- C:\Windows
2013-12-14 20:13:40 ----D---- C:\Users\denisa\AppData\Roaming\Winamp
2013-12-14 20:11:53 ----D---- C:\Windows\Panther
2013-12-14 20:11:30 ----D---- C:\Windows\Logs
2013-12-14 20:11:30 ----D---- C:\Windows\debug
2013-12-14 19:50:20 ----D---- C:\Windows\SysWOW64
2013-12-14 15:00:57 ----D---- C:\Windows\Tasks
2013-12-14 09:32:49 ----RD---- C:\Program Files
2013-12-14 09:32:49 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-12-13 23:06:08 ----D---- C:\Program Files (x86)
2013-12-13 23:05:54 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 22:23:36 ----HD---- C:\ProgramData
2013-12-13 22:10:22 ----SHD---- C:\Windows\Installer
2013-12-13 22:10:22 ----SHD---- C:\Config.Msi
2013-12-13 22:10:05 ----SHD---- C:\System Volume Information
2013-12-13 22:09:09 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2013-12-13 22:08:58 ----D---- C:\Windows\Downloaded Program Files
2013-12-13 22:05:00 ----D---- C:\Users\denisa\AppData\Roaming\Mozilla
2013-12-13 18:39:22 ----D---- C:\Windows\rescache
2013-12-12 19:39:07 ----D---- C:\Users\denisa\AppData\Roaming\vlc
2013-12-11 17:34:01 ----D---- C:\Windows\Prefetch
2013-12-11 17:32:59 ----D---- C:\Windows\winsxs
2013-12-11 17:30:06 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-11 17:30:04 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-11 17:30:02 ----D---- C:\Windows\SysWOW64\en-US
2013-12-10 22:53:16 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-10 11:02:15 ----D---- C:\Program Files (x86)\Google
2013-12-06 18:59:52 ----D---- C:\Windows\SysWOW64\migration
2013-12-06 18:59:47 ----D---- C:\Windows\PolicyDefinitions
2013-12-03 23:02:19 ----D---- C:\Users\denisa\AppData\Roaming\SoftGrid Client
2013-12-03 00:01:29 ----D---- C:\Program Files (x86)\HDvid Codec V1
2013-12-01 19:50:59 ----D---- C:\ProgramData\Skype
2013-12-01 19:50:51 ----RD---- C:\Program Files (x86)\Skype
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys []
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys []
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys []
R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2011-11-03 33672]
R3 AR5416;Atheros Wireless Adapter Service; C:\Windows\system32\DRIVERS\athwx.sys []
R3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys []
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys []
R3 btath_avdt;Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys []
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys []
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys []
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys []
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys []
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys []
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys []
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys []
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys []
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys []
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys []
R3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys []
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys []
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys []
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys []
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys []
S3 pbfilter;pbfilter; \??\C:\Program Files\PeerBlock\pbfilter.sys [2010-11-06 24176]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
S3 Point64;Microsoft Mouse and Keyboard Center Filter Driver; C:\Windows\system32\DRIVERS\point64.sys []
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS []
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS []
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys []
S3 usbscan;USB Scanner Driver; C:\Windows\system32\drivers\usbscan.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-17 98208]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-12-14 440376]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-12-14 440376]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-10-22 106144]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2013-04-22 822504]
R2 HPClientSvc;HP Client Services; C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-08-10 197536]
R2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-03-05 35200]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2010-12-27 1817088]
R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2011-11-03 827520]
R2 OfficeSvc;Microsoft Office Service; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-11-02 1907896]
R2 ogmservice;Online Games Manager; C:\Program Files (x86)\Online Games Manager\ogmservice.exe [2013-08-08 559552]
R2 RoxioNow Service;RoxioNow Service; C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [2010-11-26 399344]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-06-26 523944]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
R2 WebCakeUpdater;WebCakeUpdater; C:\Program Files (x86)\Movdap\WBDesktop.Updater.1.0.0.16.exe [2013-08-15 51992]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
R2 YahooAUService;Yahoo! Updater; C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-09 602392]
R2 ZAtheros Bt&Wlan Coex Agent;ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-10-22 158880]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-06-26 207528]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 consumerinput_update;ConsumerInput Update Service (consumerinput_update); C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe [2013-12-13 106296]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07 136176]
S2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-09-13 13336]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-12-03 325656]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-03 2656280]
S2 vsmon;TrueVector Internet Monitor; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2011-11-09 2420616]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10 257416]
S3 consumerinput_updatem;ConsumerInput Update Service (consumerinput_updatem); C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe [2013-12-13 106296]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07 136176]
S3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-06-14 1098296]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe /V []
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-08-20 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2013-08-20 5132888]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-12-14 1164360]
-----------------EOF-----------------
Re: prosim o pomoc
Zdravim a pekne rano preji
Stahnete Shortcut Cleaner http://www.bleepingcomputer.com/downloa ... t-cleaner/
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner


- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Spustte tradicne dvouklikem
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v miste spusteni jako sc-cleaner.txt, ten sem vlozte

- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: prosim o pomoc
Dekuji
# AdwCleaner v3.015 - Report created 14/12/2013 at 23:17:28
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : denisa - DENISA-HP
# Running from : C:\Users\denisa\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : WebCakeUpdater
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\PC Optimizer Pro
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files (x86)\Free Ride Games
Folder Deleted : C:\Program Files (x86)\Movdap
Folder Deleted : C:\Program Files (x86)\Web Cake
Folder Deleted : C:\Program Files (x86)\HDvid Codec V1
Folder Deleted : C:\Users\denisa\AppData\LocalLow\boost_interprocess
Folder Deleted : C:\Users\denisa\AppData\Roaming\Movdap
Folder Deleted : C:\Users\denisa\AppData\Roaming\Web Cake
Folder Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb
Folder Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgiaikfpllchefojlnehlmpekeogihnm
Folder Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\njljkdinboobkmkihgcohanchjnjpgjk
File Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fastcontent.conduit.com_0.localstorage
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dnllcmllkjofnojidnaknldfehfhehoo
Key Deleted : HKCU\Software\Google\Chrome\Extensions\cgiaikfpllchefojlnehlmpekeogihnm
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cgiaikfpllchefojlnehlmpekeogihnm
Key Deleted : HKCU\Software\Google\Chrome\Extensions\njljkdinboobkmkihgcohanchjnjpgjk
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\njljkdinboobkmkihgcohanchjnjpgjk
Key Deleted : HKLM\SOFTWARE\Classes\AppID\CptUrlPassthru.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\dca-api.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\dca-bho.DLL
Key Deleted : HKLM\SOFTWARE\Classes\CptUrlPassthru.hxxpMonitor
Key Deleted : HKLM\SOFTWARE\Classes\CptUrlPassthru.hxxpMonitor.1
Key Deleted : HKLM\SOFTWARE\Classes\dcabho.Dca
Key Deleted : HKLM\SOFTWARE\Classes\dcabho.Dca.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\webcakeupdater
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_google-earth_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_google-earth_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_vlc-media-player_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_vlc-media-player_RASMANCS
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Updater]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{38495740-0035-4471-851E-F5BBB86AB085}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{72D89EBF-0C5D-4190-91FD-398E45F1D007}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{DBBBC528-9C8C-4051-9187-ED6F01A457C9}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{DD7C44CC-0F60-4FD9-A38F-5CF30D698AC2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{60260024-AA48-4A2F-84DA-2C2DCB24AAD0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{15527BF5-9729-49DC-889C-9F956983154C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD05B915-F77B-474A-9D42-9FEEAF5475C4}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{7BAB653D-88FB-4F60-AFC2-8E6FD59FAFF3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C8758BC4-4581-48C7-BA38-C1A650477AE9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FEB62B15-CC00-4736-AAEC-BA046C9DFF73}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21d59046-8568-4e51-bd32-79bd751dcce6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{499b15ac-881f-4224-9373-e2af2d95108b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c2a9ed0-361d-4678-bbb6-fa668315952d}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82fe22f6-6581-4ed3-b962-d0114cfc8f04}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a178fe10-2662-4286-93ab-0477a425a351}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{15527BF5-9729-49DC-889C-9F956983154C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{DD05B915-F77B-474A-9D42-9FEEAF5475C4}
Key Deleted : HKCU\Software\Compete
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\pc optimizer pro
Key Deleted : HKCU\Software\AppDataLow\Software\Compete
Key Deleted : HKCU\Software\AppDataLow\Software\CompeteInc
Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
Key Deleted : HKCU\Software\AppDataLow\Software\HDvid Codec V1
Key Deleted : HKLM\Software\CompeteInc
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\HDvid Codec V1
Key Deleted : HKLM\Software\InstallIQ
Key Deleted : HKLM\Software\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HDvid Codec V1
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Mozilla Firefox v
-\\ Google Chrome v
[ File : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [9098 octets] - [14/12/2013 23:16:03]
AdwCleaner[S0].txt - [8772 octets] - [14/12/2013 23:17:28]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8832 octets] ##########
# AdwCleaner v3.015 - Report created 14/12/2013 at 23:17:28
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : denisa - DENISA-HP
# Running from : C:\Users\denisa\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : WebCakeUpdater
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\PC Optimizer Pro
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files (x86)\Free Ride Games
Folder Deleted : C:\Program Files (x86)\Movdap
Folder Deleted : C:\Program Files (x86)\Web Cake
Folder Deleted : C:\Program Files (x86)\HDvid Codec V1
Folder Deleted : C:\Users\denisa\AppData\LocalLow\boost_interprocess
Folder Deleted : C:\Users\denisa\AppData\Roaming\Movdap
Folder Deleted : C:\Users\denisa\AppData\Roaming\Web Cake
Folder Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb
Folder Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgiaikfpllchefojlnehlmpekeogihnm
Folder Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\njljkdinboobkmkihgcohanchjnjpgjk
File Deleted : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fastcontent.conduit.com_0.localstorage
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dnllcmllkjofnojidnaknldfehfhehoo
Key Deleted : HKCU\Software\Google\Chrome\Extensions\cgiaikfpllchefojlnehlmpekeogihnm
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cgiaikfpllchefojlnehlmpekeogihnm
Key Deleted : HKCU\Software\Google\Chrome\Extensions\njljkdinboobkmkihgcohanchjnjpgjk
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\njljkdinboobkmkihgcohanchjnjpgjk
Key Deleted : HKLM\SOFTWARE\Classes\AppID\CptUrlPassthru.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\dca-api.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\dca-bho.DLL
Key Deleted : HKLM\SOFTWARE\Classes\CptUrlPassthru.hxxpMonitor
Key Deleted : HKLM\SOFTWARE\Classes\CptUrlPassthru.hxxpMonitor.1
Key Deleted : HKLM\SOFTWARE\Classes\dcabho.Dca
Key Deleted : HKLM\SOFTWARE\Classes\dcabho.Dca.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\webcakeupdater
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_google-earth_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_google-earth_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_vlc-media-player_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_vlc-media-player_RASMANCS
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Updater]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{38495740-0035-4471-851E-F5BBB86AB085}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{72D89EBF-0C5D-4190-91FD-398E45F1D007}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{DBBBC528-9C8C-4051-9187-ED6F01A457C9}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{DD7C44CC-0F60-4FD9-A38F-5CF30D698AC2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{058F0E48-61CA-4964-9FBA-1978A1BB060D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{18F33C35-8EF2-40D7-8BA4-932B0121B472}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{60260024-AA48-4A2F-84DA-2C2DCB24AAD0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{15527BF5-9729-49DC-889C-9F956983154C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD05B915-F77B-474A-9D42-9FEEAF5475C4}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{7BAB653D-88FB-4F60-AFC2-8E6FD59FAFF3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A57F7191-1E7F-4852-BAAF-F80A43E2687A}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C8758BC4-4581-48C7-BA38-C1A650477AE9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FEB62B15-CC00-4736-AAEC-BA046C9DFF73}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B49699FC-1665-4414-A1CB-C4A2A4A13EEC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21d59046-8568-4e51-bd32-79bd751dcce6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{499b15ac-881f-4224-9373-e2af2d95108b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5c2a9ed0-361d-4678-bbb6-fa668315952d}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82fe22f6-6581-4ed3-b962-d0114cfc8f04}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a178fe10-2662-4286-93ab-0477a425a351}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{15527BF5-9729-49DC-889C-9F956983154C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{DD05B915-F77B-474A-9D42-9FEEAF5475C4}
Key Deleted : HKCU\Software\Compete
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\pc optimizer pro
Key Deleted : HKCU\Software\AppDataLow\Software\Compete
Key Deleted : HKCU\Software\AppDataLow\Software\CompeteInc
Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
Key Deleted : HKCU\Software\AppDataLow\Software\HDvid Codec V1
Key Deleted : HKLM\Software\CompeteInc
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\HDvid Codec V1
Key Deleted : HKLM\Software\InstallIQ
Key Deleted : HKLM\Software\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HDvid Codec V1
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Mozilla Firefox v
-\\ Google Chrome v
[ File : C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [9098 octets] - [14/12/2013 23:16:03]
AdwCleaner[S0].txt - [8772 octets] - [14/12/2013 23:17:28]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8832 octets] ##########
Re: prosim o pomoc
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by denisa on so 14.12.2013 at 23:29:20,63
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\compete
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\dynconie
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{8A8884C5-8824-4C10-B61D-EDF2418D64C1}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E51735E3-BC4F-46EE-A0FA-262F6BBF8443}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\searchdonkey"
Failed to delete: [Folder] "C:\Program Files (x86)\consumer input"
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{0915D371-A105-40CA-BF75-84F30995DCCF}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{147430AE-DC63-4A6F-B3C1-79496BA6B52F}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{17371673-09A2-41C3-8C01-7B1B46460F2B}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{185A0D69-72C0-461A-9836-C59BE4FF6DCF}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{1B74604B-3396-435B-8DA0-21C6AB0B17BA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{235E52D5-7D78-4DD0-8306-899B66F1DE2D}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{23D99AD1-9483-4A34-9FA4-568B60446E1D}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{3260F112-8C32-4448-9B52-8669D42472A3}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{3F24FF8B-BD82-44E6-89CD-B8D158103F44}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{419167C3-7006-4F8E-BC86-083A5C77C41B}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{4408812E-7891-4BA3-AFC1-13651E1F5E4F}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{4A2C9DA5-2601-4C4F-A0F0-249BA320B6C7}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{5E9CC080-EF3A-42B7-840A-303696FB6812}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{5EB46D1C-8E2E-49CA-9F0E-4E1D35DFC8BF}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{6E0E45E4-E228-4B8C-B62D-789BE5246633}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{7B77636E-876B-427C-B794-4657E74EFEC0}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{7B7EA4C0-AB04-45AD-A518-9C90E0CD3492}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{8E2ACA35-905D-4B03-832D-A96AF6B590FA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{94246507-D93C-4DB6-B219-B07120DD3B91}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{9820FA82-D2B3-49C6-9804-255201BD3E43}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{AFD5E528-1AF6-4DFC-88FA-4142ADA48648}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{BABC3A64-A862-406E-8188-0DBAC500F1AB}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{BC8E9393-ECDC-427C-B6EB-43946B97FEA9}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{BD712617-D178-49CA-B821-578AD4B5E3CA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{C7328F9F-A0CF-4C51-BB53-8C8368EB73AA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{CC4AA194-3595-46C9-985E-232F0D9F391A}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{D431A953-735D-4689-8833-F853D233A452}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{DF369887-7B82-41FA-B1F4-03CD4EB3A7C9}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{E372C562-4071-4846-BB1B-CC1A81D102AD}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{F5683CE9-411F-4A95-9BD4-6317B4693A59}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{F8AADD07-F513-49FC-B250-BCDCAE9D99ED}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{FBA24CCE-DFB2-4608-8C83-5A2975EE0E98}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{FEB20460-8F0A-4EED-8A70-773F362132BC}
~~~ Chrome
Successfully deleted: [Folder] C:\Users\denisa\appdata\local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 14.12.2013 at 23:39:47,82
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by denisa on so 14.12.2013 at 23:29:20,63
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\compete
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\dynconie
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{8A8884C5-8824-4C10-B61D-EDF2418D64C1}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E51735E3-BC4F-46EE-A0FA-262F6BBF8443}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\searchdonkey"
Failed to delete: [Folder] "C:\Program Files (x86)\consumer input"
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{0915D371-A105-40CA-BF75-84F30995DCCF}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{147430AE-DC63-4A6F-B3C1-79496BA6B52F}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{17371673-09A2-41C3-8C01-7B1B46460F2B}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{185A0D69-72C0-461A-9836-C59BE4FF6DCF}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{1B74604B-3396-435B-8DA0-21C6AB0B17BA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{235E52D5-7D78-4DD0-8306-899B66F1DE2D}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{23D99AD1-9483-4A34-9FA4-568B60446E1D}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{3260F112-8C32-4448-9B52-8669D42472A3}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{3F24FF8B-BD82-44E6-89CD-B8D158103F44}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{419167C3-7006-4F8E-BC86-083A5C77C41B}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{4408812E-7891-4BA3-AFC1-13651E1F5E4F}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{4A2C9DA5-2601-4C4F-A0F0-249BA320B6C7}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{5E9CC080-EF3A-42B7-840A-303696FB6812}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{5EB46D1C-8E2E-49CA-9F0E-4E1D35DFC8BF}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{6E0E45E4-E228-4B8C-B62D-789BE5246633}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{7B77636E-876B-427C-B794-4657E74EFEC0}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{7B7EA4C0-AB04-45AD-A518-9C90E0CD3492}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{8E2ACA35-905D-4B03-832D-A96AF6B590FA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{94246507-D93C-4DB6-B219-B07120DD3B91}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{9820FA82-D2B3-49C6-9804-255201BD3E43}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{AFD5E528-1AF6-4DFC-88FA-4142ADA48648}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{BABC3A64-A862-406E-8188-0DBAC500F1AB}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{BC8E9393-ECDC-427C-B6EB-43946B97FEA9}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{BD712617-D178-49CA-B821-578AD4B5E3CA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{C7328F9F-A0CF-4C51-BB53-8C8368EB73AA}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{CC4AA194-3595-46C9-985E-232F0D9F391A}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{D431A953-735D-4689-8833-F853D233A452}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{DF369887-7B82-41FA-B1F4-03CD4EB3A7C9}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{E372C562-4071-4846-BB1B-CC1A81D102AD}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{F5683CE9-411F-4A95-9BD4-6317B4693A59}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{F8AADD07-F513-49FC-B250-BCDCAE9D99ED}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{FBA24CCE-DFB2-4608-8C83-5A2975EE0E98}
Successfully deleted: [Empty Folder] C:\Users\denisa\appdata\local\{FEB20460-8F0A-4EED-8A70-773F362132BC}
~~~ Chrome
Successfully deleted: [Folder] C:\Users\denisa\appdata\local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 14.12.2013 at 23:39:47,82
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Re: prosim o pomoc
Shortcut Cleaner 1.2.6 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/
Windows Version: Windows 7 Home Premium Service Pack 1
Program started at: 12/14/2013 11:40:03 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\denisa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
Searching C:\Users\Public\Desktop\
Searching C:\Users\denisa\Desktop
0 bad shortcuts found.
Program finished at: 12/14/2013 11:40:05 PM
Execution time: 0 hours(s), 0 minute(s), and 1 seconds(s)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/
Windows Version: Windows 7 Home Premium Service Pack 1
Program started at: 12/14/2013 11:40:03 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\denisa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
Searching C:\Users\Public\Desktop\
Searching C:\Users\denisa\Desktop
0 bad shortcuts found.
Program finished at: 12/14/2013 11:40:05 PM
Execution time: 0 hours(s), 0 minute(s), and 1 seconds(s)
Re: prosim o pomoc
Poprosim o log dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100
Re: prosim o pomoc
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-12-2013
Ran by denisa (administrator) on DENISA-HP on 15-12-2013 16:13:21
Running from C:\Users\denisa\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Online Games Manager\ogmservice.exe
(Roxio) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(WatchDog) C:\ProgramData\RHelpers\ChromeHelper\ChromeHelper.exe
(WatchDog) C:\ProgramData\RHelpers\FirefoxHelper\FirefoxHelper.exe
(WatchDog) C:\ProgramData\RHelpers\IeHelper\IeHelper.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
() C:\ProgramData\InternetUpdater\InternetUpdaterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPConnectionManager.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Compete, Inc.) C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
() C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
(Updater) C:\ProgramData\Updater\updater.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-09] (Synaptics Incorporated)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [ISW] - C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [1125504 2011-11-03] (Check Point Software Technologies)
HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [44880 2011-12-19] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [984736 2011-10-22] (Atheros Commnucations)
HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [799904 2011-10-22] (Atheros Commnucations)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2013-12-12] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Google Update] - C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-11-25] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKCU\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
MountPoints2: {f1f0c84f-181e-11e1-a968-806e6f6e6963} - F:\modem.exe
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-09-13] (Intel Corporation)
HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-28] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\reader_sl.exe [35768 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-10-26] (Nullsoft, Inc.)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-28] ()
HKLM-x32\...\Run: [ZoneAlarm] - C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [73360 2011-11-09] (Check Point Software Technologies LTD)
HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [103992 2011-06-14] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [683576 2013-12-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} URL = http://www.amazon.com/s/ref=azs_osd_iea ... earchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... earchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... earchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... earchTerms}
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: ArcadeParlor Games - {39AD0726-986D-40F9-972B-E3BFA24B7745} - C:\Users\denisa\AppData\Local\ArcadeParlor\Arcadeparlor.dll ()
BHO-x32: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKLM-x32 - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKCU - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKCU - No Name - {91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - No File
Toolbar: HKCU - No Name - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - No File
DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455}
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/In ... ect118.cab
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\denisa\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\denisa\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Extension: ArcadeParlor - C:\Users\denisa\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\{F32E7E42-9AFA-47CA-A0C4-D07EE651D404}
FF Extension: hdvc3 - C:\Users\denisa\AppData\Roaming\Mozilla\Firefox\profiles\extensions\hdvc3@hdvidcodec.com.xpi
FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker
FF Extension: No Name - C:\Program Files\CheckPoint\ZAForceField\TrustChecker
FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF Extension: No Name - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
Chrome:
=======
CHR DefaultSearchKeyword: google.com
CHR DefaultSearchProvider: Google
CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding}
CHR Extension: (Cat's Eye) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhokghddgejhlagoihgnfmfojplpmojk\1.1_0
CHR Extension: (Agatha Christie: Dead Man's Folly) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngaaeobknjcjmelkdlcpfnpijolhped\0.2_0
CHR Extension: (Natalie Brooks-Treasures of the Lost Kingdom) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\igcjahehamijbhmiaipfdggaongdpmop\0.0.0.5_0
CHR Extension: (Google Wallet) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
CHR Extension: (The Mysterious City: Cairo) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\poanleafnkpodplednhhikadpembdhgk\0.1_0
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx
CHR StartMenuInternet: Google Chrome - C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-14] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-14] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1164360 2013-12-14] (Avira Operations GmbH & Co. KG)
R2 InternetUpdater; C:\ProgramData\InternetUpdater\InternetUpdaterService.exe [40448 2013-12-05] ()
R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [827520 2011-11-03] (Check Point Software Technologies)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-11-02] (Microsoft Corporation)
R2 ogmservice; C:\Program Files (x86)\Online Games Manager\ogmservice.exe [559552 2013-08-08] (RealNetworks, Inc.)
S2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2420616 2011-11-09] (Check Point Software Technologies LTD)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-10-22] (Atheros)
S2 consumerinput_update; C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe /svc [x]
==================== Drivers (Whitelisted) ====================
R3 AR5416; C:\Windows\System32\DRIVERS\athwx.sys [2778080 2011-04-22] (Atheros Communications, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [107416 2013-12-14] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132600 2013-12-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-14] (Avira Operations GmbH & Co. KG)
R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33672 2011-11-03] (Check Point Software Technologies)
S3 pbfilter; C:\Program Files\PeerBlock\pbfilter.sys [24176 2010-11-06] ()
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454232 2011-05-07] (Check Point Software Technologies LTD)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-15 16:13 - 2013-12-15 16:14 - 00022480 _____ C:\Users\denisa\Desktop\FRST.txt
2013-12-15 16:12 - 2013-12-15 16:12 - 00000000 ____D C:\FRST
2013-12-15 16:11 - 2013-12-15 16:13 - 00112640 _____ C:\Users\denisa\Downloads\FRSTLauncher.exe
2013-12-15 16:10 - 2013-12-15 16:10 - 01927796 _____ (Farbar) C:\Users\denisa\Desktop\FRST64.exe
2013-12-14 23:39 - 2013-12-14 23:39 - 00005223 _____ C:\Users\denisa\Desktop\JRT.txt
2013-12-14 23:22 - 2013-12-14 23:22 - 00000000 ____D C:\ProgramData\InternetUpdater
2013-12-14 23:15 - 2013-12-14 23:18 - 00000000 ____D C:\AdwCleaner
2013-12-14 23:14 - 2013-12-14 23:40 - 00001802 _____ C:\sc-cleaner.txt
2013-12-14 23:14 - 2013-12-14 23:14 - 00000000 ____D C:\Windows\ERUNT
2013-12-14 23:12 - 2013-12-14 23:12 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\denisa\Desktop\sc-cleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01226802 _____ C:\Users\denisa\Desktop\adwcleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01034531 _____ (Thisisu) C:\Users\denisa\Desktop\JRT.exe
2013-12-14 20:53 - 2013-12-14 20:53 - 00000000 ____D C:\rsit
2013-12-14 20:52 - 2013-12-14 20:52 - 00781383 _____ C:\Users\denisa\Downloads\RSIT.exe
2013-12-14 20:26 - 2013-12-14 23:20 - 00000168 _____ C:\Windows\setupact.log
2013-12-14 20:26 - 2013-12-14 20:26 - 00000000 _____ C:\Windows\setuperr.log
2013-12-13 22:10 - 2013-12-15 16:15 - 00000378 _____ C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job
2013-12-13 22:10 - 2013-12-13 22:10 - 00003294 _____ C:\Windows\System32\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}
2013-12-13 22:06 - 2013-12-15 16:15 - 00000362 _____ C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job
2013-12-13 22:06 - 2013-12-13 22:06 - 00003278 _____ C:\Windows\System32\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001
2013-12-13 22:05 - 2013-12-15 16:10 - 00000970 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job
2013-12-13 22:05 - 2013-12-13 22:05 - 00003966 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineUA
2013-12-13 22:05 - 2013-12-13 22:05 - 00000145 _____ C:\out.txt
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ArcadeParlor
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo! Companion
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Program Files (x86)\Yahoo!
2013-12-13 22:04 - 2013-12-15 15:29 - 00000276 _____ C:\Windows\Tasks\ArcadeParlor.job
2013-12-13 22:04 - 2013-12-14 23:21 - 00000966 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job
2013-12-13 22:04 - 2013-12-14 23:18 - 00000000 ____D C:\Program Files (x86)\Consumer Input
2013-12-13 22:04 - 2013-12-13 22:04 - 00003714 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineCore
2013-12-13 22:04 - 2013-12-13 22:04 - 00003160 _____ C:\Windows\System32\Tasks\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\Users\denisa\AppData\Local\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\Updater
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\RHelpers
2013-12-13 14:01 - 2013-12-13 14:42 - 364861440 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x10-CZ-titulky.avi
2013-12-12 22:08 - 2013-12-12 22:08 - 00082779 _____ C:\Users\denisa\Downloads\Frozen-2013.srt
2013-12-12 19:49 - 2013-12-12 19:50 - 00000000 ____D C:\Users\denisa\AppData\Local\TimeParadox
2013-12-12 18:57 - 2013-12-12 21:43 - 1437870154 _____ C:\Users\denisa\Downloads\Frozen-2013.CAM.mkv
2013-12-11 09:20 - 2013-05-09 21:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2013-12-11 09:20 - 2013-05-09 21:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2013-12-11 09:20 - 2013-05-09 20:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2013-12-11 09:20 - 2013-05-09 20:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-12-11 09:18 - 2013-11-26 03:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-11 09:18 - 2013-11-26 02:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-11 09:18 - 2013-11-26 02:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-11 09:18 - 2013-11-26 02:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-11 09:18 - 2013-11-26 01:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-11 09:18 - 2013-11-26 01:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-11 09:18 - 2013-11-26 01:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-11 09:18 - 2013-11-26 01:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-11 09:18 - 2013-11-26 01:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-11 09:18 - 2013-11-26 01:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-11 09:18 - 2013-11-26 01:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-11 09:18 - 2013-11-26 01:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-11 09:18 - 2013-11-26 01:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-11 09:18 - 2013-11-26 01:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-11 09:18 - 2013-11-26 00:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-11 09:18 - 2013-11-26 00:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-11 09:18 - 2013-11-26 00:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-11 09:18 - 2013-11-26 00:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-11 09:18 - 2013-11-26 00:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-11 09:18 - 2013-11-26 00:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-11 09:18 - 2013-11-26 00:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-11 09:18 - 2013-11-26 00:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-11 09:18 - 2013-11-25 23:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-11 09:18 - 2013-11-25 23:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-11 09:18 - 2013-11-25 23:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-11 09:18 - 2013-11-25 23:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-11 09:18 - 2013-11-25 22:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-11 09:18 - 2013-11-25 22:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-11 09:18 - 2013-11-25 22:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-11 09:18 - 2013-11-25 22:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-11 09:18 - 2013-11-25 22:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-10 21:05 - 2013-11-23 10:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-12-10 21:05 - 2013-11-23 09:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-12-10 21:05 - 2013-10-29 18:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2013-12-10 21:05 - 2013-10-29 18:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2013-12-10 21:05 - 2013-10-29 17:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-10 21:05 - 2013-10-18 18:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-10 21:05 - 2013-10-18 17:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-12-10 21:03 - 2013-11-11 18:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-12-10 21:03 - 2013-11-11 18:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-12-10 21:02 - 2013-10-11 18:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-10 21:02 - 2013-10-11 18:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-10 21:02 - 2013-10-11 18:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2013-12-10 21:02 - 2013-10-11 18:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2013-12-10 21:02 - 2013-10-11 17:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-10 21:02 - 2013-10-11 17:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-10 21:02 - 2013-10-11 17:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2013-12-10 21:02 - 2013-10-11 17:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2013-12-10 21:02 - 2013-10-03 18:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2013-12-10 21:02 - 2013-10-03 17:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-10 11:02 - 2013-12-10 11:02 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-06 19:10 - 2013-12-06 19:49 - 356536320 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x09-CZ-titulky.avi
2013-12-05 22:54 - 2013-12-05 22:54 - 00041016 _____ C:\Users\denisa\Downloads\lost-girl-4x04---turn-to-stone.killers.srt
2013-12-05 20:25 - 2013-12-05 21:06 - 373620470 _____ C:\Users\denisa\Downloads\Lost.Girl.S04E04.HDTV.XviD-AFG.avi
2013-12-05 15:47 - 2013-12-05 15:47 - 00045408 _____ C:\Users\denisa\Downloads\the.originals.s01e09.hdtv.x264-lol.srt
2013-12-04 12:03 - 2013-12-04 12:45 - 370781980 _____ C:\Users\denisa\Downloads\The-Originals-1x09.avi
2013-12-03 09:17 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-12-03 09:14 - 2013-12-03 09:14 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-02 21:38 - 2013-12-13 23:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Friday's games
2013-12-02 21:38 - 2013-12-02 21:38 - 00000000 ____D C:\Program Files (x86)\Online Games Manager
2013-12-02 20:07 - 2013-12-12 19:35 - 00000064 _____ C:\Windows\GPlrLanc.dat
2013-11-28 12:09 - 2013-11-28 12:09 - 00039215 _____ C:\Users\denisa\Downloads\the.originals.s01e08.hdtv.x264-lol.srt
2013-11-27 12:36 - 2013-11-27 13:17 - 368523384 _____ C:\Users\denisa\Downloads\The-Originals-1x08.avi
2013-11-21 11:05 - 2013-11-24 08:41 - 105952601 _____ C:\Windows\SysWOW64\ፋ�ᵌ
2013-11-17 08:22 - 2013-11-17 08:26 - 23791160 _____ C:\Users\denisa\Downloads\behind_the_scenes_for_petra_sera_photography_1280x720.mp4
==================== One Month Modified Files and Folders =======
2013-12-15 16:15 - 2013-12-13 22:10 - 00000378 _____ C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job
2013-12-15 16:15 - 2013-12-13 22:06 - 00000362 _____ C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job
2013-12-15 16:14 - 2013-12-15 16:13 - 00022480 _____ C:\Users\denisa\Desktop\FRST.txt
2013-12-15 16:13 - 2013-12-15 16:11 - 00112640 _____ C:\Users\denisa\Downloads\FRSTLauncher.exe
2013-12-15 16:12 - 2013-12-15 16:12 - 00000000 ____D C:\FRST
2013-12-15 16:10 - 2013-12-15 16:10 - 01927796 _____ (Farbar) C:\Users\denisa\Desktop\FRST64.exe
2013-12-15 16:10 - 2013-12-13 22:05 - 00000970 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job
2013-12-15 16:09 - 2011-10-15 15:21 - 02060430 _____ C:\Windows\WindowsUpdate.log
2013-12-15 16:07 - 2011-11-25 20:23 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Skype
2013-12-15 15:53 - 2013-03-01 07:45 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-15 15:45 - 2013-10-10 14:38 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-15 15:37 - 2013-10-11 16:07 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job
2013-12-15 15:29 - 2013-12-13 22:04 - 00000276 _____ C:\Windows\Tasks\ArcadeParlor.job
2013-12-15 15:21 - 2011-12-01 18:47 - 00000000 ____D C:\Users\denisa\AppData\Local\CrashDumps
2013-12-15 10:37 - 2013-10-11 16:07 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job
2013-12-15 09:56 - 2013-10-10 14:38 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-15 09:51 - 2013-08-15 09:47 - 00000000 ____D C:\Windows\system32\MRT
2013-12-15 09:46 - 2011-12-03 23:08 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-12-14 23:40 - 2013-12-14 23:14 - 00001802 _____ C:\sc-cleaner.txt
2013-12-14 23:39 - 2013-12-14 23:39 - 00005223 _____ C:\Users\denisa\Desktop\JRT.txt
2013-12-14 23:38 - 2011-11-25 23:19 - 00000000 ____D C:\Users\denisa\Documents\Bluetooth Folder
2013-12-14 23:29 - 2009-07-13 21:13 - 00727334 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-14 23:29 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-14 23:29 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-14 23:22 - 2013-12-14 23:22 - 00000000 ____D C:\ProgramData\InternetUpdater
2013-12-14 23:21 - 2013-12-13 22:04 - 00000966 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job
2013-12-14 23:21 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-14 23:20 - 2013-12-14 20:26 - 00000168 _____ C:\Windows\setupact.log
2013-12-14 23:18 - 2013-12-14 23:15 - 00000000 ____D C:\AdwCleaner
2013-12-14 23:18 - 2013-12-13 22:04 - 00000000 ____D C:\Program Files (x86)\Consumer Input
2013-12-14 23:14 - 2013-12-14 23:14 - 00000000 ____D C:\Windows\ERUNT
2013-12-14 23:12 - 2013-12-14 23:12 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\denisa\Desktop\sc-cleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01226802 _____ C:\Users\denisa\Desktop\adwcleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01034531 _____ (Thisisu) C:\Users\denisa\Desktop\JRT.exe
2013-12-14 21:35 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\system32\NDF
2013-12-14 21:14 - 2011-11-25 23:18 - 00003934 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{2B72CBDD-228B-4178-BA3C-970E7EC9DFD3}
2013-12-14 21:01 - 2012-11-15 09:49 - 00000000 ____D C:\Program Files (x86)\trend micro
2013-12-14 20:53 - 2013-12-14 20:53 - 00000000 ____D C:\rsit
2013-12-14 20:52 - 2013-12-14 20:52 - 00781383 _____ C:\Users\denisa\Downloads\RSIT.exe
2013-12-14 20:26 - 2013-12-14 20:26 - 00000000 _____ C:\Windows\setuperr.log
2013-12-14 20:22 - 2013-08-09 23:12 - 00083160 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-12-14 20:22 - 2013-08-09 23:04 - 00132600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-12-14 20:22 - 2013-08-09 23:04 - 00107416 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-12-14 20:22 - 2013-08-09 23:04 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-12-14 20:13 - 2011-11-26 11:45 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Winamp
2013-12-14 20:11 - 2007-01-01 17:25 - 00000000 ____D C:\Windows\Panther
2013-12-14 19:51 - 2011-12-10 22:32 - 00000336 _____ C:\Windows\Tasks\HPCeeScheduleFordenisa.job
2013-12-14 15:00 - 2011-12-10 22:32 - 00003192 _____ C:\Windows\System32\Tasks\HPCeeScheduleFordenisa
2013-12-14 14:59 - 2011-11-26 19:15 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-12-14 14:58 - 2011-12-03 19:24 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-12-14 09:32 - 2011-07-12 19:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-12-13 23:06 - 2011-11-25 23:14 - 00000000 ____D C:\Users\denisa
2013-12-13 23:05 - 2013-12-02 21:38 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Friday's games
2013-12-13 22:10 - 2013-12-13 22:10 - 00003294 _____ C:\Windows\System32\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}
2013-12-13 22:06 - 2013-12-13 22:06 - 00003278 _____ C:\Windows\System32\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001
2013-12-13 22:05 - 2013-12-13 22:05 - 00003966 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineUA
2013-12-13 22:05 - 2013-12-13 22:05 - 00000145 _____ C:\out.txt
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ArcadeParlor
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo! Companion
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Program Files (x86)\Yahoo!
2013-12-13 22:05 - 2013-08-09 22:19 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Mozilla
2013-12-13 22:04 - 2013-12-13 22:04 - 00003714 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineCore
2013-12-13 22:04 - 2013-12-13 22:04 - 00003160 _____ C:\Windows\System32\Tasks\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\Users\denisa\AppData\Local\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\Updater
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\RHelpers
2013-12-13 18:39 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2013-12-13 14:42 - 2013-12-13 14:01 - 364861440 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x10-CZ-titulky.avi
2013-12-12 22:08 - 2013-12-12 22:08 - 00082779 _____ C:\Users\denisa\Downloads\Frozen-2013.srt
2013-12-12 21:43 - 2013-12-12 18:57 - 1437870154 _____ C:\Users\denisa\Downloads\Frozen-2013.CAM.mkv
2013-12-12 19:50 - 2013-12-12 19:49 - 00000000 ____D C:\Users\denisa\AppData\Local\TimeParadox
2013-12-12 19:39 - 2012-04-12 15:47 - 00000000 ____D C:\Users\denisa\AppData\Roaming\vlc
2013-12-12 19:35 - 2013-12-02 20:07 - 00000064 _____ C:\Windows\GPlrLanc.dat
2013-12-11 21:02 - 2013-09-17 15:08 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-12-11 17:34 - 2009-07-13 21:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2013-12-11 17:32 - 2009-07-13 20:45 - 00437712 _____ C:\Windows\system32\FNTCACHE.DAT
2013-12-10 22:53 - 2013-03-01 07:45 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-10 22:53 - 2013-03-01 07:45 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-10 22:53 - 2011-07-12 19:24 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-10 11:02 - 2013-12-10 11:02 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-10 11:02 - 2011-12-07 17:58 - 00000000 ____D C:\Program Files (x86)\Google
2013-12-09 10:32 - 2011-11-25 20:28 - 00003938 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA
2013-12-09 10:32 - 2011-11-25 20:28 - 00003542 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core
2013-12-07 09:40 - 2011-12-07 17:58 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-07 09:40 - 2011-12-07 17:58 - 00003696 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-06 19:49 - 2013-12-06 19:10 - 356536320 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x09-CZ-titulky.avi
2013-12-06 19:04 - 2011-11-25 23:18 - 00001413 _____ C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-06 18:59 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-12-05 22:54 - 2013-12-05 22:54 - 00041016 _____ C:\Users\denisa\Downloads\lost-girl-4x04---turn-to-stone.killers.srt
2013-12-05 21:06 - 2013-12-05 20:25 - 373620470 _____ C:\Users\denisa\Downloads\Lost.Girl.S04E04.HDTV.XviD-AFG.avi
2013-12-05 15:47 - 2013-12-05 15:47 - 00045408 _____ C:\Users\denisa\Downloads\the.originals.s01e09.hdtv.x264-lol.srt
2013-12-05 15:45 - 2011-11-25 20:29 - 00002370 _____ C:\Users\denisa\Desktop\Google Chrome.lnk
2013-12-04 12:45 - 2013-12-04 12:03 - 370781980 _____ C:\Users\denisa\Downloads\The-Originals-1x09.avi
2013-12-03 23:02 - 2011-11-26 11:56 - 00000000 ____D C:\Users\denisa\AppData\Roaming\SoftGrid Client
2013-12-03 09:14 - 2013-12-03 09:14 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-02 21:38 - 2013-12-02 21:38 - 00000000 ____D C:\Program Files (x86)\Online Games Manager
2013-12-02 19:51 - 2013-11-08 19:40 - 00000000 ____D C:\Users\denisa\Desktop\New folder (3)
2013-12-01 19:50 - 2013-02-08 16:22 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-12-01 19:50 - 2011-11-25 20:23 - 00000000 ____D C:\ProgramData\Skype
2013-12-01 19:28 - 2011-11-25 20:29 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-28 12:09 - 2013-11-28 12:09 - 00039215 _____ C:\Users\denisa\Downloads\the.originals.s01e08.hdtv.x264-lol.srt
2013-11-27 13:17 - 2013-11-27 12:36 - 368523384 _____ C:\Users\denisa\Downloads\The-Originals-1x08.avi
2013-11-26 03:54 - 2013-12-11 09:18 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-26 02:19 - 2013-12-11 09:18 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-26 02:18 - 2013-12-11 09:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-26 02:11 - 2013-12-11 09:18 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-26 01:48 - 2013-12-11 09:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-26 01:46 - 2013-12-11 09:18 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-26 01:41 - 2013-12-11 09:18 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-26 01:29 - 2013-12-11 09:18 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-26 01:27 - 2013-12-11 09:18 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-26 01:23 - 2013-12-11 09:18 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-26 01:21 - 2013-12-11 09:18 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-26 01:18 - 2013-12-11 09:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-26 01:18 - 2013-12-11 09:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-26 01:16 - 2013-12-11 09:18 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-26 00:57 - 2013-12-11 09:18 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-26 00:38 - 2013-12-11 09:18 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-26 00:38 - 2013-12-11 09:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-26 00:35 - 2013-12-11 09:18 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-26 00:32 - 2013-12-11 09:18 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-26 00:28 - 2013-12-11 09:18 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-26 00:16 - 2013-12-11 09:18 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-26 00:02 - 2013-12-11 09:18 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-25 23:48 - 2013-12-11 09:18 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-25 23:32 - 2013-12-11 09:18 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-25 23:26 - 2013-12-11 09:18 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-25 23:07 - 2013-12-11 09:18 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-25 22:40 - 2013-12-11 09:18 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-25 22:34 - 2013-12-11 09:18 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-25 22:34 - 2013-12-11 09:18 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-25 22:33 - 2013-12-11 09:18 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-25 22:27 - 2013-12-11 09:18 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-24 08:41 - 2013-11-21 11:05 - 105952601 _____ C:\Windows\SysWOW64\ፋ�ᵌ
2013-11-23 10:26 - 2013-12-10 21:05 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-11-23 09:47 - 2013-12-10 21:05 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-11-17 08:26 - 2013-11-17 08:22 - 23791160 _____ C:\Users\denisa\Downloads\behind_the_scenes_for_petra_sera_photography_1280x720.mp4
Some content of TEMP:
====================
C:\Users\denisa\AppData\Local\Temp\avgnt.exe
C:\Users\denisa\AppData\Local\Temp\bstrapInstall.exe
C:\Users\denisa\AppData\Local\Temp\Quarantine.exe
C:\Users\denisa\AppData\Local\Temp\{9C7496A6-B331-498e-B0E8-1FB0947ED823}-ConsumerInputUpdate.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-13 18:30
==================== End Of Log ============================
Ran by denisa (administrator) on DENISA-HP on 15-12-2013 16:13:21
Running from C:\Users\denisa\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Online Games Manager\ogmservice.exe
(Roxio) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(WatchDog) C:\ProgramData\RHelpers\ChromeHelper\ChromeHelper.exe
(WatchDog) C:\ProgramData\RHelpers\FirefoxHelper\FirefoxHelper.exe
(WatchDog) C:\ProgramData\RHelpers\IeHelper\IeHelper.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
() C:\ProgramData\InternetUpdater\InternetUpdaterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPConnectionManager.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Compete, Inc.) C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
() C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
(Updater) C:\ProgramData\Updater\updater.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-09] (Synaptics Incorporated)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [ISW] - C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [1125504 2011-11-03] (Check Point Software Technologies)
HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [44880 2011-12-19] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [984736 2011-10-22] (Atheros Commnucations)
HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [799904 2011-10-22] (Atheros Commnucations)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2013-12-12] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Google Update] - C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-11-25] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKCU\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
MountPoints2: {f1f0c84f-181e-11e1-a968-806e6f6e6963} - F:\modem.exe
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-09-13] (Intel Corporation)
HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-28] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\reader_sl.exe [35768 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-10-26] (Nullsoft, Inc.)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-28] ()
HKLM-x32\...\Run: [ZoneAlarm] - C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [73360 2011-11-09] (Check Point Software Technologies LTD)
HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [103992 2011-06-14] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [683576 2013-12-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} URL = http://www.amazon.com/s/ref=azs_osd_iea ... earchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... earchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... earchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... earchTerms}
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: ArcadeParlor Games - {39AD0726-986D-40F9-972B-E3BFA24B7745} - C:\Users\denisa\AppData\Local\ArcadeParlor\Arcadeparlor.dll ()
BHO-x32: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKLM-x32 - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKCU - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\Trustchecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKCU - No Name - {91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - No File
Toolbar: HKCU - No Name - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - No File
DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455}
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/In ... ect118.cab
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\denisa\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\denisa\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Extension: ArcadeParlor - C:\Users\denisa\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\{F32E7E42-9AFA-47CA-A0C4-D07EE651D404}
FF Extension: hdvc3 - C:\Users\denisa\AppData\Roaming\Mozilla\Firefox\profiles\extensions\hdvc3@hdvidcodec.com.xpi
FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker
FF Extension: No Name - C:\Program Files\CheckPoint\ZAForceField\TrustChecker
FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF Extension: No Name - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
Chrome:
=======
CHR DefaultSearchKeyword: google.com
CHR DefaultSearchProvider: Google
CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding}
CHR Extension: (Cat's Eye) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhokghddgejhlagoihgnfmfojplpmojk\1.1_0
CHR Extension: (Agatha Christie: Dead Man's Folly) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngaaeobknjcjmelkdlcpfnpijolhped\0.2_0
CHR Extension: (Natalie Brooks-Treasures of the Lost Kingdom) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\igcjahehamijbhmiaipfdggaongdpmop\0.0.0.5_0
CHR Extension: (Google Wallet) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
CHR Extension: (The Mysterious City: Cairo) - C:\Users\denisa\AppData\Local\Google\Chrome\User Data\Default\Extensions\poanleafnkpodplednhhikadpembdhgk\0.1_0
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx
CHR StartMenuInternet: Google Chrome - C:\Users\denisa\AppData\Local\Google\Chrome\Application\chrome.exe
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-14] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-14] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1164360 2013-12-14] (Avira Operations GmbH & Co. KG)
R2 InternetUpdater; C:\ProgramData\InternetUpdater\InternetUpdaterService.exe [40448 2013-12-05] ()
R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [827520 2011-11-03] (Check Point Software Technologies)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-11-02] (Microsoft Corporation)
R2 ogmservice; C:\Program Files (x86)\Online Games Manager\ogmservice.exe [559552 2013-08-08] (RealNetworks, Inc.)
S2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2420616 2011-11-09] (Check Point Software Technologies LTD)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-10-22] (Atheros)
S2 consumerinput_update; C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe /svc [x]
==================== Drivers (Whitelisted) ====================
R3 AR5416; C:\Windows\System32\DRIVERS\athwx.sys [2778080 2011-04-22] (Atheros Communications, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [107416 2013-12-14] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132600 2013-12-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-14] (Avira Operations GmbH & Co. KG)
R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33672 2011-11-03] (Check Point Software Technologies)
S3 pbfilter; C:\Program Files\PeerBlock\pbfilter.sys [24176 2010-11-06] ()
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454232 2011-05-07] (Check Point Software Technologies LTD)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-15 16:13 - 2013-12-15 16:14 - 00022480 _____ C:\Users\denisa\Desktop\FRST.txt
2013-12-15 16:12 - 2013-12-15 16:12 - 00000000 ____D C:\FRST
2013-12-15 16:11 - 2013-12-15 16:13 - 00112640 _____ C:\Users\denisa\Downloads\FRSTLauncher.exe
2013-12-15 16:10 - 2013-12-15 16:10 - 01927796 _____ (Farbar) C:\Users\denisa\Desktop\FRST64.exe
2013-12-14 23:39 - 2013-12-14 23:39 - 00005223 _____ C:\Users\denisa\Desktop\JRT.txt
2013-12-14 23:22 - 2013-12-14 23:22 - 00000000 ____D C:\ProgramData\InternetUpdater
2013-12-14 23:15 - 2013-12-14 23:18 - 00000000 ____D C:\AdwCleaner
2013-12-14 23:14 - 2013-12-14 23:40 - 00001802 _____ C:\sc-cleaner.txt
2013-12-14 23:14 - 2013-12-14 23:14 - 00000000 ____D C:\Windows\ERUNT
2013-12-14 23:12 - 2013-12-14 23:12 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\denisa\Desktop\sc-cleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01226802 _____ C:\Users\denisa\Desktop\adwcleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01034531 _____ (Thisisu) C:\Users\denisa\Desktop\JRT.exe
2013-12-14 20:53 - 2013-12-14 20:53 - 00000000 ____D C:\rsit
2013-12-14 20:52 - 2013-12-14 20:52 - 00781383 _____ C:\Users\denisa\Downloads\RSIT.exe
2013-12-14 20:26 - 2013-12-14 23:20 - 00000168 _____ C:\Windows\setupact.log
2013-12-14 20:26 - 2013-12-14 20:26 - 00000000 _____ C:\Windows\setuperr.log
2013-12-13 22:10 - 2013-12-15 16:15 - 00000378 _____ C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job
2013-12-13 22:10 - 2013-12-13 22:10 - 00003294 _____ C:\Windows\System32\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}
2013-12-13 22:06 - 2013-12-15 16:15 - 00000362 _____ C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job
2013-12-13 22:06 - 2013-12-13 22:06 - 00003278 _____ C:\Windows\System32\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001
2013-12-13 22:05 - 2013-12-15 16:10 - 00000970 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job
2013-12-13 22:05 - 2013-12-13 22:05 - 00003966 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineUA
2013-12-13 22:05 - 2013-12-13 22:05 - 00000145 _____ C:\out.txt
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ArcadeParlor
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo! Companion
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Program Files (x86)\Yahoo!
2013-12-13 22:04 - 2013-12-15 15:29 - 00000276 _____ C:\Windows\Tasks\ArcadeParlor.job
2013-12-13 22:04 - 2013-12-14 23:21 - 00000966 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job
2013-12-13 22:04 - 2013-12-14 23:18 - 00000000 ____D C:\Program Files (x86)\Consumer Input
2013-12-13 22:04 - 2013-12-13 22:04 - 00003714 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineCore
2013-12-13 22:04 - 2013-12-13 22:04 - 00003160 _____ C:\Windows\System32\Tasks\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\Users\denisa\AppData\Local\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\Updater
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\RHelpers
2013-12-13 14:01 - 2013-12-13 14:42 - 364861440 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x10-CZ-titulky.avi
2013-12-12 22:08 - 2013-12-12 22:08 - 00082779 _____ C:\Users\denisa\Downloads\Frozen-2013.srt
2013-12-12 19:49 - 2013-12-12 19:50 - 00000000 ____D C:\Users\denisa\AppData\Local\TimeParadox
2013-12-12 18:57 - 2013-12-12 21:43 - 1437870154 _____ C:\Users\denisa\Downloads\Frozen-2013.CAM.mkv
2013-12-11 09:20 - 2013-05-09 21:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2013-12-11 09:20 - 2013-05-09 21:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2013-12-11 09:20 - 2013-05-09 20:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2013-12-11 09:20 - 2013-05-09 20:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-12-11 09:18 - 2013-11-26 03:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-11 09:18 - 2013-11-26 02:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-11 09:18 - 2013-11-26 02:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-11 09:18 - 2013-11-26 02:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-11 09:18 - 2013-11-26 01:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-11 09:18 - 2013-11-26 01:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-11 09:18 - 2013-11-26 01:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-11 09:18 - 2013-11-26 01:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-11 09:18 - 2013-11-26 01:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-11 09:18 - 2013-11-26 01:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-11 09:18 - 2013-11-26 01:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-11 09:18 - 2013-11-26 01:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-11 09:18 - 2013-11-26 01:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-11 09:18 - 2013-11-26 01:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-11 09:18 - 2013-11-26 00:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-11 09:18 - 2013-11-26 00:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-11 09:18 - 2013-11-26 00:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-11 09:18 - 2013-11-26 00:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-11 09:18 - 2013-11-26 00:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-11 09:18 - 2013-11-26 00:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-11 09:18 - 2013-11-26 00:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-11 09:18 - 2013-11-26 00:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-11 09:18 - 2013-11-25 23:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-11 09:18 - 2013-11-25 23:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-11 09:18 - 2013-11-25 23:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-11 09:18 - 2013-11-25 23:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-11 09:18 - 2013-11-25 22:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-11 09:18 - 2013-11-25 22:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-11 09:18 - 2013-11-25 22:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-11 09:18 - 2013-11-25 22:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-11 09:18 - 2013-11-25 22:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-10 21:05 - 2013-11-23 10:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-12-10 21:05 - 2013-11-23 09:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-12-10 21:05 - 2013-10-29 18:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2013-12-10 21:05 - 2013-10-29 18:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2013-12-10 21:05 - 2013-10-29 17:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-10 21:05 - 2013-10-18 18:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-10 21:05 - 2013-10-18 17:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-12-10 21:03 - 2013-11-11 18:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-12-10 21:03 - 2013-11-11 18:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-12-10 21:02 - 2013-10-11 18:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-10 21:02 - 2013-10-11 18:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-10 21:02 - 2013-10-11 18:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2013-12-10 21:02 - 2013-10-11 18:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2013-12-10 21:02 - 2013-10-11 17:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-10 21:02 - 2013-10-11 17:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-10 21:02 - 2013-10-11 17:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2013-12-10 21:02 - 2013-10-11 17:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2013-12-10 21:02 - 2013-10-03 18:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2013-12-10 21:02 - 2013-10-03 17:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-10 11:02 - 2013-12-10 11:02 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-06 19:10 - 2013-12-06 19:49 - 356536320 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x09-CZ-titulky.avi
2013-12-05 22:54 - 2013-12-05 22:54 - 00041016 _____ C:\Users\denisa\Downloads\lost-girl-4x04---turn-to-stone.killers.srt
2013-12-05 20:25 - 2013-12-05 21:06 - 373620470 _____ C:\Users\denisa\Downloads\Lost.Girl.S04E04.HDTV.XviD-AFG.avi
2013-12-05 15:47 - 2013-12-05 15:47 - 00045408 _____ C:\Users\denisa\Downloads\the.originals.s01e09.hdtv.x264-lol.srt
2013-12-04 12:03 - 2013-12-04 12:45 - 370781980 _____ C:\Users\denisa\Downloads\The-Originals-1x09.avi
2013-12-03 09:17 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-12-03 09:14 - 2013-12-03 09:14 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-02 21:38 - 2013-12-13 23:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Friday's games
2013-12-02 21:38 - 2013-12-02 21:38 - 00000000 ____D C:\Program Files (x86)\Online Games Manager
2013-12-02 20:07 - 2013-12-12 19:35 - 00000064 _____ C:\Windows\GPlrLanc.dat
2013-11-28 12:09 - 2013-11-28 12:09 - 00039215 _____ C:\Users\denisa\Downloads\the.originals.s01e08.hdtv.x264-lol.srt
2013-11-27 12:36 - 2013-11-27 13:17 - 368523384 _____ C:\Users\denisa\Downloads\The-Originals-1x08.avi
2013-11-21 11:05 - 2013-11-24 08:41 - 105952601 _____ C:\Windows\SysWOW64\ፋ�ᵌ
2013-11-17 08:22 - 2013-11-17 08:26 - 23791160 _____ C:\Users\denisa\Downloads\behind_the_scenes_for_petra_sera_photography_1280x720.mp4
==================== One Month Modified Files and Folders =======
2013-12-15 16:15 - 2013-12-13 22:10 - 00000378 _____ C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job
2013-12-15 16:15 - 2013-12-13 22:06 - 00000362 _____ C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job
2013-12-15 16:14 - 2013-12-15 16:13 - 00022480 _____ C:\Users\denisa\Desktop\FRST.txt
2013-12-15 16:13 - 2013-12-15 16:11 - 00112640 _____ C:\Users\denisa\Downloads\FRSTLauncher.exe
2013-12-15 16:12 - 2013-12-15 16:12 - 00000000 ____D C:\FRST
2013-12-15 16:10 - 2013-12-15 16:10 - 01927796 _____ (Farbar) C:\Users\denisa\Desktop\FRST64.exe
2013-12-15 16:10 - 2013-12-13 22:05 - 00000970 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job
2013-12-15 16:09 - 2011-10-15 15:21 - 02060430 _____ C:\Windows\WindowsUpdate.log
2013-12-15 16:07 - 2011-11-25 20:23 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Skype
2013-12-15 15:53 - 2013-03-01 07:45 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-15 15:45 - 2013-10-10 14:38 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-15 15:37 - 2013-10-11 16:07 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job
2013-12-15 15:29 - 2013-12-13 22:04 - 00000276 _____ C:\Windows\Tasks\ArcadeParlor.job
2013-12-15 15:21 - 2011-12-01 18:47 - 00000000 ____D C:\Users\denisa\AppData\Local\CrashDumps
2013-12-15 10:37 - 2013-10-11 16:07 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job
2013-12-15 09:56 - 2013-10-10 14:38 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-15 09:51 - 2013-08-15 09:47 - 00000000 ____D C:\Windows\system32\MRT
2013-12-15 09:46 - 2011-12-03 23:08 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-12-14 23:40 - 2013-12-14 23:14 - 00001802 _____ C:\sc-cleaner.txt
2013-12-14 23:39 - 2013-12-14 23:39 - 00005223 _____ C:\Users\denisa\Desktop\JRT.txt
2013-12-14 23:38 - 2011-11-25 23:19 - 00000000 ____D C:\Users\denisa\Documents\Bluetooth Folder
2013-12-14 23:29 - 2009-07-13 21:13 - 00727334 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-14 23:29 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-14 23:29 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-14 23:22 - 2013-12-14 23:22 - 00000000 ____D C:\ProgramData\InternetUpdater
2013-12-14 23:21 - 2013-12-13 22:04 - 00000966 _____ C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job
2013-12-14 23:21 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-14 23:20 - 2013-12-14 20:26 - 00000168 _____ C:\Windows\setupact.log
2013-12-14 23:18 - 2013-12-14 23:15 - 00000000 ____D C:\AdwCleaner
2013-12-14 23:18 - 2013-12-13 22:04 - 00000000 ____D C:\Program Files (x86)\Consumer Input
2013-12-14 23:14 - 2013-12-14 23:14 - 00000000 ____D C:\Windows\ERUNT
2013-12-14 23:12 - 2013-12-14 23:12 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\denisa\Desktop\sc-cleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01226802 _____ C:\Users\denisa\Desktop\adwcleaner.exe
2013-12-14 23:11 - 2013-12-14 23:11 - 01034531 _____ (Thisisu) C:\Users\denisa\Desktop\JRT.exe
2013-12-14 21:35 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\system32\NDF
2013-12-14 21:14 - 2011-11-25 23:18 - 00003934 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{2B72CBDD-228B-4178-BA3C-970E7EC9DFD3}
2013-12-14 21:01 - 2012-11-15 09:49 - 00000000 ____D C:\Program Files (x86)\trend micro
2013-12-14 20:53 - 2013-12-14 20:53 - 00000000 ____D C:\rsit
2013-12-14 20:52 - 2013-12-14 20:52 - 00781383 _____ C:\Users\denisa\Downloads\RSIT.exe
2013-12-14 20:26 - 2013-12-14 20:26 - 00000000 _____ C:\Windows\setuperr.log
2013-12-14 20:22 - 2013-08-09 23:12 - 00083160 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-12-14 20:22 - 2013-08-09 23:04 - 00132600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-12-14 20:22 - 2013-08-09 23:04 - 00107416 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-12-14 20:22 - 2013-08-09 23:04 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-12-14 20:13 - 2011-11-26 11:45 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Winamp
2013-12-14 20:11 - 2007-01-01 17:25 - 00000000 ____D C:\Windows\Panther
2013-12-14 19:51 - 2011-12-10 22:32 - 00000336 _____ C:\Windows\Tasks\HPCeeScheduleFordenisa.job
2013-12-14 15:00 - 2011-12-10 22:32 - 00003192 _____ C:\Windows\System32\Tasks\HPCeeScheduleFordenisa
2013-12-14 14:59 - 2011-11-26 19:15 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-12-14 14:58 - 2011-12-03 19:24 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-12-14 09:32 - 2011-07-12 19:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-12-13 23:06 - 2011-11-25 23:14 - 00000000 ____D C:\Users\denisa
2013-12-13 23:05 - 2013-12-02 21:38 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Friday's games
2013-12-13 22:10 - 2013-12-13 22:10 - 00003294 _____ C:\Windows\System32\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}
2013-12-13 22:06 - 2013-12-13 22:06 - 00003278 _____ C:\Windows\System32\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001
2013-12-13 22:05 - 2013-12-13 22:05 - 00003966 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineUA
2013-12-13 22:05 - 2013-12-13 22:05 - 00000145 _____ C:\out.txt
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ArcadeParlor
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo! Companion
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\ProgramData\Yahoo!
2013-12-13 22:05 - 2013-12-13 22:05 - 00000000 ____D C:\Program Files (x86)\Yahoo!
2013-12-13 22:05 - 2013-08-09 22:19 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Mozilla
2013-12-13 22:04 - 2013-12-13 22:04 - 00003714 _____ C:\Windows\System32\Tasks\ConsumerInputUpdateTaskMachineCore
2013-12-13 22:04 - 2013-12-13 22:04 - 00003160 _____ C:\Windows\System32\Tasks\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\Users\denisa\AppData\Local\ArcadeParlor
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\Updater
2013-12-13 22:04 - 2013-12-13 22:04 - 00000000 ____D C:\ProgramData\RHelpers
2013-12-13 18:39 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2013-12-13 14:42 - 2013-12-13 14:01 - 364861440 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x10-CZ-titulky.avi
2013-12-12 22:08 - 2013-12-12 22:08 - 00082779 _____ C:\Users\denisa\Downloads\Frozen-2013.srt
2013-12-12 21:43 - 2013-12-12 18:57 - 1437870154 _____ C:\Users\denisa\Downloads\Frozen-2013.CAM.mkv
2013-12-12 19:50 - 2013-12-12 19:49 - 00000000 ____D C:\Users\denisa\AppData\Local\TimeParadox
2013-12-12 19:39 - 2012-04-12 15:47 - 00000000 ____D C:\Users\denisa\AppData\Roaming\vlc
2013-12-12 19:35 - 2013-12-02 20:07 - 00000064 _____ C:\Windows\GPlrLanc.dat
2013-12-11 21:02 - 2013-09-17 15:08 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-12-11 17:34 - 2009-07-13 21:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2013-12-11 17:32 - 2009-07-13 20:45 - 00437712 _____ C:\Windows\system32\FNTCACHE.DAT
2013-12-10 22:53 - 2013-03-01 07:45 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-10 22:53 - 2013-03-01 07:45 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-10 22:53 - 2011-07-12 19:24 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-10 11:02 - 2013-12-10 11:02 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-10 11:02 - 2011-12-07 17:58 - 00000000 ____D C:\Program Files (x86)\Google
2013-12-09 10:32 - 2011-11-25 20:28 - 00003938 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA
2013-12-09 10:32 - 2011-11-25 20:28 - 00003542 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core
2013-12-07 09:40 - 2011-12-07 17:58 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-07 09:40 - 2011-12-07 17:58 - 00003696 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-06 19:49 - 2013-12-06 19:10 - 356536320 _____ C:\Users\denisa\Downloads\Upíří-deníky-(The-Vampire-diaries)-5x09-CZ-titulky.avi
2013-12-06 19:04 - 2011-11-25 23:18 - 00001413 _____ C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-06 18:59 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-12-05 22:54 - 2013-12-05 22:54 - 00041016 _____ C:\Users\denisa\Downloads\lost-girl-4x04---turn-to-stone.killers.srt
2013-12-05 21:06 - 2013-12-05 20:25 - 373620470 _____ C:\Users\denisa\Downloads\Lost.Girl.S04E04.HDTV.XviD-AFG.avi
2013-12-05 15:47 - 2013-12-05 15:47 - 00045408 _____ C:\Users\denisa\Downloads\the.originals.s01e09.hdtv.x264-lol.srt
2013-12-05 15:45 - 2011-11-25 20:29 - 00002370 _____ C:\Users\denisa\Desktop\Google Chrome.lnk
2013-12-04 12:45 - 2013-12-04 12:03 - 370781980 _____ C:\Users\denisa\Downloads\The-Originals-1x09.avi
2013-12-03 23:02 - 2011-11-26 11:56 - 00000000 ____D C:\Users\denisa\AppData\Roaming\SoftGrid Client
2013-12-03 09:14 - 2013-12-03 09:14 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-03 09:14 - 2013-12-03 09:14 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-03 09:14 - 2013-12-03 09:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-03 09:14 - 2013-12-03 09:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-03 09:14 - 2013-12-03 09:14 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-03 09:14 - 2013-12-03 09:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-02 21:38 - 2013-12-02 21:38 - 00000000 ____D C:\Program Files (x86)\Online Games Manager
2013-12-02 19:51 - 2013-11-08 19:40 - 00000000 ____D C:\Users\denisa\Desktop\New folder (3)
2013-12-01 19:50 - 2013-02-08 16:22 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-12-01 19:50 - 2011-11-25 20:23 - 00000000 ____D C:\ProgramData\Skype
2013-12-01 19:28 - 2011-11-25 20:29 - 00000000 ____D C:\Users\denisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-11-28 12:09 - 2013-11-28 12:09 - 00039215 _____ C:\Users\denisa\Downloads\the.originals.s01e08.hdtv.x264-lol.srt
2013-11-27 13:17 - 2013-11-27 12:36 - 368523384 _____ C:\Users\denisa\Downloads\The-Originals-1x08.avi
2013-11-26 03:54 - 2013-12-11 09:18 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-26 02:19 - 2013-12-11 09:18 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-26 02:18 - 2013-12-11 09:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-26 02:11 - 2013-12-11 09:18 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-26 01:48 - 2013-12-11 09:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-26 01:46 - 2013-12-11 09:18 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-26 01:41 - 2013-12-11 09:18 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-26 01:29 - 2013-12-11 09:18 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-26 01:27 - 2013-12-11 09:18 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-26 01:23 - 2013-12-11 09:18 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-26 01:21 - 2013-12-11 09:18 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-26 01:18 - 2013-12-11 09:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-26 01:18 - 2013-12-11 09:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-26 01:16 - 2013-12-11 09:18 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-26 00:57 - 2013-12-11 09:18 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-26 00:38 - 2013-12-11 09:18 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-26 00:38 - 2013-12-11 09:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-26 00:35 - 2013-12-11 09:18 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-26 00:32 - 2013-12-11 09:18 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-26 00:28 - 2013-12-11 09:18 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-26 00:16 - 2013-12-11 09:18 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-26 00:02 - 2013-12-11 09:18 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-25 23:48 - 2013-12-11 09:18 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-25 23:32 - 2013-12-11 09:18 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-25 23:26 - 2013-12-11 09:18 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-25 23:07 - 2013-12-11 09:18 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-25 22:40 - 2013-12-11 09:18 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-25 22:34 - 2013-12-11 09:18 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-25 22:34 - 2013-12-11 09:18 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-25 22:33 - 2013-12-11 09:18 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-25 22:27 - 2013-12-11 09:18 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-24 08:41 - 2013-11-21 11:05 - 105952601 _____ C:\Windows\SysWOW64\ፋ�ᵌ
2013-11-23 10:26 - 2013-12-10 21:05 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-11-23 09:47 - 2013-12-10 21:05 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-11-17 08:26 - 2013-11-17 08:22 - 23791160 _____ C:\Users\denisa\Downloads\behind_the_scenes_for_petra_sera_photography_1280x720.mp4
Some content of TEMP:
====================
C:\Users\denisa\AppData\Local\Temp\avgnt.exe
C:\Users\denisa\AppData\Local\Temp\bstrapInstall.exe
C:\Users\denisa\AppData\Local\Temp\Quarantine.exe
C:\Users\denisa\AppData\Local\Temp\{9C7496A6-B331-498e-B0E8-1FB0947ED823}-ConsumerInputUpdate.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-13 18:30
==================== End Of Log ============================
Re: prosim o pomoc
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-12-2013
Ran by denisa at 2013-12-15 16:15:27
Running from C:\Users\denisa\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Free Firewall (Disabled) {E6380B7E-D4B2-19F1-083E-56486607704B}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170)
Adobe Reader X (10.1.4) MUI (x32 Version: 10.1.4)
Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.620)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95)
ArcadeParlor (HKCU)
Atheros Bluetooth Suite (64) (Version: 7.4.0.102)
Atheros Driver Installation Program (x32 Version: 9.2)
Avira Free Antivirus (x32 Version: 14.0.1.759)
Bejeweled 3 (x32 Version: 2.2.0.97)
Blackhawk Striker 2 (x32 Version: 2.2.0.95)
Blasterball 3 (x32 Version: 2.2.0.97)
Blio (x32 Version: 2.2.6699)
Bounce Symphony (x32 Version: 2.2.0.97)
BS.Player FREE (x32 Version: 2.58.1058)
Cake Mania (x32 Version: 2.2.0.95)
Canon MP250 series MP Drivers
CCleaner (Version: 4.04)
Cisco EAP-FAST Module (x32 Version: 2.2.14)
Cisco LEAP Module (x32 Version: 1.0.19)
Cisco PEAP Module (x32 Version: 1.1.6)
Consumer Input (remove only) (x32)
Cradle of Rome 2 (x32 Version: 2.2.0.95)
CyberLink YouCam (x32 Version: 3.5.1.4119)
D3DX10 (x32 Version: 15.4.2368.0902)
DivX Setup (x32 Version: 2.6.1.5)
ESU for Microsoft Windows 7 SP1 (x32 Version: 2.1.1)
Evernote v. 4.2.3 (x32 Version: 4.2.3.22)
Farm Frenzy (x32 Version: 2.2.0.95)
FATE (x32 Version: 2.2.0.97)
ffdshow v1.2.4422 [2012-04-09] (x32 Version: 1.2.4422.0)
Fotogalerie (x32 Version: 16.4.3508.0205)
Google Earth (x32 Version: 7.1.2.2041)
Google Chrome (HKCU Version: 31.0.1650.63)
Google Update Helper (x32 Version: 1.3.22.3)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000)
HP Auto (Version: 1.0.12935.3667)
HP Client Services (Version: 1.1.12938.3539)
HP Connection Manager (x32 Version: 4.1.23.1)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7)
HP Documentation (x32 Version: 1.1.0.0)
HP Games (x32 Version: 1.0.2.5)
HP Launch Box (Version: 1.1.5)
HP MovieStore (x32 Version: 1.0.057)
HP MovieStore (x32 Version: 2.0)
HP On Screen Display (x32 Version: 1.3.5)
HP Product Detection (x32 Version: 11.14.0001)
HP Quick Launch (x32 Version: 2.7.2)
HP QuickWeb (x32 Version: 3.1.0.9742)
HP Setup (x32 Version: 8.7.4751.3798)
HP Setup Manager (x32 Version: 1.1.13476.3753)
HP Software Framework (x32 Version: 4.1.13.1)
HP Support Assistant (x32 Version: 7.0.39.15)
Chronicles of Albian (x32 Version: 2.2.0.95)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Intel(R) Control Center (x32 Version: 1.2.1.1007)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2353)
Intel(R) Rapid Storage Technology (x32 Version: 10.0.0.1046)
Internet Updater (x32 Version: 2.6.52)
Jewel Quest: The Sleepless Star - Collector's Edition (x32 Version: 2.2.0.95)
Junk Mail filter update (x32 Version: 16.4.3508.0205)
Mah Jong Medley (x32 Version: 2.2.0.95)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Mouse and Keyboard Center (Version: 2.2.173.0)
Microsoft Office 365 Home Premium - en-us (Version: 15.0.4551.1011)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000)
Microsoft Office Click-to-Run 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - English (x32 Version: 14.0.5131.5000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SkyDrive (HKCU Version: 17.0.2003.1112)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0)
Movie Maker (x32 Version: 16.4.3508.0205)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSVCRT110 (x32 Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.97)
Namco All-Stars: PAC-MAN (x32 Version: 2.2.0.95)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4535.1511)
Office 15 Click-to-Run Licensing Component (Version: 15.0.4535.1511)
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4535.1511)
Online Games Manager v1.21 (x32 Version: 1.21.2)
PeerBlock 1.1 (r518) (Version: 1.1.0.518)
Penguins! (x32 Version: 2.2.0.95)
Photo Common (x32 Version: 16.4.3508.0205)
Photo Gallery (x32 Version: 16.4.3508.0205)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95)
PlayReady PC Runtime x86 (x32 Version: 1.3.0)
Poker Superstars III (x32 Version: 2.2.0.95)
Polar Bowler (x32 Version: 2.2.0.97)
Polar Golfer (x32 Version: 2.2.0.95)
Realtek Ethernet Controller Driver (x32 Version: 7.42.304.2011)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6287)
Realtek PCIE Card Reader (x32 Version: 6.1.7600.77)
Recovery Manager (x32 Version: 2.0.0)
RoxioNow Player (x32 Version: 1.9.5.103)
SearchDonkey (x32 Version: 2.6.49)
Skype™ 6.11 (x32 Version: 6.11.102)
Slingo Supreme (x32 Version: 2.2.0.97)
Synaptics TouchPad Driver (Version: 15.3.11.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update Installer for WildTangent Games App (x32)
Updater (x32 Version: 2.6.49)
Vacation Quest - The Hawaiian Islands (x32 Version: 2.2.0.97)
VC 9.0 Runtime (x32 Version: 1.0.0)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0)
Virtual Villagers 5 - New Believers (x32 Version: 2.2.0.97)
VLC media player 2.0.1 (x32 Version: 2.0.1)
WildTangent Games App (x32 Version: 4.0.9.7)
Winamp (x32 Version: 5.622 )
Windows Live Communications Platform (x32 Version: 16.4.3508.0205)
Windows Live Essentials (x32 Version: 16.4.3508.0205)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (x32 Version: 16.4.3508.0205)
Windows Live Mail (x32 Version: 16.4.3508.0205)
Windows Live Messenger (x32 Version: 16.4.3508.0205)
Windows Live MIME IFilter (Version: 16.4.3508.0205)
Windows Live Photo Common (x32 Version: 16.4.3508.0205)
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205)
Windows Live SOXE (x32 Version: 16.4.3508.0205)
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205)
Windows Live UX Platform (x32 Version: 16.4.3508.0205)
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205)
Windows Live Writer (x32 Version: 16.4.3508.0205)
Windows Live Writer Resources (x32 Version: 16.4.3508.0205)
WinRAR 4.20 (32-bit) (x32 Version: 4.20.0)
Yahoo! Toolbar (x32)
ZoneAlarm Firewall (x32 Version: 10.1.065.000)
ZoneAlarm Free (x32 Version: 10.1.065.000)
ZoneAlarm Security (x32 Version: 10.1.065.000)
ZoneAlarm Toolbar
Zuma Deluxe (x32 Version: 2.2.0.95)
==================== Restore Points =========================
01-12-2013 19:43:18 Scheduled Checkpoint
03-12-2013 17:11:06 Windows Update
11-12-2013 17:16:19 Windows Update
14-12-2013 06:05:16 Installed WeatherBug
14-12-2013 06:07:51 Removed Blio.
14-12-2013 06:09:59 Removed WeatherBug
15-12-2013 17:44:35 Windows Update
==================== Hosts content: ==========================
2009-07-13 18:34 - 2009-06-10 13:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
Task: {0DEC7D7F-5853-4C46-89F9-3A6BA2C679C3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-11-22] (Hewlett-Packard)
Task: {160D508D-7433-4DF3-A806-04D64821DD25} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd)
Task: {1EAB1079-2E3E-4B99-927D-D99860FC1470} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => Rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
Task: {21DBFABD-417D-42D5-B025-16634C1BE210} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-25] (Google Inc.)
Task: {3BCDA31F-0F39-46E5-9EA3-944B65CE8807} - System32\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001 => C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe [2013-11-11] ()
Task: {3C13949E-33FC-4035-BAA0-05C4176D5F6A} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-06-15] (CyberLink)
Task: {4424386B-E93A-4A68-95ED-680390373BFB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-25] (Google Inc.)
Task: {4B84A855-268F-46F0-9D0C-29924B964626} - System32\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9} => C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe [2013-10-21] (Compete, Inc.)
Task: {51F7840D-59FB-45DC-BCCF-48B4F64FD8D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {6CEC517F-2586-48A1-837F-1A91DD90B4CB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-09-23] (Hewlett-Packard Company)
Task: {6E370AC1-0986-4760-B554-1F2486373DCC} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {85A87FC2-1E44-44BC-8E2F-7F1C8EE7B0B1} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {87EF7EB0-19DE-4299-9EA5-982989F9FC0D} - System32\Tasks\HPCeeScheduleFordenisa => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {97E3F519-D8C9-43CA-8C9C-E8A9CA0C106A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-11-02] (Microsoft Corporation)
Task: {994C86AD-A929-4B2C-88A0-4E25A107A029} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => Rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
Task: {A4204D37-98B6-4406-BC95-53EBB00FB7A0} - System32\Tasks\ConsumerInputUpdateTaskMachineUA => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: {A7C73732-9F11-4281-8D19-764D4EC9D94D} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe aepdu.dll,AePduRunUpdate
Task: {A9E828C9-CDD2-4DC3-AC61-2EE3DBAEDD0D} - System32\Tasks\{F6306407-1616-41F2-BC36-6EE9D84A92BA} => Chrome.exe http://ui.skype.com/ui/0/6.5.0.158/cs/a ... rogressBar
Task: {B32372A3-E17C-41A3-B514-79BE12628023} - System32\Tasks\ConsumerInputUpdateTaskMachineCore => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: {CCE13927-9719-4DE5-B8A0-E877E490357D} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {D266EC10-4B4A-4105-A690-E46ECF127167} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => Rundll32.exe /d acproxy.dll,PerformAutochkOperations
Task: {DDAF6C70-741C-4D15-B105-FBA2043B84AE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {DF0EE64C-59D0-4617-A8D6-0F7B97047DB2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07] (Google Inc.)
Task: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => Rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
Task: {E4E06CF2-FFA3-4B80-B839-8905816DF8BF} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\MouseKeyboardCenter.exe [2013-05-13] (Microsoft)
Task: {EE576D0D-2A5E-4B05-8231-C630DB356970} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {F27D2343-530E-482F-AC22-4309BB4606D2} - System32\Tasks\{2DF23786-22FC-4546-A7BE-9B0B745C0051} => Chrome.exe http://ui.skype.com/ui/0/6.6.0.106/cs/a ... age=tsBing
Task: {F5F76152-197B-489F-A7C1-A9CD27683524} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2013-10-11] (Microsoft Corporation)
Task: {F71D36BD-E24E-47DF-A83A-36D63EFFDB60} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07] (Google Inc.)
Task: {F9A6E47F-A362-49C8-8DDA-27254BA51FBD} - System32\Tasks\ArcadeParlor => C:\Users\denisa\AppData\Local\ArcadeParlor\versioncheck.exe [2013-12-13] ()
Task: {FCE49B95-4799-41C9-9C50-8428C5060DB6} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-06-27] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ArcadeParlor.job => C:\Users\denisa\AppData\Local\ArcadeParlor\versioncheck.exe
Task: C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job => C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
Task: C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job => C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleFordenisa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Loaded Modules (whitelisted) =============
2011-04-04 19:18 - 2011-04-04 19:18 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-09-17 15:14 - 2013-09-17 15:14 - 08866472 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2011-04-27 17:05 - 2011-04-27 17:05 - 01102336 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\System.Data.SQLite.dll
2013-08-09 23:04 - 2013-08-09 22:28 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2013-08-15 11:12 - 2013-08-15 11:12 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\cd9a4b4dbc1a4b564ebed696e18cadb6\IsdiInterop.ni.dll
2011-10-15 15:21 - 2010-09-13 17:28 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2011-04-27 17:05 - 2011-04-27 17:05 - 00514570 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\sqlite3.dll
2013-12-05 15:45 - 2013-12-03 18:47 - 00702416 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-05 15:45 - 2013-12-03 18:47 - 00099792 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-05 15:45 - 2013-12-03 18:48 - 04055504 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-05 15:45 - 2013-12-03 18:48 - 00399312 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-05 15:45 - 2013-12-03 18:47 - 01619408 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
2013-12-05 15:45 - 2013-12-03 18:48 - 13586896 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/15/2013 03:21:21 PM) (Source: Application Error) (User: )
Description: Faulting application name: DivXUpdate.exe, version: 1.0.6.15, time stamp: 0x4e31ebcf
Faulting module name: netprofm.dll, version: 6.1.7600.16385, time stamp: 0x4a5bda75
Exception code: 0xc0000005
Fault offset: 0x00002505
Faulting process id: 0x34c
Faulting application start time: 0xDivXUpdate.exe0
Faulting application path: DivXUpdate.exe1
Faulting module path: DivXUpdate.exe2
Report Id: DivXUpdate.exe3
Error: (12/15/2013 02:55:18 PM) (Source: Office 2013 Licensing Service) (User: )
Description: Subscription licensing service failed: -1073415161
System errors:
=============
Error: (12/15/2013 09:44:15 AM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ZAtheros Bt&Wlan Coex Agent service.
Microsoft Office Sessions:
=========================
Error: (12/15/2013 03:21:21 PM) (Source: Application Error)(User: )
Description: DivXUpdate.exe1.0.6.154e31ebcfnetprofm.dll6.1.7600.163854a5bda75c00000050000250534c01cef966512c76e2C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exeC:\Windows\System32\netprofm.dll9b3b81e7-65df-11e3-b037-74de2b600e55
Error: (12/15/2013 02:55:18 PM) (Source: Office 2013 Licensing Service)(User: )
Description: Subscription licensing service failed: -1073415161
CodeIntegrity Errors:
===================================
Date: 2012-11-15 09:17:55.738
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-15 08:51:44.241
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-15 08:03:52.785
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 22:09:01.125
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 21:50:28.632
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 21:17:22.537
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 20:59:32.832
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 19:54:34.598
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-13 21:57:35.374
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-13 12:23:39.520
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Percentage of memory in use: 79%
Total physical RAM: 3947.86 MB
Available physical RAM: 825.37 MB
Total Pagefile: 7893.9 MB
Available Pagefile: 3668.94 MB
Total Virtual: 8192 MB
Available Virtual: 8191.79 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:446.98 GB) (Free:215.18 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Recovery) (Fixed) (Total:14.62 GB) (Free:1.62 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:1.08 GB) FAT32
Drive f: (DPQ3925) (CDROM) (Total:0.02 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: E9B0A126)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=447 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=4 GB) - (Type=0C)
==================== End Of Log ============================
Ran by denisa at 2013-12-15 16:15:27
Running from C:\Users\denisa\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Free Firewall (Disabled) {E6380B7E-D4B2-19F1-083E-56486607704B}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170)
Adobe Reader X (10.1.4) MUI (x32 Version: 10.1.4)
Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.620)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95)
ArcadeParlor (HKCU)
Atheros Bluetooth Suite (64) (Version: 7.4.0.102)
Atheros Driver Installation Program (x32 Version: 9.2)
Avira Free Antivirus (x32 Version: 14.0.1.759)
Bejeweled 3 (x32 Version: 2.2.0.97)
Blackhawk Striker 2 (x32 Version: 2.2.0.95)
Blasterball 3 (x32 Version: 2.2.0.97)
Blio (x32 Version: 2.2.6699)
Bounce Symphony (x32 Version: 2.2.0.97)
BS.Player FREE (x32 Version: 2.58.1058)
Cake Mania (x32 Version: 2.2.0.95)
Canon MP250 series MP Drivers
CCleaner (Version: 4.04)
Cisco EAP-FAST Module (x32 Version: 2.2.14)
Cisco LEAP Module (x32 Version: 1.0.19)
Cisco PEAP Module (x32 Version: 1.1.6)
Consumer Input (remove only) (x32)
Cradle of Rome 2 (x32 Version: 2.2.0.95)
CyberLink YouCam (x32 Version: 3.5.1.4119)
D3DX10 (x32 Version: 15.4.2368.0902)
DivX Setup (x32 Version: 2.6.1.5)
ESU for Microsoft Windows 7 SP1 (x32 Version: 2.1.1)
Evernote v. 4.2.3 (x32 Version: 4.2.3.22)
Farm Frenzy (x32 Version: 2.2.0.95)
FATE (x32 Version: 2.2.0.97)
ffdshow v1.2.4422 [2012-04-09] (x32 Version: 1.2.4422.0)
Fotogalerie (x32 Version: 16.4.3508.0205)
Google Earth (x32 Version: 7.1.2.2041)
Google Chrome (HKCU Version: 31.0.1650.63)
Google Update Helper (x32 Version: 1.3.22.3)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000)
HP Auto (Version: 1.0.12935.3667)
HP Client Services (Version: 1.1.12938.3539)
HP Connection Manager (x32 Version: 4.1.23.1)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7)
HP Documentation (x32 Version: 1.1.0.0)
HP Games (x32 Version: 1.0.2.5)
HP Launch Box (Version: 1.1.5)
HP MovieStore (x32 Version: 1.0.057)
HP MovieStore (x32 Version: 2.0)
HP On Screen Display (x32 Version: 1.3.5)
HP Product Detection (x32 Version: 11.14.0001)
HP Quick Launch (x32 Version: 2.7.2)
HP QuickWeb (x32 Version: 3.1.0.9742)
HP Setup (x32 Version: 8.7.4751.3798)
HP Setup Manager (x32 Version: 1.1.13476.3753)
HP Software Framework (x32 Version: 4.1.13.1)
HP Support Assistant (x32 Version: 7.0.39.15)
Chronicles of Albian (x32 Version: 2.2.0.95)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Intel(R) Control Center (x32 Version: 1.2.1.1007)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2353)
Intel(R) Rapid Storage Technology (x32 Version: 10.0.0.1046)
Internet Updater (x32 Version: 2.6.52)
Jewel Quest: The Sleepless Star - Collector's Edition (x32 Version: 2.2.0.95)
Junk Mail filter update (x32 Version: 16.4.3508.0205)
Mah Jong Medley (x32 Version: 2.2.0.95)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Mouse and Keyboard Center (Version: 2.2.173.0)
Microsoft Office 365 Home Premium - en-us (Version: 15.0.4551.1011)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000)
Microsoft Office Click-to-Run 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - English (x32 Version: 14.0.5131.5000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SkyDrive (HKCU Version: 17.0.2003.1112)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0)
Movie Maker (x32 Version: 16.4.3508.0205)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSVCRT110 (x32 Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.97)
Namco All-Stars: PAC-MAN (x32 Version: 2.2.0.95)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4535.1511)
Office 15 Click-to-Run Licensing Component (Version: 15.0.4535.1511)
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4535.1511)
Online Games Manager v1.21 (x32 Version: 1.21.2)
PeerBlock 1.1 (r518) (Version: 1.1.0.518)
Penguins! (x32 Version: 2.2.0.95)
Photo Common (x32 Version: 16.4.3508.0205)
Photo Gallery (x32 Version: 16.4.3508.0205)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95)
PlayReady PC Runtime x86 (x32 Version: 1.3.0)
Poker Superstars III (x32 Version: 2.2.0.95)
Polar Bowler (x32 Version: 2.2.0.97)
Polar Golfer (x32 Version: 2.2.0.95)
Realtek Ethernet Controller Driver (x32 Version: 7.42.304.2011)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6287)
Realtek PCIE Card Reader (x32 Version: 6.1.7600.77)
Recovery Manager (x32 Version: 2.0.0)
RoxioNow Player (x32 Version: 1.9.5.103)
SearchDonkey (x32 Version: 2.6.49)
Skype™ 6.11 (x32 Version: 6.11.102)
Slingo Supreme (x32 Version: 2.2.0.97)
Synaptics TouchPad Driver (Version: 15.3.11.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update Installer for WildTangent Games App (x32)
Updater (x32 Version: 2.6.49)
Vacation Quest - The Hawaiian Islands (x32 Version: 2.2.0.97)
VC 9.0 Runtime (x32 Version: 1.0.0)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0)
Virtual Villagers 5 - New Believers (x32 Version: 2.2.0.97)
VLC media player 2.0.1 (x32 Version: 2.0.1)
WildTangent Games App (x32 Version: 4.0.9.7)
Winamp (x32 Version: 5.622 )
Windows Live Communications Platform (x32 Version: 16.4.3508.0205)
Windows Live Essentials (x32 Version: 16.4.3508.0205)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (x32 Version: 16.4.3508.0205)
Windows Live Mail (x32 Version: 16.4.3508.0205)
Windows Live Messenger (x32 Version: 16.4.3508.0205)
Windows Live MIME IFilter (Version: 16.4.3508.0205)
Windows Live Photo Common (x32 Version: 16.4.3508.0205)
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205)
Windows Live SOXE (x32 Version: 16.4.3508.0205)
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205)
Windows Live UX Platform (x32 Version: 16.4.3508.0205)
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205)
Windows Live Writer (x32 Version: 16.4.3508.0205)
Windows Live Writer Resources (x32 Version: 16.4.3508.0205)
WinRAR 4.20 (32-bit) (x32 Version: 4.20.0)
Yahoo! Toolbar (x32)
ZoneAlarm Firewall (x32 Version: 10.1.065.000)
ZoneAlarm Free (x32 Version: 10.1.065.000)
ZoneAlarm Security (x32 Version: 10.1.065.000)
ZoneAlarm Toolbar
Zuma Deluxe (x32 Version: 2.2.0.95)
==================== Restore Points =========================
01-12-2013 19:43:18 Scheduled Checkpoint
03-12-2013 17:11:06 Windows Update
11-12-2013 17:16:19 Windows Update
14-12-2013 06:05:16 Installed WeatherBug
14-12-2013 06:07:51 Removed Blio.
14-12-2013 06:09:59 Removed WeatherBug
15-12-2013 17:44:35 Windows Update
==================== Hosts content: ==========================
2009-07-13 18:34 - 2009-06-10 13:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 => Rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
Task: {0DEC7D7F-5853-4C46-89F9-3A6BA2C679C3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-11-22] (Hewlett-Packard)
Task: {160D508D-7433-4DF3-A806-04D64821DD25} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd)
Task: {1EAB1079-2E3E-4B99-927D-D99860FC1470} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => Rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
Task: {21DBFABD-417D-42D5-B025-16634C1BE210} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-25] (Google Inc.)
Task: {3BCDA31F-0F39-46E5-9EA3-944B65CE8807} - System32\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001 => C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe [2013-11-11] ()
Task: {3C13949E-33FC-4035-BAA0-05C4176D5F6A} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-06-15] (CyberLink)
Task: {4424386B-E93A-4A68-95ED-680390373BFB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-25] (Google Inc.)
Task: {4B84A855-268F-46F0-9D0C-29924B964626} - System32\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9} => C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe [2013-10-21] (Compete, Inc.)
Task: {51F7840D-59FB-45DC-BCCF-48B4F64FD8D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {6CEC517F-2586-48A1-837F-1A91DD90B4CB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-09-23] (Hewlett-Packard Company)
Task: {6E370AC1-0986-4760-B554-1F2486373DCC} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {85A87FC2-1E44-44BC-8E2F-7F1C8EE7B0B1} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {87EF7EB0-19DE-4299-9EA5-982989F9FC0D} - System32\Tasks\HPCeeScheduleFordenisa => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {97E3F519-D8C9-43CA-8C9C-E8A9CA0C106A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-11-02] (Microsoft Corporation)
Task: {994C86AD-A929-4B2C-88A0-4E25A107A029} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => Rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
Task: {A4204D37-98B6-4406-BC95-53EBB00FB7A0} - System32\Tasks\ConsumerInputUpdateTaskMachineUA => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: {A7C73732-9F11-4281-8D19-764D4EC9D94D} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe aepdu.dll,AePduRunUpdate
Task: {A9E828C9-CDD2-4DC3-AC61-2EE3DBAEDD0D} - System32\Tasks\{F6306407-1616-41F2-BC36-6EE9D84A92BA} => Chrome.exe http://ui.skype.com/ui/0/6.5.0.158/cs/a ... rogressBar
Task: {B32372A3-E17C-41A3-B514-79BE12628023} - System32\Tasks\ConsumerInputUpdateTaskMachineCore => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: {CCE13927-9719-4DE5-B8A0-E877E490357D} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {D266EC10-4B4A-4105-A690-E46ECF127167} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => Rundll32.exe /d acproxy.dll,PerformAutochkOperations
Task: {DDAF6C70-741C-4D15-B105-FBA2043B84AE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {DF0EE64C-59D0-4617-A8D6-0F7B97047DB2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07] (Google Inc.)
Task: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => Rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
Task: {E4E06CF2-FFA3-4B80-B839-8905816DF8BF} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\MouseKeyboardCenter.exe [2013-05-13] (Microsoft)
Task: {EE576D0D-2A5E-4B05-8231-C630DB356970} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {F27D2343-530E-482F-AC22-4309BB4606D2} - System32\Tasks\{2DF23786-22FC-4546-A7BE-9B0B745C0051} => Chrome.exe http://ui.skype.com/ui/0/6.6.0.106/cs/a ... age=tsBing
Task: {F5F76152-197B-489F-A7C1-A9CD27683524} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2013-10-11] (Microsoft Corporation)
Task: {F71D36BD-E24E-47DF-A83A-36D63EFFDB60} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-07] (Google Inc.)
Task: {F9A6E47F-A362-49C8-8DDA-27254BA51FBD} - System32\Tasks\ArcadeParlor => C:\Users\denisa\AppData\Local\ArcadeParlor\versioncheck.exe [2013-12-13] ()
Task: {FCE49B95-4799-41C9-9C50-8428C5060DB6} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-06-27] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ArcadeParlor.job => C:\Users\denisa\AppData\Local\ArcadeParlor\versioncheck.exe
Task: C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job => C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
Task: C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job => C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleFordenisa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Loaded Modules (whitelisted) =============
2011-04-04 19:18 - 2011-04-04 19:18 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-09-17 15:14 - 2013-09-17 15:14 - 08866472 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2011-04-27 17:05 - 2011-04-27 17:05 - 01102336 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\System.Data.SQLite.dll
2013-08-09 23:04 - 2013-08-09 22:28 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2013-08-15 11:12 - 2013-08-15 11:12 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\cd9a4b4dbc1a4b564ebed696e18cadb6\IsdiInterop.ni.dll
2011-10-15 15:21 - 2010-09-13 17:28 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2011-04-27 17:05 - 2011-04-27 17:05 - 00514570 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\sqlite3.dll
2013-12-05 15:45 - 2013-12-03 18:47 - 00702416 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-05 15:45 - 2013-12-03 18:47 - 00099792 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-05 15:45 - 2013-12-03 18:48 - 04055504 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-05 15:45 - 2013-12-03 18:48 - 00399312 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-05 15:45 - 2013-12-03 18:47 - 01619408 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
2013-12-05 15:45 - 2013-12-03 18:48 - 13586896 _____ () C:\Users\denisa\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/15/2013 03:21:21 PM) (Source: Application Error) (User: )
Description: Faulting application name: DivXUpdate.exe, version: 1.0.6.15, time stamp: 0x4e31ebcf
Faulting module name: netprofm.dll, version: 6.1.7600.16385, time stamp: 0x4a5bda75
Exception code: 0xc0000005
Fault offset: 0x00002505
Faulting process id: 0x34c
Faulting application start time: 0xDivXUpdate.exe0
Faulting application path: DivXUpdate.exe1
Faulting module path: DivXUpdate.exe2
Report Id: DivXUpdate.exe3
Error: (12/15/2013 02:55:18 PM) (Source: Office 2013 Licensing Service) (User: )
Description: Subscription licensing service failed: -1073415161
System errors:
=============
Error: (12/15/2013 09:44:15 AM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ZAtheros Bt&Wlan Coex Agent service.
Microsoft Office Sessions:
=========================
Error: (12/15/2013 03:21:21 PM) (Source: Application Error)(User: )
Description: DivXUpdate.exe1.0.6.154e31ebcfnetprofm.dll6.1.7600.163854a5bda75c00000050000250534c01cef966512c76e2C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exeC:\Windows\System32\netprofm.dll9b3b81e7-65df-11e3-b037-74de2b600e55
Error: (12/15/2013 02:55:18 PM) (Source: Office 2013 Licensing Service)(User: )
Description: Subscription licensing service failed: -1073415161
CodeIntegrity Errors:
===================================
Date: 2012-11-15 09:17:55.738
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-15 08:51:44.241
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-15 08:03:52.785
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 22:09:01.125
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 21:50:28.632
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 21:17:22.537
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 20:59:32.832
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-14 19:54:34.598
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-13 21:57:35.374
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
Date: 2012-11-13 12:23:39.520
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Percentage of memory in use: 79%
Total physical RAM: 3947.86 MB
Available physical RAM: 825.37 MB
Total Pagefile: 7893.9 MB
Available Pagefile: 3668.94 MB
Total Virtual: 8192 MB
Available Virtual: 8191.79 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:446.98 GB) (Free:215.18 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Recovery) (Fixed) (Total:14.62 GB) (Free:1.62 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:1.08 GB) FAT32
Drive f: (DPQ3925) (CDROM) (Total:0.02 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: E9B0A126)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=447 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=4 GB) - (Type=0C)
==================== End Of Log ============================
Re: prosim o pomoc
Maly dotaz, spustil jste FRSTLauncher nebo jen samotny FRST??
Re: prosim o pomoc
Asi jen FRST64 to co se mi stahlo s tech odkazu 

Re: prosim o pomoc
A proc se nedrzite navodu, kde se pise, ze se ma spustit FRSTLauncher??? Ono ty navody nejsou psany z nudy a pro nase poteseni 

Re: prosim o pomoc
Tak jsem se na to podivala znova a opravdu nevim co jsem mohla udelat spatne vsechno jsme delala podle navodu...A stahla vsechno co tam bylo.
Re: prosim o pomoc
a mela jsem to pres ten FRST Launcher, sorry za zmatek
Re: prosim o pomoc

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKCU\...\Run: [Google Update] - C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-11-25] (Google Inc.) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKCU\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater) MountPoints2: {f1f0c84f-181e-11e1-a968-806e6f6e6963} - F:\modem.exe HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\reader_sl.exe [35768 2012-07-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008 2012-07-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-10-26] (Nullsoft, Inc.) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-28] () HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [683576 2013-12-14] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater) SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} URL = http://www.amazon.com/s/ref=azs_osd_iea ... -keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms} Toolbar: HKCU - No Name - {91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - No File Toolbar: HKCU - No Name - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - No File DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455} CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION 2013-12-14 23:22 - 2013-12-14 23:22 - 00000000 ____D C:\ProgramData\InternetUpdater C:\ProgramData\Updater C:\Users\denisa\AppData\Local\Temp\avgnt.exe C:\Users\denisa\AppData\Local\Temp\bstrapInstall.exe C:\Users\denisa\AppData\Local\Temp\Quarantine.exe C:\Users\denisa\AppData\Local\Temp\{9C7496A6-B331-498e-B0E8-1FB0947ED823}-ConsumerInputUpdate.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\ArcadeParlor.job => C:\Users\denisa\AppData\Local\ArcadeParlor\versioncheck.exe Task: C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job => C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe Task: C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job => C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleFordenisa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1 Hosts: CMD: shutdown /r /f /t 2 End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: prosim o pomoc
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-12-2013 02
Ran by denisa at 2013-12-18 11:28:12 Run:1
Running from C:\Users\denisa\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKCU\...\Run: [Google Update] - C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-11-25] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKCU\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
MountPoints2: {f1f0c84f-181e-11e1-a968-806e6f6e6963} - F:\modem.exe
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\reader_sl.exe [35768 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-10-26] (Nullsoft, Inc.)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-28] ()
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [683576 2013-12-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} URL = http://www.amazon.com/s/ref=azs_osd_iea ... -keywords={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms}
Toolbar: HKCU - No Name - {91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - No File
Toolbar: HKCU - No Name - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - No File
DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455}
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
2013-12-14 23:22 - 2013-12-14 23:22 - 00000000 ____D C:\ProgramData\InternetUpdater
C:\ProgramData\Updater
C:\Users\denisa\AppData\Local\Temp\avgnt.exe
C:\Users\denisa\AppData\Local\Temp\bstrapInstall.exe
C:\Users\denisa\AppData\Local\Temp\Quarantine.exe
C:\Users\denisa\AppData\Local\Temp\{9C7496A6-B331-498e-B0E8-1FB0947ED823}-ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ArcadeParlor.job => C:\Users\denisa\AppData\Local\ArcadeParlor\versioncheck.exe
Task: C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job => C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
Task: C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job => C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleFordenisa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Updater => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f1f0c84f-181e-11e1-a968-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{f1f0c84f-181e-11e1-a968-806e6f6e6963} => Key not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\WinampAgent => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\avgnt => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Updater => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} => Key deleted successfully.
HKCR\CLSID\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{91DA5E8A-3318-4F8C-B67E-5964DE3AB546} => Value deleted successfully.
HKCR\CLSID\{91DA5E8A-3318-4F8C-B67E-5964DE3AB546} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} => Value deleted successfully.
HKCR\CLSID\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units\{6A060448-60F9-11D5-A6CD-0002B31F7455} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{6A060448-60F9-11D5-A6CD-0002B31F7455} => Key deleted successfully.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
C:\ProgramData\InternetUpdater => Moved successfully.
C:\ProgramData\Updater => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\avgnt.exe => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\bstrapInstall.exe => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\{9C7496A6-B331-498e-B0E8-1FB0947ED823}-ConsumerInputUpdate.exe => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\ArcadeParlor.job => Moved successfully.
C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job => Moved successfully.
C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job => Moved successfully.
C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job => Moved successfully.
C:\Windows\Tasks\HPCeeScheduleFordenisa.job => Moved successfully.
C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully.
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Ran by denisa at 2013-12-18 11:28:12 Run:1
Running from C:\Users\denisa\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKCU\...\Run: [Google Update] - C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-11-25] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKCU\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
MountPoints2: {f1f0c84f-181e-11e1-a968-806e6f6e6963} - F:\modem.exe
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\reader_sl.exe [35768 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-10-26] (Nullsoft, Inc.)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-28] ()
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [683576 2013-12-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [482448 2013-11-20] (Updater)
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} URL = http://www.amazon.com/s/ref=azs_osd_iea ... -keywords={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-30572 ... com/?_nkw={searchTerms}
Toolbar: HKCU - No Name - {91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - No File
Toolbar: HKCU - No Name - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - No File
DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455}
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
2013-12-14 23:22 - 2013-12-14 23:22 - 00000000 ____D C:\ProgramData\InternetUpdater
C:\ProgramData\Updater
C:\Users\denisa\AppData\Local\Temp\avgnt.exe
C:\Users\denisa\AppData\Local\Temp\bstrapInstall.exe
C:\Users\denisa\AppData\Local\Temp\Quarantine.exe
C:\Users\denisa\AppData\Local\Temp\{9C7496A6-B331-498e-B0E8-1FB0947ED823}-ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ArcadeParlor.job => C:\Users\denisa\AppData\Local\ArcadeParlor\versioncheck.exe
Task: C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job => C:\Program Files (x86)\Consumer Input\Monitoring\dca-monitoring.exe
Task: C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job => C:\Program Files (x86)\Consumer Input\InternetExplorer\dca-ua.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job => C:\Program Files (x86)\Consumer Input\Update\ConsumerInputUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job => C:\Users\denisa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleFordenisa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Updater => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f1f0c84f-181e-11e1-a968-806e6f6e6963} => Key deleted successfully.
HKCR\CLSID\{f1f0c84f-181e-11e1-a968-806e6f6e6963} => Key not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\WinampAgent => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\avgnt => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Updater => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} => Key deleted successfully.
HKCR\CLSID\{6EFFDCD2-A828-4297-8FBB-05C4BF4609C9} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{91DA5E8A-3318-4F8C-B67E-5964DE3AB546} => Value deleted successfully.
HKCR\CLSID\{91DA5E8A-3318-4F8C-B67E-5964DE3AB546} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} => Value deleted successfully.
HKCR\CLSID\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units\{6A060448-60F9-11D5-A6CD-0002B31F7455} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{6A060448-60F9-11D5-A6CD-0002B31F7455} => Key deleted successfully.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
C:\ProgramData\InternetUpdater => Moved successfully.
C:\ProgramData\Updater => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\avgnt.exe => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\bstrapInstall.exe => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\denisa\AppData\Local\Temp\{9C7496A6-B331-498e-B0E8-1FB0947ED823}-ConsumerInputUpdate.exe => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\ArcadeParlor.job => Moved successfully.
C:\Windows\Tasks\CIMT_S-1-5-21-1024532271-685414808-3309873360-1001.job => Moved successfully.
C:\Windows\Tasks\CI_DCA_UA{C3717BD3-6AC2-4dcd-83DE-F865C33AC5D9}.job => Moved successfully.
C:\Windows\Tasks\ConsumerInputUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\ConsumerInputUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1024532271-685414808-3309873360-1001UA.job => Moved successfully.
C:\Windows\Tasks\HPCeeScheduleFordenisa.job => Moved successfully.
C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully.
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====