Háčky, čárky - Problém...

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
rugallek
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 27 Pro 2013 12:00

Háčky, čárky - Problém...

#1 Příspěvek od rugallek »

Nazdar lidi,
prosímvás mám takový problém... Nejdou mi psát háčky a čárky, přes shift. Viděl jsem, že už se to párkrát řešilo a vždycky se poukazovalo na spyware, keyloggery, atd.... Tak bych potřeboval, jestli by se mi na to někdo nekoukl a popř. neporadil, jak se toho bordelu zbavím. Předem děkuji a přikládám svůj log z RSIT

Kód: Vybrat vše

Logfile of random's system information tool 1.09 (written by random/random)
Run by Rugallek at 2013-12-27 12:04:00
Microsoft Windows 7 Home Premium  Service Pack 1
System drive C: has 57 GB (12%) free of 477 GB
Total RAM: 3995 MB (30% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:04:08, on 27.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Garena Plus\ggdllhost.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
C:\Users\Rugallek\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\LockKey\LockKey.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Hotspot Shield\bin\hsscp.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Users\Rugallek\AppData\Local\Temp\Systemc.cmd
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Rugallek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8555;https=127.0.0.1:8555
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\ADVANC~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [332BigDog] C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
O4 - HKLM\..\Run: [LockKey] C:\Program Files (x86)\LockKey\LockKey.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe                                                                                                                                                                                                    
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin                                                                                                                                                                     
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Advanced SystemCare 6] "C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart                                                                                                                                                                                              
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart                                                                                                                                                                                                                    
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe                                                                                                                                                                                                              
O4 - HKCU\..\Run: [BitTorrent] "C:\Users\Rugallek\AppData\Roaming\BitTorrent\BitTorrent.exe"  /MINIMIZED
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Rugallek\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver                                                                                                                                                                                   
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray                                                                                                                                                                                                    
O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneCmd.exe" boot "C:\Users\Rugallek\AppData\Local\NVIDIA Corporation\nTune\Profiles\osbootpf.nsu"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Rugallek\AppData\Roaming\Seznam.cz\szninstall.exe" -c                                                                                                                                                                                                          
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Rugallek\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe"  -q
O4 - HKCU\..\Run: [GarenaPlus] "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3815858017-1541395507-992849483-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3815858017-1541395507-992849483-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Facebook Messenger.lnk = Rugallek\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
O4 - Startup: msceInter.exe
O4 - Startup: Systemc.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Intel® PROSet/Wireless WiMAX Red Bend Device Management Service (DMAgent) - Red Bend Ltd. - C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Hotspot Shield Service (hshld) - AnchorFree Inc. - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe
O23 - Service: Hotspot Shield Tray Service (HssTrayService) - Unknown owner - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE
O23 - Service: Hotspot Shield Monitoring Service (HssWd) - Unknown owner - C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Ad-Aware Service 11 (LavasoftAdAwareService11) - Unknown owner - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareService.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Intel® PROSet/Wireless WiMAX Service (WiMAXAppSrv) - Intel(R) Corporation - C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 17640 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe"
"C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe" /StartService
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Windows\system32\rundll32.exe" Shell32.dll,Control_RunDLL mmsys.cpl
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe" /StartService
"C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
WLIDSvcM.exe 2584
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe"
"C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"taskhost.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "159797611762982227-1104753406-12963622413789976471737685708-982056863-1819687453
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:2480
taskeng.exe {489E845C-AC18-4239-9759-4CD52AA67A5D}
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Garena Plus\ggdllhost.exe" "C:\Program Files (x86)\Garena Plus\ggspawn.dll",rundll_entry
C:\Windows\Explorer.EXE
"C:\Windows\System32\igfxtray.exe" 
"C:\Windows\System32\hkcmd.exe" 
"C:\Windows\System32\igfxpers.exe" 
"C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe" /tasktray /nosplash
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" 
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe" 
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe" 
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" 
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe" 
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe" 
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" 
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" 
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\USB Camera2\VM332_STI.EXE" 
szndesktop.exe default start
"C:\Users\Rugallek\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "2085834342-123118484811823509961916521085838582389631693681-1116014442-2084754160
"C:\Program Files (x86)\LockKey\LockKey.exe" 
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
 -nolaunchurl
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" 
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Users\Rugallek\AppData\Local\Temp\Systemc.cmd
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2068.0.796259323\1939774510" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2656 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/EnableZeroSuggest_R2_Stable_QueriesAndUrls_NoSERP/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group20 pct:5 stable:r4 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group1/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_99/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --disable-client-side-phishing-detection --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="2068.2.1301454191\484086294" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/EnableZeroSuggest_R2_Stable_QueriesAndUrls_NoSERP/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group20 pct:5 stable:r4 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group1/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_99/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --disable-client-side-phishing-detection --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="2068.3.568249605\1002327805" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_1\Plugin/ASCPlugin_Protect.dll" --lang=cs --channel="2068.4.257947680\1123908676" /prefetch:-390060480
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-248bbcf7-24b2-4b3e-b0dd-7765b51dbc65 -SystemEventPortName:HostProcess-a41a4a30-63d6-4415-8402-a4633903038e -IoCancelEventPortName:HostProcess-6e24a771-327b-442d-a42d-aa13e3d52968 -NonStateChangingEventPortName:HostProcess-c98683bc-9578-48ca-850f-98dcb3e32598 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c6134a8d-cf6e-4431-96df-cb6a6716fccc -DeviceGroupId:WpdFsGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/EnableZeroSuggest_R2_Stable_QueriesAndUrls_NoSERP/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group20 pct:5 stable:r4 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group1/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_99/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --disable-client-side-phishing-detection --renderer-print-preview --instant-process --disable-html-notifications --disable-accelerated-video-decode --channel="2068.59.37329643\1024117108" /prefetch:673131151
taskeng.exe {E5D67702-F674-4199-A89C-E3A139107CA1}
"C:\Program Files (x86)\Skype\Phone\Skype.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/EnableZeroSuggest_R2_Stable_QueriesAndUrls_NoSERP/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group20 pct:5 stable:r4 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group1/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_99/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --disable-client-side-phishing-detection --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="2068.63.365202199\1541390034" /prefetch:673131151
C:\Windows\system32\msiexec.exe /V
C:\Windows\system32\DllHost.exe /Processid:{A79DB36D-6218-48E6-9EC9-DCBA9A39BF00}
"C:\Program Files\Common Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus Updater\11.1.5152.0\AdAwareUpdater.exe" --install --update-server-url=http://downloadnada.lavasoft.com/update/version.xml --transaction-id=1
"C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareService.exe"
"C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareTray.exe"
"C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/EnableZeroSuggest_R2_Stable_QueriesAndUrls_NoSERP/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group20 pct:5 stable:r4 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group1/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_99/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --disable-client-side-phishing-detection --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="2068.76.1745370155\81427138" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/EnableZeroSuggest_R2_Stable_QueriesAndUrls_NoSERP/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group20 pct:5 stable:r4 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group1/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_99/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --disable-client-side-phishing-detection --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="2068.80.862944071\1620913708" /prefetch:673131151
"C:\Users\Rugallek\Desktop\RSIT\RSITx64.exe" 
--service HotspotShield_exit_1 1 --config "C:\Program Files (x86)\Hotspot Shield\config\proxy.hvpn" --proxy-ports 990 105 179 706 --local-ip 10.0.0.6 -F 0 -B 60 --remote 69.22.168.168 3451 --auth-user-pass chip-389-conduit_3.20_sip --management 127.0.0.1 61637 
\??\C:\Windows\system32\conhost.exe "-1034230721614321479-813926465-454579826-1956126424-1492367844-607144226638809144

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-09-05 553896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-09-05 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll [2013-09-06 95648]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-16 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~2\IObit\ADVANC~1\BROWER~1\ASCPLU~1.DLL [2013-04-24 659264]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-16 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-03-02 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-03-02 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-03-02 440600]
"IntelWirelessWiMAX"=C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe [2011-12-01 1626112]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-03-26 2899216]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-09-03 8071680]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-09-03 6193152]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2012-03-26 410896]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-07-18 1356240]
"AmIcoSinglun64"=c:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-04-27 368728]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-08-27 1028896]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
""= []
"AdAwareTray"=C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareTray.exe [2013-12-11 3987288]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2013-12-11 1823656]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-10-21 20580000]
"Advanced SystemCare 6"=C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe [2013-04-18 491840]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2013-12-13 3551576]
"Pando Media Booster"=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2013-09-06 4287536]
"BitTorrent"=C:\Users\Rugallek\AppData\Roaming\BitTorrent\BitTorrent.exe [2013-09-07 1127000]
"Facebook Update"=C:\Users\Rugallek\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-09-30 138096]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"NVIDIA nTune"=C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneCmd.exe [2008-08-18 145408]
"cz.seznam.software.autoupdate"=C:\Users\Rugallek\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Rugallek\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"GarenaPlus"=C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe [2013-12-16 9890608]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-05-21 291648]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-29 284440]
"Dolby Advanced Audio v2"=C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2011-12-20 507744]
"332BigDog"=C:\Program Files (x86)\USB Camera2\VM332_STI.EXE [2011-12-09 548864]
"LockKey"=C:\Program Files (x86)\LockKey\LockKey.exe [2011-08-25 337776]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2013-03-10 88984]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-11-29 3806544]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2013-07-25 5624784]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe

C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Facebook Messenger.lnk - C:\Users\Rugallek\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
msceInter.exe
Systemc.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-02-17 430080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=3

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\applicationinstaller.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\asc.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\communicationcentre.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\contentcopier.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\crossloopconnect.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deadspace3.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\facebookmessenger.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\hd-apkhandler.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\hd-startlauncher.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nokia_pc_suite_all.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\origin.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\originuninstall.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pcsuite.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pcsynclv.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\suc10_uninstal.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\switchboard.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\teamviewer.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\unins000.exe]
"Debugger=""C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-12-27 12:04:00 ----D---- C:\rsit
2013-12-27 12:04:00 ----D---- C:\Program Files\trend micro
2013-12-27 11:54:04 ----D---- C:\Program Files\Lavasoft
2013-12-27 11:53:19 ----D---- C:\Program Files\Common Files\Lavasoft
2013-12-27 11:52:17 ----D---- C:\ProgramData\Lavasoft
2013-12-26 21:21:54 ----A---- C:\Windows\system32\sdnclean64.exe
2013-12-26 21:21:44 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-12-26 21:21:28 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-12-25 21:52:11 ----A---- C:\Windows\SYSWOW64\Access.dat
2013-12-25 02:16:52 ----D---- C:\Users\Rugallek\AppData\Roaming\Tunngle
2013-12-25 02:16:52 ----D---- C:\ProgramData\Tunngle
2013-12-25 02:16:52 ----A---- C:\Windows\system32\drivers\tap0901t.sys
2013-12-25 02:16:49 ----D---- C:\Program Files (x86)\Tunngle
2013-12-25 02:13:38 ----A---- C:\Users\Rugallek\AppData\Roaming\room_v3.dat
2013-12-25 01:26:19 ----D---- C:\Users\Rugallek\AppData\Roaming\GarenaPlus
2013-12-25 01:26:04 ----D---- C:\Program Files (x86)\Garena Plus
2013-12-25 01:26:01 ----D---- C:\ProgramData\GarenaMessenger
2013-12-25 00:12:51 ----A---- C:\Windows\War3Unin.dat
2013-12-25 00:12:50 ----A---- C:\Windows\War3Unin.pif
2013-12-25 00:12:50 ----A---- C:\Windows\War3Unin.exe
2013-12-25 00:11:33 ----D---- C:\Program Files (x86)\Warcraft III
2013-12-22 19:37:46 ----D---- C:\cygwin
2013-12-22 00:03:31 ----D---- C:\ProgramData\Steam
2013-12-21 23:55:04 ----D---- C:\Program Files (x86)\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst
2013-12-21 21:33:02 ----D---- C:\Program Files (x86)\7-Zip
2013-12-21 21:26:29 ----D---- C:\Program Files (x86)\SmartTweak
2013-12-21 21:26:27 ----D---- C:\Program Files (x86)\eMu3Ds
2013-12-21 14:23:09 ----D---- C:\Users\Rugallek\AppData\Roaming\8BitMMO
2013-12-16 13:42:51 ----D---- C:\Users\Rugallek\AppData\Roaming\.crazycraft
2013-12-13 07:58:07 ----D---- C:\ProgramData\Energy Management
2013-12-12 00:35:06 ----D---- C:\Users\Rugallek\AppData\Roaming\.beta-pokepack
2013-12-11 14:11:22 ----D---- C:\Dev-Pas
2013-12-11 12:54:14 ----D---- C:\ElementalTinkerer
2013-12-11 12:49:51 ----D---- C:\Users\Rugallek\AppData\Roaming\.voidswrath
2013-12-11 09:52:54 ----D---- C:\Users\Rugallek\AppData\Roaming\.aethericcrusade
2013-12-11 09:52:18 ----D---- C:\Users\Rugallek\AppData\Roaming\.beta-jurassiccraft
2013-12-09 12:34:17 ----D---- C:\VoidLauncher
2013-12-09 12:15:43 ----D---- C:\Users\Rugallek\AppData\Roaming\Arrowhead
2013-12-09 12:15:27 ----D---- C:\Windows\9530AE42DAE146199594B23487285D17.TMP
2013-12-08 15:23:49 ----A---- C:\Windows\system32\drivers\hssdrv6.sys
2013-12-03 17:53:32 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-12-03 09:52:56 ----D---- C:\Program Files\McAfee Security Scan

======List of files/folders modified in the last 1 month======

2013-12-27 12:04:08 ----D---- C:\Windows\Prefetch
2013-12-27 12:04:04 ----D---- C:\Windows\Temp
2013-12-27 12:04:00 ----RD---- C:\Program Files
2013-12-27 11:55:20 ----SHD---- C:\Windows\Installer
2013-12-27 11:54:06 ----D---- C:\Windows\system32\drivers
2013-12-27 11:53:19 ----D---- C:\Program Files\Common Files
2013-12-27 11:52:44 ----SHD---- C:\System Volume Information
2013-12-27 11:52:17 ----HD---- C:\ProgramData
2013-12-27 11:50:04 ----D---- C:\Users\Rugallek\AppData\Roaming\Skype
2013-12-27 11:43:00 ----D---- C:\Windows\System32
2013-12-27 11:43:00 ----D---- C:\Windows\inf
2013-12-27 11:43:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-12-27 11:39:53 ----D---- C:\Windows\system32\Tasks
2013-12-27 01:41:33 ----D---- C:\Users\Rugallek\AppData\Roaming\BitTorrent
2013-12-27 01:40:28 ----D---- C:\Program Files (x86)\Steam
2013-12-27 01:37:04 ----A---- C:\Windows\SYSWOW64\log.txt
2013-12-26 21:22:05 ----SD---- C:\ProgramData\Microsoft
2013-12-26 21:21:28 ----RD---- C:\Program Files (x86)
2013-12-25 21:52:11 ----D---- C:\Windows\SysWOW64
2013-12-25 10:39:09 ----D---- C:\Windows\system32\config
2013-12-25 02:17:20 ----D---- C:\Windows\system32\catroot
2013-12-25 02:17:19 ----D---- C:\Windows\system32\DriverStore
2013-12-25 02:16:52 ----RSD---- C:\Windows\Fonts
2013-12-25 00:12:51 ----D---- C:\Windows
2013-12-21 21:27:04 ----D---- C:\Users\Rugallek\AppData\Roaming\Seznam.cz
2013-12-20 21:48:42 ----D---- C:\Windows\system32\NDF
2013-12-13 10:15:37 ----D---- C:\Program Files (x86)\Origin Games
2013-12-13 10:02:27 ----D---- C:\Users\Rugallek\AppData\Roaming\Origin
2013-12-13 10:02:23 ----D---- C:\ProgramData\Origin
2013-12-13 10:01:27 ----D---- C:\Program Files (x86)\Origin
2013-12-11 18:39:27 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-11 09:58:33 ----D---- C:\Users\Rugallek\AppData\Roaming\.minecraft
2013-12-09 12:14:12 ----RSD---- C:\Windows\assembly
2013-12-08 15:23:47 ----D---- C:\Program Files (x86)\Hotspot Shield
2013-12-07 16:55:27 ----D---- C:\ProgramData\boost_interprocess
2013-12-07 02:02:58 ----SD---- C:\Users\Rugallek\AppData\Roaming\Microsoft
2013-12-04 13:19:19 ----HD---- C:\Windows\msdownld.tmp
2013-12-04 13:19:17 ----D---- C:\Windows\SYSWOW64\directx
2013-12-02 08:16:06 ----D---- C:\Windows\Logs
2013-11-28 12:48:14 ----D---- C:\Windows\system32\wdi

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-11-29 568600]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-05-21 19264]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2013-09-03 39008]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-06-18 247216]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2013-09-12 32032]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2013-03-04 40344]
R1 HssDRV6;Hotspot Shield Routing Driver 6; C:\Windows\system32\DRIVERS\hssdrv6.sys [2013-11-13 44744]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2012-05-31 75144]
R2 iocbios2;iocbios2; \??\C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [2013-07-23 26328]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-06-18 139616]
R2 NVR0FLASHDev;NVR0FLASHDev; \??\C:\Windows\nvflsh64.sys [2008-08-01 40480]
R2 VBoxDrv;VBox Support Driver; \??\C:\Program Files (x86)\YouWave_Android\vb\VBoxDrv.sys [2011-11-20 202592]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2013-09-03 30816]
R3 AMPPAL;Virtuální adaptér Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed; C:\Windows\system32\DRIVERS\AMPPAL.sys [2011-12-05 195584]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-05-31 2811904]
R3 bpenum;Intel(R) Centrino(R) WiMAX Enumerator; C:\Windows\system32\DRIVERS\bpenum.sys [2011-11-30 84480]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2012-01-31 1601152]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2013-01-23 27608]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-02-17 14692896]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-05-21 357184]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-05-21 789824]
R3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2012-03-02 104048]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-07-26 99288]
R3 NVR0Dev;NVR0Dev; \??\C:\Windows\nvoclk64.sys [2008-08-18 40480]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-08-20 39200]
R3 SmbDrvIntel;SmbDrvIntel; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2012-03-26 27408]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-03-26 428304]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 taphss6;Anchorfree HSS VPN Adapter; C:\Windows\system32\DRIVERS\taphss6.sys [2013-09-17 42184]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [2013-09-18 14112]
R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2013-03-11 36352]
R3 vm332avs;Lenovo Camera2; C:\Windows\System32\Drivers\vm332avs.sys [2012-02-06 958800]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 AMPPALP;Protokol Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed; C:\Windows\system32\DRIVERS\amppal.sys [2011-12-05 195584]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2013-09-29 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2013-09-29 80384]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-01-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-01-09 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2013-09-04 19456]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RTSUVSTOR.sys [2011-11-15 313960]
S3 Trufos;Trufos; C:\Windows\system32\DRIVERS\Trufos.sys [2013-07-17 329800]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-09-04 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2013-09-04 30208]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-01-09 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2013-10-13 33280]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2011-12-05 659968]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2011-12-05 135952]
R2 DMAgent;Intel® PROSet/Wireless WiMAX Red Bend Device Management Service; C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe [2011-11-30 514048]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2013-11-29 2210640]
R2 hshld;Hotspot Shield Service; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [2013-11-27 906024]
R2 HssWd;Hotspot Shield Monitoring Service; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [2013-11-27 555304]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-29 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 LavasoftAdAwareService11;Ad-Aware Service 11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareService.exe [2013-12-11 513736]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2013-10-11 377104]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-07-18 23816]
R2 nTuneService;Performance Service; C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe [2008-08-18 222208]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14997280]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-09-12 920864]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-08-27 2155296]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-10-15 3921880]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-09-20 1042272]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-09-13 171416]
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2013-10-08 2099000]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
R2 UpdateCenterService;Update Center Service; C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe [2008-08-01 158208]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 WiMAXAppSrv;Intel® PROSet/Wireless WiMAX Service; C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe [2011-11-30 979456]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-02-01 160256]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-07-18 366600]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-12-11 569768]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-08 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-03 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-03-02 276248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-03 116648]
S3 HssTrayService;Hotspot Shield Tray Service; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [2013-11-13 78512]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [2013-09-06 288776]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-08-02 117656]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [2013-11-06 758224]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-03 1255736]
S4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
S4 AdvancedSystemCareService6;Advanced SystemCare Service 6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [2013-04-18 574272]
S4 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2012-05-31 397704]
S4 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2012-05-31 385416]
S4 CrossLoopService;CrossLoop Service; C:\Users\Rugallek\AppData\Local\CrossLoop\CrossLoopService.exe [2012-01-06 569072]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 SwitchBoard;Adobe SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S4 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-09-02 5071712]
S4 tvnserver;TightVNC Server; C:\Users\Rugallek\AppData\Local\CrossLoop\tvnserver.exe [2010-07-21 814080]

-----------------EOF-----------------

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Háčky, čárky - Problém...

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Odinstalujte Advance System Care a nasledne i vse od IOBit - jsou to cinske smejdy, databazi haveti ukradli jine renomovane spolecnosti. Hledaji neexistujici problemy, ucinek na PC je minimalni, spise jen skodi nez pomahaji

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

rugallek
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 27 Pro 2013 12:00

Re: Háčky, čárky - Problém...

#3 Příspěvek od rugallek »

Děkuji :)...
Zde je log z JRT

Kód: Vybrat vše

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by Rugallek on p  27.12.2013 at 16:58:51,18
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\anchorfree
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\smarttweak
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\adawarebp
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\hotspotshield
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_windowsandroid_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_windowsandroid_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_windowsandroid_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_windowsandroid_RASMANCS



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Failed to delete: [Folder] "C:\ProgramData\hotspot shield"
Successfully deleted: [Folder] "C:\Users\Rugallek\AppData\Roaming\hotspot shield"
Failed to delete: [Folder] "C:\Program Files (x86)\hotspot shield"
Successfully deleted: [Folder] "C:\Program Files (x86)\smarttweak"
Successfully deleted: [Folder] "C:\Users\Rugallek\AppData\Roaming\microsoft\windows\start menu\programs\smarttweak software"
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p  27.12.2013 at 17:06:38,26
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
A zde log z AdwCleaneru

Kód: Vybrat vše

# AdwCleaner v3.016 - Report created 27/12/2013 at 17:11:48
# Updated 23/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Rugallek - RUGALLEK-PC
# Running from : C:\Users\Rugallek\Desktop\RSIT\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : hshld
[#] Service Deleted : hsstrayservice
Service Deleted : hsswd

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\hotspot shield
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hotspot shield
Folder Deleted : C:\Program Files (x86)\hotspot shield
Folder Deleted : C:\Program Files (x86)\NCH Software
Folder Deleted : C:\Windows\SysWOW64\hotspot shield
Folder Deleted : C:\Users\Rugallek\AppData\Roaming\NCH Software
File Deleted : C:\Windows\System32\Tasks\NCH Software

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\2629b867c445bd321aa9cc74120a9645
Key Deleted : HKCU\Software\eb4d7bd46bdc9e7b4c7b214d7552904c
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\NCH Software
Key Deleted : HKLM\Software\NCH Software
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\hotspotshield
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7601.17514


-\\ Google Chrome v31.0.1650.63

[ File : C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage
Deleted : urls_to_restore_on_startup

*************************

AdwCleaner[R0].txt - [2127 octets] - [27/12/2013 17:08:25]
AdwCleaner[S0].txt - [2066 octets] - [27/12/2013 17:11:48]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2126 octets] ##########

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Háčky, čárky - Problém...

#4 Příspěvek od vyosek »

Poprosim o log dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

rugallek
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 27 Pro 2013 12:00

Re: Háčky, čárky - Problém...

#5 Příspěvek od rugallek »

Tady to je
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-12-2013 01
Ran by Rugallek (administrator) on RUGALLEK-PC on 27-12-2013 20:14:01
Running from C:\Users\Rugallek\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(NVIDIA) C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files (x86)\Garena Plus\ggdllhost.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel® Corporation) C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareTray.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(AVG) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
(NVIDIA) C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe
() C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Red Bend Ltd.) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
() C:\Users\Rugallek\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Users\Rugallek\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Vimicro) C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(AVG) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
( ) C:\Program Files (x86)\LockKey\LockKey.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Rugallek\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [IntelWirelessWiMAX] - C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe [1626112 2011-12-01] (Intel® Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2899216 2012-03-26] (Synaptics Incorporated)
HKLM\...\Run: [Energy Management] - C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8071680 2013-09-03] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] - C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [6193152 2013-09-03] (Lenovo(beijing) Limited)
HKLM\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-13] (CyberLink Corp.)
HKLM\...\Run: [SynLenovoGestureMgr] - C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [410896 2012-03-26] (Synaptics)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1356240 2013-07-18] (Microsoft Corporation)
HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [368728 2012-04-27] (Alcor Micro Corp.)
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028896 2013-08-27] (NVIDIA Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [] - [x]
HKLM\...\Run: [AdAwareTray] - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareTray.exe [3987288 2013-12-11] ()
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [507744 2011-12-20] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [332BigDog] - C:\Program Files (x86)\USB Camera2\VM332_STI.EXE [548864 2011-12-09] (Vimicro)
HKLM-x32\...\Run: [LockKey] - C:\Program Files (x86)\LockKey\LockKey.exe [337776 2011-08-25] ( )
HKLM-x32\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-13] (CyberLink Corp.)
HKLM-x32\...\Run: [VirtualCloneDrive] - C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [seznam-listicka-distribuce] - "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3806544 2013-11-29] (LogMeIn Inc.)
HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-12-11] (Valve Corporation)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20580000 2013-10-21] (Skype Technologies S.A.)
HKCU\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3551576 2013-12-13] (Electronic Arts)
HKCU\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [4287536 2013-09-06] ()
HKCU\...\Run: [BitTorrent] - C:\Users\Rugallek\AppData\Roaming\BitTorrent\BitTorrent.exe [1127000 2013-09-07] (BitTorrent Inc.)
HKCU\...\Run: [Facebook Update] - C:\Users\Rugallek\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-09-30] (Facebook Inc.)
HKCU\...\Run: [PC Suite Tray] - C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
HKCU\...\Run: [NVIDIA nTune] - "C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneCmd.exe" boot "C:\Users\Rugallek\AppData\Local\NVIDIA Corporation\nTune\Profiles\osbootpf.nsu"
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\Rugallek\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\Rugallek\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKCU\...\Run: [GarenaPlus] - C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe [9890608 2013-12-16] ()
HKCU\...\Winlogon: [Shell] explorer.exe [2871808 2013-09-03] (Microsoft Corporation) <==== ATTENTION
AppInit_DLLs: C:\Windows\System32\nvinitx.dll [168616 2013-09-12] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [141336 2013-09-12] (NVIDIA Corporation)
Startup: C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
ShortcutTarget: Facebook Messenger.lnk -> C:\Users\Rugallek\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook)
Startup: C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\msceInter.exe (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

Chrome:
=======
CHR HomePage: hxxp://www2.delta-search.com/?affID=119816&babsrc=HP_ss&mntrId=787500FFF6CC0949
CHR RestoreOnStartup: "hxxp://www2.delta-search.com/?affID=119816&babsrc=HP_ss&mntrId=787500FFF6CC0949", "
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Extension: (Angry Birds) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0
CHR Extension: (Google Docs) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Turn Off the Lights) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn\2.2.0.22_0
CHR Extension: (JAM with Chrome) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bggjdpbfjakfkacljidachigalghbnpk\0.2_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Email) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig\1.3.13_0
CHR Extension: (Fast Proxy) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkjcdfmmpdfjohenejbkaaafkoeknjnh\1.2_0
CHR Extension: (YouTube) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Free proxy server) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\donooklgjecljcdaflphibjiigobinho\1.0_0
CHR Extension: (Air Hockey) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gojagedhadegobocpaokaifiacjiolph\2.0.0_0
CHR Extension: (Skyrim Theme) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpamhoiaakdgllnldcapkcgoeimodnle\1_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Mini Ninjas) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijfbknbncemokdnlboeabbcfhobechi\1.0.0.19_0
CHR Extension: (Gmail) - C:\Users\Rugallek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0

==================== Services (Whitelisted) =================

S4 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [397704 2012-05-31] (BlueStack Systems, Inc.)
S4 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385416 2012-05-31] (BlueStack Systems, Inc.)
S4 CrossLoopService; C:\Users\Rugallek\AppData\Local\CrossLoop\CrossLoopService.exe [569072 2012-01-06] (CrossLoop)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareService.exe [513736 2013-12-11] ()
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2013-07-18] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366600 2013-07-18] (Microsoft Corporation)
R2 nTuneService; C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe [222208 2008-08-18] (NVIDIA)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14997280 2013-08-27] (NVIDIA Corporation)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.)
S2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2099000 2013-10-08] (AVG)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH)
S4 tvnserver; C:\Users\Rugallek\AppData\Local\CrossLoop\tvnserver.exe [814080 2010-07-21] (GlavSoft LLC.)
R2 UpdateCenterService; C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe [158208 2008-08-01] (NVIDIA)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [42808 2013-10-08] (AVG)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [18384 2013-09-04] (Intel(R) Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [75144 2012-05-31] (BlueStack Systems)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [44744 2013-11-13] (AnchorFree Inc.)
R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [26328 2013-07-23] (Intel Corporation)
R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [104048 2012-03-02] (Qualcomm Atheros Co., Ltd.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-07-26] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [247216 2013-06-18] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [139616 2013-06-18] (Microsoft Corporation)
R3 NVR0Dev; C:\Windows\nvoclk64.sys [40480 2008-08-18] (NVidia Corp.)
R2 NVR0FLASHDev; C:\Windows\nvflsh64.sys [40480 2008-08-01] (NVidia Corp.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-08-20] (NVIDIA Corporation)
R3 SmbDrvIntel; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [27408 2012-03-26] (Synaptics Incorporated)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-09-17] (Anchorfree Inc.)
R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [329800 2013-07-17] (BitDefender S.R.L.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [14112 2013-09-18] (TuneUp Software)
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-27 20:14 - 2013-12-27 20:14 - 00020365 _____ C:\Users\Rugallek\Desktop\FRST.txt
2013-12-27 20:13 - 2013-12-27 20:13 - 00029696 _____ C:\Users\Rugallek\AppData\Local\MSGBOX.EXE
2013-12-27 20:13 - 2013-12-27 20:13 - 00015327 _____ C:\Users\Rugallek\Desktop\LM.bat
2013-12-27 20:13 - 2013-12-27 20:13 - 00000000 ____D C:\FRST
2013-12-27 20:12 - 2013-12-27 20:12 - 01930746 _____ (Farbar) C:\Users\Rugallek\Desktop\FRST64.exe
2013-12-27 20:12 - 2013-12-27 20:12 - 00112640 _____ (forum.viry.cz) C:\Users\Rugallek\Desktop\FRSTLauncher.exe
2013-12-27 17:11 - 2013-12-27 17:11 - 00002973 _____ C:\Users\Rugallek\Desktop\forum.txt
2013-12-27 17:08 - 2013-12-27 17:12 - 00000000 ____D C:\AdwCleaner
2013-12-27 17:06 - 2013-12-27 17:06 - 00002901 _____ C:\Users\Rugallek\Desktop\JRT.txt
2013-12-27 16:58 - 2013-12-27 16:58 - 00000000 ____D C:\Windows\ERUNT
2013-12-27 12:26 - 2013-12-27 12:26 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\LavasoftStatistics
2013-12-27 12:26 - 2013-12-27 12:26 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Lavasoft
2013-12-27 12:04 - 2013-12-27 12:04 - 00000000 ____D C:\rsit
2013-12-27 12:04 - 2013-12-27 12:04 - 00000000 ____D C:\Program Files\trend micro
2013-12-27 12:03 - 2013-12-27 20:13 - 00000000 ____D C:\Users\Rugallek\Desktop\RSIT
2013-12-27 11:55 - 2013-12-27 17:19 - 00002305 _____ C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2013-12-27 11:54 - 2013-12-27 11:54 - 00000000 ____D C:\Program Files\Lavasoft
2013-12-27 11:53 - 2013-12-27 11:53 - 00000000 ____D C:\Program Files\Common Files\Lavasoft
2013-12-27 11:52 - 2013-12-27 11:52 - 01724552 _____ C:\Users\Rugallek\Downloads\Adaware_Installer.exe
2013-12-27 11:52 - 2013-12-27 11:52 - 00000000 ____D C:\ProgramData\Lavasoft
2013-12-27 01:40 - 2013-12-27 17:15 - 00003496 _____ C:\Windows\System32\Tasks\gg_uac_daemon_Rugallek
2013-12-26 21:23 - 2013-12-26 21:23 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-12-26 21:22 - 2013-12-26 21:22 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-12-26 21:21 - 2013-12-27 01:44 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-12-26 21:21 - 2013-12-26 21:23 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-12-26 21:21 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2013-12-26 20:35 - 2013-12-26 20:35 - 00602112 _____ (OldTimer Tools) C:\Users\Rugallek\Desktop\OTL.exe
2013-12-26 20:32 - 2013-12-26 20:33 - 00000000 ____D C:\Users\Rugallek\Desktop\PowerToolV4.1_en
2013-12-26 20:32 - 2013-12-26 20:33 - 00000000 ____D C:\Users\Rugallek\Desktop\aas
2013-12-25 21:52 - 2013-12-25 21:52 - 00000000 _____ C:\Windows\SysWOW64\Access.dat
2013-12-25 11:06 - 2013-12-25 11:09 - 70176836 _____ C:\Users\Rugallek\Downloads\Linkin_Park-Living_Things-2012-BriBerY.zip
2013-12-25 11:04 - 2013-12-25 11:05 - 30383936 _____ C:\Users\Rugallek\Downloads\Linkin-Park---Meteora.zip
2013-12-25 10:58 - 2013-12-25 11:02 - 78510042 _____ C:\Users\Rugallek\Downloads\Linkin-Park-Minutes-To-Midnight.rar
2013-12-25 02:16 - 2013-12-26 01:57 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Tunngle
2013-12-25 02:16 - 2013-12-26 01:57 - 00000000 ____D C:\ProgramData\Tunngle
2013-12-25 02:16 - 2013-12-25 02:17 - 00000000 ____D C:\Program Files (x86)\Tunngle
2013-12-25 02:16 - 2013-12-25 02:16 - 00000991 _____ C:\Users\Public\Desktop\Tunngle beta.lnk
2013-12-25 02:16 - 2013-12-25 02:16 - 00000000 ____D C:\Users\Rugallek\Documents\Tunngle
2013-12-25 02:16 - 2013-12-25 02:16 - 00000000 ____D C:\Users\Public\Documents\Tunngle
2013-12-25 02:16 - 2009-09-16 07:02 - 00031232 _____ (Tunngle.net) C:\Windows\system32\Drivers\tap0901t.sys
2013-12-25 02:15 - 2013-12-25 02:15 - 04029596 _____ (Tunngle.net GmbH ) C:\Users\Rugallek\Downloads\Tunngle_Setup_v4.5.1.4.exe
2013-12-25 02:13 - 2013-12-25 02:13 - 00045270 _____ C:\Users\Rugallek\AppData\Roaming\room_v3.dat
2013-12-25 01:26 - 2013-12-27 17:19 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\GarenaPlus
2013-12-25 01:26 - 2013-12-27 17:19 - 00000000 ____D C:\ProgramData\GarenaMessenger
2013-12-25 01:26 - 2013-12-25 01:26 - 00001063 _____ C:\Users\Public\Desktop\Garena Plus.lnk
2013-12-25 01:26 - 2013-12-25 01:26 - 00000000 ____D C:\Program Files (x86)\Garena Plus
2013-12-25 01:22 - 2013-12-25 01:25 - 71312864 _____ C:\Users\Rugallek\Downloads\GarenaPlus_Install.exe
2013-12-25 00:47 - 2013-12-25 00:47 - 00001956 _____ C:\Users\UpdatusUser\Desktop\Frozen Throne.lnk
2013-12-25 00:47 - 2013-12-25 00:47 - 00001956 _____ C:\Users\Rugallek\Desktop\Frozen Throne.lnk
2013-12-25 00:47 - 2013-12-25 00:47 - 00001956 _____ C:\Users\fbwuser\Desktop\Frozen Throne.lnk
2013-12-25 00:13 - 2013-12-25 00:13 - 00001949 _____ C:\Users\UpdatusUser\Desktop\Warcraft III.lnk
2013-12-25 00:13 - 2013-12-25 00:13 - 00001949 _____ C:\Users\Rugallek\Desktop\Warcraft III.lnk
2013-12-25 00:13 - 2013-12-25 00:13 - 00001949 _____ C:\Users\fbwuser\Desktop\Warcraft III.lnk
2013-12-25 00:12 - 2013-12-25 00:47 - 00139264 _____ (Blizzard Entertainment) C:\Windows\War3Unin.exe
2013-12-25 00:12 - 2013-12-25 00:47 - 00056724 _____ C:\Windows\War3Unin.dat
2013-12-25 00:12 - 2013-12-25 00:47 - 00002829 _____ C:\Windows\War3Unin.pif
2013-12-25 00:12 - 2013-12-25 00:47 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III
2013-12-25 00:11 - 2013-12-26 01:45 - 00000000 ____D C:\Program Files (x86)\Warcraft III
2013-12-24 23:21 - 2013-12-25 00:10 - 00000000 ____D C:\Users\Rugallek\Downloads\Warcraft 3 Platinová edice
2013-12-24 23:19 - 2013-12-24 23:19 - 00015141 _____ C:\Users\Rugallek\Downloads\[CzT]Warcraft_3_Platinova_edice.torrent
2013-12-24 22:42 - 2013-12-24 22:44 - 35389535 _____ C:\Users\Rugallek\Downloads\Linkin-Park---Hybrid-Theory.rar
2013-12-24 22:33 - 2013-12-24 22:34 - 00000000 ____D C:\Users\Rugallek\Downloads\Foo Fighters 2011 Wasting Light 320 Kbps
2013-12-22 19:37 - 2013-12-22 19:38 - 00000000 ____D C:\cygwin
2013-12-22 00:03 - 2013-12-22 00:03 - 00000000 ____D C:\ProgramData\Steam
2013-12-21 23:59 - 2013-12-21 23:59 - 00001068 _____ C:\Users\Public\Desktop\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst.lnk
2013-12-21 23:55 - 2013-12-22 00:11 - 00000000 ____D C:\Program Files (x86)\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst
2013-12-21 23:25 - 2013-12-21 23:26 - 03543711 _____ C:\Users\Rugallek\Downloads\lolgamevs_installer_by_yorgash-d6ylq3z.exe
2013-12-21 21:33 - 2013-12-21 21:33 - 00000000 ____D C:\Program Files (x86)\7-Zip
2013-12-21 21:31 - 2013-12-21 21:32 - 00513520 _____ C:\Users\Rugallek\Downloads\7zip_RocketFuelInstaller.exe
2013-12-21 21:26 - 2013-12-21 21:26 - 00000000 ____D C:\Program Files (x86)\eMu3Ds
2013-12-21 19:11 - 2013-12-21 21:05 - 00000000 ____D C:\Users\Rugallek\Downloads\Pokemon.Y.3DS-CONTRAST
2013-12-21 19:08 - 2013-12-21 21:30 - 00000000 ____D C:\Users\Rugallek\Desktop\3DS
2013-12-21 14:23 - 2013-12-21 14:23 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\8BitMMO
2013-12-21 14:06 - 2013-12-21 14:06 - 01463328 _____ C:\Users\Rugallek\Downloads\SystemCheck_enGB.exe
2013-12-19 20:20 - 2013-12-19 20:20 - 00000222 _____ C:\Users\Rugallek\Desktop\8BitMMO.url
2013-12-16 22:07 - 2013-12-16 22:08 - 18324693 _____ C:\Users\Rugallek\Documents\pisnicky.wma
2013-12-16 22:04 - 2013-12-16 22:05 - 02432173 _____ C:\Users\Rugallek\Documents\Verze1_0001.wmv
2013-12-16 13:42 - 2013-12-16 14:30 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.crazycraft
2013-12-13 10:16 - 2013-12-13 10:16 - 00000198 _____ C:\Users\Rugallek\Desktop\Thomas Was Alone.url
2013-12-13 07:58 - 2013-12-13 07:58 - 00000000 ____D C:\ProgramData\Energy Management
2013-12-12 00:35 - 2013-12-13 09:54 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.beta-pokepack
2013-12-11 14:11 - 2013-12-11 14:11 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bloodshed Dev-Pascal
2013-12-11 14:11 - 2013-12-11 14:11 - 00000000 ____D C:\Dev-Pas
2013-12-11 12:54 - 2013-12-11 12:54 - 00000000 ____D C:\ElementalTinkerer
2013-12-11 12:49 - 2013-12-11 12:54 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.voidswrath
2013-12-11 09:52 - 2013-12-11 09:55 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.aethericcrusade
2013-12-11 09:52 - 2013-12-11 09:52 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.beta-jurassiccraft
2013-12-09 12:34 - 2013-12-16 14:30 - 00000000 ____D C:\VoidLauncher
2013-12-09 12:15 - 2013-12-09 12:15 - 00000000 ____D C:\Windows\9530AE42DAE146199594B23487285D17.TMP
2013-12-09 12:15 - 2013-12-09 12:15 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Arrowhead
2013-12-08 16:51 - 2013-12-08 16:51 - 00000222 _____ C:\Users\Rugallek\Desktop\The Showdown Effect.url
2013-12-08 16:38 - 2013-12-08 16:38 - 00000197 _____ C:\Users\Rugallek\Desktop\StarForge Alpha.url
2013-12-08 16:34 - 2013-12-08 16:36 - 00000000 ____D C:\Users\Rugallek\Downloads\Universe.Sandbox.RIP-Unleashed
2013-12-08 15:23 - 2013-11-13 11:49 - 00044744 _____ (AnchorFree Inc.) C:\Windows\system32\Drivers\hssdrv6.sys
2013-12-07 21:24 - 2013-12-07 21:25 - 00015872 ___SH C:\Users\Rugallek\Desktop\Thumbs.db
2013-12-06 19:23 - 2013-12-06 19:23 - 00000220 _____ C:\Users\Rugallek\Desktop\X3 Reunion.url
2013-12-05 00:55 - 2013-12-05 00:55 - 00000222 _____ C:\Users\Rugallek\Desktop\Starbound.url
2013-12-04 18:21 - 2013-12-04 18:21 - 00043093 _____ C:\Users\Rugallek\Downloads\uploads-2013-06-EEARD.zip
2013-12-04 18:18 - 2013-12-04 18:18 - 02130609 _____ C:\Users\Rugallek\Downloads\uploads-2013-06-PiratedWeaponey_V0.31.zip
2013-12-04 18:16 - 2013-12-04 18:16 - 02367156 _____ C:\Users\Rugallek\Downloads\uploads-2013-10-Romfarer_LazorSystem_v31.zip
2013-12-04 18:12 - 2013-12-04 18:12 - 00143650 _____ C:\Users\Rugallek\Downloads\HyperEdit-1.2.4.2_for-KSP-0.21.1+.zip
2013-12-04 12:22 - 2013-12-04 12:22 - 00000222 _____ C:\Users\Rugallek\Desktop\Bastion.url
2013-12-04 00:27 - 2013-12-04 00:27 - 00058880 _____ C:\Users\Rugallek\Downloads\PlavaniZS12.xls
2013-12-03 17:53 - 2013-12-03 17:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2013-12-03 09:52 - 2013-12-03 09:52 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-12-02 15:10 - 2013-12-02 15:10 - 00000000 _____ C:\Users\Rugallek\Desktop\TVy Projekt - Internet.txt
2013-12-02 12:50 - 2013-12-02 12:50 - 00000000 __SHD C:\Users\Rugallek\Phone Browser
2013-11-27 12:50 - 2013-11-27 12:50 - 00000956 _____ C:\Users\Rugallek\Desktop\Start Tor Browser.lnk
2013-11-27 09:17 - 2013-12-03 09:53 - 00001931 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-11-27 09:17 - 2013-11-27 09:17 - 00000000 ____D C:\Users\Rugallek\AppData\Local\Macromedia
2013-11-27 09:17 - 2013-11-27 09:17 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2013-11-27 09:17 - 2013-11-27 09:17 - 00000000 ____D C:\ProgramData\McAfee
2013-11-27 09:14 - 2013-11-27 09:14 - 00000000 ____D C:\Users\Rugallek\AppData\Local\Mozilla
2013-11-27 09:13 - 2013-11-27 09:13 - 27025224 _____ (Igor Pavlov) C:\Users\Rugallek\Downloads\tor-browser-2.3.25-15_en-US.exe
2013-11-27 09:13 - 2013-11-15 23:20 - 00000000 ____D C:\Users\Rugallek\Downloads\Tor Browser
2013-11-27 00:58 - 2013-12-02 04:22 - 00003368 _____ C:\Windows\System32\Tasks\Budík

==================== One Month Modified Files and Folders =======

2013-12-27 20:15 - 2013-10-09 20:12 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-27 20:14 - 2013-12-27 20:14 - 00020365 _____ C:\Users\Rugallek\Desktop\FRST.txt
2013-12-27 20:13 - 2013-12-27 20:13 - 00029696 _____ C:\Users\Rugallek\AppData\Local\MSGBOX.EXE
2013-12-27 20:13 - 2013-12-27 20:13 - 00015327 _____ C:\Users\Rugallek\Desktop\LM.bat
2013-12-27 20:13 - 2013-12-27 20:13 - 00000000 ____D C:\FRST
2013-12-27 20:13 - 2013-12-27 12:03 - 00000000 ____D C:\Users\Rugallek\Desktop\RSIT
2013-12-27 20:12 - 2013-12-27 20:12 - 01930746 _____ (Farbar) C:\Users\Rugallek\Desktop\FRST64.exe
2013-12-27 20:12 - 2013-12-27 20:12 - 00112640 _____ (forum.viry.cz) C:\Users\Rugallek\Desktop\FRSTLauncher.exe
2013-12-27 20:12 - 2013-09-03 17:36 - 01581916 _____ C:\Windows\WindowsUpdate.log
2013-12-27 20:11 - 2013-09-03 20:08 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Skype
2013-12-27 20:05 - 2013-09-18 10:49 - 00000974 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000UA.job
2013-12-27 19:39 - 2013-09-03 18:27 - 00000956 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-27 18:25 - 2013-09-03 18:35 - 00000000 ____D C:\Program Files (x86)\Steam
2013-12-27 17:24 - 2009-07-14 05:45 - 00022080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-27 17:24 - 2009-07-14 05:45 - 00022080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-27 17:19 - 2013-12-27 11:55 - 00002305 _____ C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2013-12-27 17:19 - 2013-12-25 01:26 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\GarenaPlus
2013-12-27 17:19 - 2013-12-25 01:26 - 00000000 ____D C:\ProgramData\GarenaMessenger
2013-12-27 17:17 - 2013-09-07 12:53 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\BitTorrent
2013-12-27 17:16 - 2013-10-13 13:31 - 00000000 ____D C:\Users\Rugallek\AppData\Local\LogMeIn Hamachi
2013-12-27 17:15 - 2013-12-27 01:40 - 00003496 _____ C:\Windows\System32\Tasks\gg_uac_daemon_Rugallek
2013-12-27 17:15 - 2013-09-03 18:27 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-27 17:14 - 2013-10-21 00:00 - 00023534 _____ C:\Windows\setupact.log
2013-12-27 17:14 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-27 17:13 - 2013-10-21 09:41 - 00034204 _____ C:\Windows\PFRO.log
2013-12-27 17:12 - 2013-12-27 17:08 - 00000000 ____D C:\AdwCleaner
2013-12-27 17:11 - 2013-12-27 17:11 - 00002973 _____ C:\Users\Rugallek\Desktop\forum.txt
2013-12-27 17:11 - 2013-09-21 20:15 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software
2013-12-27 17:06 - 2013-12-27 17:06 - 00002901 _____ C:\Users\Rugallek\Desktop\JRT.txt
2013-12-27 16:58 - 2013-12-27 16:58 - 00000000 ____D C:\Windows\ERUNT
2013-12-27 12:26 - 2013-12-27 12:26 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\LavasoftStatistics
2013-12-27 12:26 - 2013-12-27 12:26 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Lavasoft
2013-12-27 12:19 - 2013-09-03 17:40 - 00000000 ___RD C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-27 12:04 - 2013-12-27 12:04 - 00000000 ____D C:\rsit
2013-12-27 12:04 - 2013-12-27 12:04 - 00000000 ____D C:\Program Files\trend micro
2013-12-27 11:54 - 2013-12-27 11:54 - 00000000 ____D C:\Program Files\Lavasoft
2013-12-27 11:53 - 2013-12-27 11:53 - 00000000 ____D C:\Program Files\Common Files\Lavasoft
2013-12-27 11:53 - 2013-09-18 10:49 - 00000922 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000Core.job
2013-12-27 11:52 - 2013-12-27 11:52 - 01724552 _____ C:\Users\Rugallek\Downloads\Adaware_Installer.exe
2013-12-27 11:52 - 2013-12-27 11:52 - 00000000 ____D C:\ProgramData\Lavasoft
2013-12-27 11:43 - 2011-04-12 09:34 - 00669116 _____ C:\Windows\system32\perfh005.dat
2013-12-27 11:43 - 2011-04-12 09:34 - 00141744 _____ C:\Windows\system32\perfc005.dat
2013-12-27 11:43 - 2009-07-14 06:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-27 01:44 - 2013-12-26 21:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-12-26 21:23 - 2013-12-26 21:23 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-12-26 21:23 - 2013-12-26 21:21 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-12-26 21:22 - 2013-12-26 21:22 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-12-26 20:40 - 2013-10-21 16:37 - 00000000 ____D C:\Users\Rugallek\Desktop\Složky
2013-12-26 20:35 - 2013-12-26 20:35 - 00602112 _____ (OldTimer Tools) C:\Users\Rugallek\Desktop\OTL.exe
2013-12-26 20:33 - 2013-12-26 20:32 - 00000000 ____D C:\Users\Rugallek\Desktop\PowerToolV4.1_en
2013-12-26 20:33 - 2013-12-26 20:32 - 00000000 ____D C:\Users\Rugallek\Desktop\aas
2013-12-26 01:57 - 2013-12-25 02:16 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Tunngle
2013-12-26 01:57 - 2013-12-25 02:16 - 00000000 ____D C:\ProgramData\Tunngle
2013-12-26 01:45 - 2013-12-25 00:11 - 00000000 ____D C:\Program Files (x86)\Warcraft III
2013-12-25 22:11 - 2013-09-17 19:08 - 00000000 ____D C:\Users\Rugallek\AppData\Local\CrashDumps
2013-12-25 21:52 - 2013-12-25 21:52 - 00000000 _____ C:\Windows\SysWOW64\Access.dat
2013-12-25 11:09 - 2013-12-25 11:06 - 70176836 _____ C:\Users\Rugallek\Downloads\Linkin_Park-Living_Things-2012-BriBerY.zip
2013-12-25 11:05 - 2013-12-25 11:04 - 30383936 _____ C:\Users\Rugallek\Downloads\Linkin-Park---Meteora.zip
2013-12-25 11:02 - 2013-12-25 10:58 - 78510042 _____ C:\Users\Rugallek\Downloads\Linkin-Park-Minutes-To-Midnight.rar
2013-12-25 02:19 - 2013-09-03 18:08 - 00071008 _____ C:\Users\Rugallek\AppData\Local\GDIPFONTCACHEV1.DAT
2013-12-25 02:19 - 2009-07-14 05:45 - 04943384 _____ C:\Windows\system32\FNTCACHE.DAT
2013-12-25 02:17 - 2013-12-25 02:16 - 00000000 ____D C:\Program Files (x86)\Tunngle
2013-12-25 02:16 - 2013-12-25 02:16 - 00000991 _____ C:\Users\Public\Desktop\Tunngle beta.lnk
2013-12-25 02:16 - 2013-12-25 02:16 - 00000000 ____D C:\Users\Rugallek\Documents\Tunngle
2013-12-25 02:16 - 2013-12-25 02:16 - 00000000 ____D C:\Users\Public\Documents\Tunngle
2013-12-25 02:15 - 2013-12-25 02:15 - 04029596 _____ (Tunngle.net GmbH ) C:\Users\Rugallek\Downloads\Tunngle_Setup_v4.5.1.4.exe
2013-12-25 02:13 - 2013-12-25 02:13 - 00045270 _____ C:\Users\Rugallek\AppData\Roaming\room_v3.dat
2013-12-25 01:26 - 2013-12-25 01:26 - 00001063 _____ C:\Users\Public\Desktop\Garena Plus.lnk
2013-12-25 01:26 - 2013-12-25 01:26 - 00000000 ____D C:\Program Files (x86)\Garena Plus
2013-12-25 01:25 - 2013-12-25 01:22 - 71312864 _____ C:\Users\Rugallek\Downloads\GarenaPlus_Install.exe
2013-12-25 00:48 - 2013-09-03 17:40 - 00000000 ____D C:\Users\Rugallek\AppData\Local\VirtualStore
2013-12-25 00:47 - 2013-12-25 00:47 - 00001956 _____ C:\Users\UpdatusUser\Desktop\Frozen Throne.lnk
2013-12-25 00:47 - 2013-12-25 00:47 - 00001956 _____ C:\Users\Rugallek\Desktop\Frozen Throne.lnk
2013-12-25 00:47 - 2013-12-25 00:47 - 00001956 _____ C:\Users\fbwuser\Desktop\Frozen Throne.lnk
2013-12-25 00:47 - 2013-12-25 00:12 - 00139264 _____ (Blizzard Entertainment) C:\Windows\War3Unin.exe
2013-12-25 00:47 - 2013-12-25 00:12 - 00056724 _____ C:\Windows\War3Unin.dat
2013-12-25 00:47 - 2013-12-25 00:12 - 00002829 _____ C:\Windows\War3Unin.pif
2013-12-25 00:47 - 2013-12-25 00:12 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warcraft III
2013-12-25 00:13 - 2013-12-25 00:13 - 00001949 _____ C:\Users\UpdatusUser\Desktop\Warcraft III.lnk
2013-12-25 00:13 - 2013-12-25 00:13 - 00001949 _____ C:\Users\Rugallek\Desktop\Warcraft III.lnk
2013-12-25 00:13 - 2013-12-25 00:13 - 00001949 _____ C:\Users\fbwuser\Desktop\Warcraft III.lnk
2013-12-25 00:10 - 2013-12-24 23:21 - 00000000 ____D C:\Users\Rugallek\Downloads\Warcraft 3 Platinová edice
2013-12-24 23:19 - 2013-12-24 23:19 - 00015141 _____ C:\Users\Rugallek\Downloads\[CzT]Warcraft_3_Platinova_edice.torrent
2013-12-24 22:44 - 2013-12-24 22:42 - 35389535 _____ C:\Users\Rugallek\Downloads\Linkin-Park---Hybrid-Theory.rar
2013-12-24 22:34 - 2013-12-24 22:33 - 00000000 ____D C:\Users\Rugallek\Downloads\Foo Fighters 2011 Wasting Light 320 Kbps
2013-12-22 19:38 - 2013-12-22 19:37 - 00000000 ____D C:\cygwin
2013-12-22 00:11 - 2013-12-21 23:55 - 00000000 ____D C:\Program Files (x86)\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst
2013-12-22 00:03 - 2013-12-22 00:03 - 00000000 ____D C:\ProgramData\Steam
2013-12-21 23:59 - 2013-12-21 23:59 - 00001068 _____ C:\Users\Public\Desktop\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst.lnk
2013-12-21 23:26 - 2013-12-21 23:25 - 03543711 _____ C:\Users\Rugallek\Downloads\lolgamevs_installer_by_yorgash-d6ylq3z.exe
2013-12-21 21:33 - 2013-12-21 21:33 - 00000000 ____D C:\Program Files (x86)\7-Zip
2013-12-21 21:32 - 2013-12-21 21:31 - 00513520 _____ C:\Users\Rugallek\Downloads\7zip_RocketFuelInstaller.exe
2013-12-21 21:30 - 2013-12-21 19:08 - 00000000 ____D C:\Users\Rugallek\Desktop\3DS
2013-12-21 21:27 - 2013-11-14 10:56 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Seznam.cz
2013-12-21 21:26 - 2013-12-21 21:26 - 00000000 ____D C:\Program Files (x86)\eMu3Ds
2013-12-21 21:05 - 2013-12-21 19:11 - 00000000 ____D C:\Users\Rugallek\Downloads\Pokemon.Y.3DS-CONTRAST
2013-12-21 20:42 - 2013-10-21 16:28 - 00000000 ____D C:\Users\Rugallek\Desktop\Hry
2013-12-21 14:23 - 2013-12-21 14:23 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\8BitMMO
2013-12-21 14:06 - 2013-12-21 14:06 - 01463328 _____ C:\Users\Rugallek\Downloads\SystemCheck_enGB.exe
2013-12-20 21:48 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2013-12-20 08:37 - 2013-10-21 23:43 - 00000000 ____D C:\Users\Rugallek\Desktop\Grafika
2013-12-19 20:20 - 2013-12-19 20:20 - 00000222 _____ C:\Users\Rugallek\Desktop\8BitMMO.url
2013-12-19 13:38 - 2013-10-21 16:38 - 00000000 ___RD C:\Users\Rugallek\Desktop\Škola
2013-12-17 13:51 - 2013-10-22 06:20 - 00003696 _____ C:\Windows\System32\Tasks\Program k provádění aktualizací online Adobe
2013-12-16 22:08 - 2013-12-16 22:07 - 18324693 _____ C:\Users\Rugallek\Documents\pisnicky.wma
2013-12-16 22:05 - 2013-12-16 22:04 - 02432173 _____ C:\Users\Rugallek\Documents\Verze1_0001.wmv
2013-12-16 14:30 - 2013-12-16 13:42 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.crazycraft
2013-12-16 14:30 - 2013-12-09 12:34 - 00000000 ____D C:\VoidLauncher
2013-12-13 10:16 - 2013-12-13 10:16 - 00000198 _____ C:\Users\Rugallek\Desktop\Thomas Was Alone.url
2013-12-13 10:15 - 2013-09-04 10:50 - 00000000 ____D C:\Program Files (x86)\Origin Games
2013-12-13 10:02 - 2013-09-04 10:49 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Origin
2013-12-13 10:02 - 2013-09-04 10:48 - 00000000 ____D C:\ProgramData\Origin
2013-12-13 10:01 - 2013-09-04 10:48 - 00000000 ____D C:\Program Files (x86)\Origin
2013-12-13 09:54 - 2013-12-12 00:35 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.beta-pokepack
2013-12-13 07:58 - 2013-12-13 07:58 - 00000000 ____D C:\ProgramData\Energy Management
2013-12-12 22:45 - 2013-09-09 19:52 - 00000000 ____D C:\Users\Rugallek\Desktop\od Ádi ♥
2013-12-11 18:39 - 2013-10-09 20:12 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-11 18:39 - 2013-10-09 20:12 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-11 18:39 - 2013-10-09 20:12 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-11 14:11 - 2013-12-11 14:11 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bloodshed Dev-Pascal
2013-12-11 14:11 - 2013-12-11 14:11 - 00000000 ____D C:\Dev-Pas
2013-12-11 14:10 - 2013-11-13 17:12 - 00000000 ____D C:\Users\Rugallek\Desktop\Programování
2013-12-11 12:54 - 2013-12-11 12:54 - 00000000 ____D C:\ElementalTinkerer
2013-12-11 12:54 - 2013-12-11 12:49 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.voidswrath
2013-12-11 09:58 - 2013-09-05 13:00 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.minecraft
2013-12-11 09:55 - 2013-12-11 09:52 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.aethericcrusade
2013-12-11 09:52 - 2013-12-11 09:52 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\.beta-jurassiccraft
2013-12-10 12:36 - 2013-10-09 08:14 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-12-09 12:15 - 2013-12-09 12:15 - 00000000 ____D C:\Windows\9530AE42DAE146199594B23487285D17.TMP
2013-12-09 12:15 - 2013-12-09 12:15 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Arrowhead
2013-12-09 12:14 - 2013-10-21 09:56 - 00087868 _____ C:\Windows\DirectX.log
2013-12-09 11:47 - 2013-11-20 00:13 - 00000883 _____ C:\Users\Rugallek\Desktop\Manga Studio 5.0 (64 Bit).lnk
2013-12-09 11:47 - 2013-10-21 23:18 - 00001107 _____ C:\Users\Rugallek\Desktop\Adobe Photoshop CS6 (64 Bit).lnk
2013-12-08 16:51 - 2013-12-08 16:51 - 00000222 _____ C:\Users\Rugallek\Desktop\The Showdown Effect.url
2013-12-08 16:38 - 2013-12-08 16:38 - 00000197 _____ C:\Users\Rugallek\Desktop\StarForge Alpha.url
2013-12-08 16:36 - 2013-12-08 16:34 - 00000000 ____D C:\Users\Rugallek\Downloads\Universe.Sandbox.RIP-Unleashed
2013-12-08 15:23 - 2013-10-23 09:33 - 00001048 _____ C:\Users\Public\Desktop\Hotspot Shield.lnk
2013-12-07 21:25 - 2013-12-07 21:24 - 00015872 ___SH C:\Users\Rugallek\Desktop\Thumbs.db
2013-12-07 02:03 - 2011-04-12 09:45 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-12-06 19:23 - 2013-12-06 19:23 - 00000220 _____ C:\Users\Rugallek\Desktop\X3 Reunion.url
2013-12-06 13:34 - 2013-09-03 18:27 - 00003952 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-06 13:34 - 2013-09-03 18:27 - 00003700 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-06 00:01 - 2013-09-03 18:30 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-05 00:55 - 2013-12-05 00:55 - 00000222 _____ C:\Users\Rugallek\Desktop\Starbound.url
2013-12-04 18:21 - 2013-12-04 18:21 - 00043093 _____ C:\Users\Rugallek\Downloads\uploads-2013-06-EEARD.zip
2013-12-04 18:18 - 2013-12-04 18:18 - 02130609 _____ C:\Users\Rugallek\Downloads\uploads-2013-06-PiratedWeaponey_V0.31.zip
2013-12-04 18:16 - 2013-12-04 18:16 - 02367156 _____ C:\Users\Rugallek\Downloads\uploads-2013-10-Romfarer_LazorSystem_v31.zip
2013-12-04 18:12 - 2013-12-04 18:12 - 00143650 _____ C:\Users\Rugallek\Downloads\HyperEdit-1.2.4.2_for-KSP-0.21.1+.zip
2013-12-04 13:19 - 2013-09-17 18:12 - 00000000 ___HD C:\Windows\msdownld.tmp
2013-12-04 13:19 - 2013-09-17 18:12 - 00000000 ____D C:\Windows\SysWOW64\directx
2013-12-04 12:22 - 2013-12-04 12:22 - 00000222 _____ C:\Users\Rugallek\Desktop\Bastion.url
2013-12-04 00:27 - 2013-12-04 00:27 - 00058880 _____ C:\Users\Rugallek\Downloads\PlavaniZS12.xls
2013-12-03 17:53 - 2013-12-03 17:53 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2013-12-03 17:53 - 2013-11-08 08:00 - 00000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2013-12-03 09:53 - 2013-11-27 09:17 - 00001931 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-12-03 09:52 - 2013-12-03 09:52 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-12-02 15:10 - 2013-12-02 15:10 - 00000000 _____ C:\Users\Rugallek\Desktop\TVy Projekt - Internet.txt
2013-12-02 12:50 - 2013-12-02 12:50 - 00000000 __SHD C:\Users\Rugallek\Phone Browser
2013-12-02 12:50 - 2013-09-03 17:40 - 00000000 ____D C:\Users\Rugallek
2013-12-02 04:22 - 2013-11-27 00:58 - 00003368 _____ C:\Windows\System32\Tasks\Budík
2013-11-28 09:00 - 2013-09-18 10:49 - 00003950 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000UA
2013-11-28 09:00 - 2013-09-18 10:49 - 00003554 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3815858017-1541395507-992849483-1000Core
2013-11-27 12:50 - 2013-11-27 12:50 - 00000956 _____ C:\Users\Rugallek\Desktop\Start Tor Browser.lnk
2013-11-27 09:17 - 2013-11-27 09:17 - 00000000 ____D C:\Users\Rugallek\AppData\Local\Macromedia
2013-11-27 09:17 - 2013-11-27 09:17 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2013-11-27 09:17 - 2013-11-27 09:17 - 00000000 ____D C:\ProgramData\McAfee
2013-11-27 09:17 - 2013-09-09 12:16 - 00000000 ____D C:\Users\Rugallek\AppData\Local\Adobe
2013-11-27 09:14 - 2013-11-27 09:14 - 00000000 ____D C:\Users\Rugallek\AppData\Local\Mozilla
2013-11-27 09:14 - 2013-09-05 20:13 - 00000000 ____D C:\Users\Rugallek\AppData\Roaming\Mozilla
2013-11-27 09:13 - 2013-11-27 09:13 - 27025224 _____ (Igor Pavlov) C:\Users\Rugallek\Downloads\tor-browser-2.3.25-15_en-US.exe

Some content of TEMP:
====================
C:\Users\Rugallek\AppData\Local\Temp\83ef440c-ab6e-431d-8191-90e010f25204.exe
C:\Users\Rugallek\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe
[2013-09-03 23:46] - [2013-09-03 23:46] - 2871808 ____A (Microsoft Corporation) 289ACCB2D5F98769B2B143E2739C5E95

C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-12-24 01:43

==================== End Of Log ============================


chcete i addition.txt?
Naposledy upravil(a) vyosek dne 27 Pro 2013 23:07, celkem upraveno 1 x.
Důvod: log odstranen z code

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: Háčky, čárky - Problém...

#6 Příspěvek od vyosek »

:arrow: Odinstalujte nasledujici
  • Ad-Aware Antivirus
  • AVG PC TuneUp
  • McAfee Security Scan
  • Spybot - Search & Destroy 2
  • Vse naproste zbytecnosti a neschopne bezpecnostni SW
:arrow: Poprosim i o Addition.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět