Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

win7 zamrzne u startu / PUP.Dealply.malware

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
EkZiT
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 18 lis 2012 22:24

Re: win7 zamrzne u startu / PUP.Dealply.malware

#16 Příspěvek od EkZiT »

chtel sem odinstalovat combo a napsalo mi to :
The contents of folder C:\windows\erdnt\hiv-backup could not be completely deleted !

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: win7 zamrzne u startu / PUP.Dealply.malware

#17 Příspěvek od vyosek »

Pokracujte dalsimi kroky :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

EkZiT
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 18 lis 2012 22:24

Re: win7 zamrzne u startu / PUP.Dealply.malware

#18 Příspěvek od EkZiT »

aha ted uz to jde

EkZiT
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 18 lis 2012 22:24

Re: win7 zamrzne u startu / PUP.Dealply.malware

#19 Příspěvek od EkZiT »

Logfile of random's system information tool 1.09 (written by random/random)
Run by EkZiT at 2013-12-24 15:41:17
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 6 GB (4%) free of 153 GB
Total RAM: 6142 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:41:24, on 24.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Program Files\Hide Folders 2012\hf.exe
C:\Program Files (x86)\ASUS\TurboV EVO\TurboVHELP.exe
C:\Windows\DAODx.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\EkZiT.exe
C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: IEExtension.VDownloaderBHO - {7b523e7c-f096-4e36-a0cb-7efeb5c675c1} - mscoree.dll (file missing)
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: WinToFlash Suggestor - {FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} - C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.dll
O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{CEEBD37D-F1B9-4569-9EFC-16CAC7FB1836}: NameServer = 156.154.70.25,156.154.71.25
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Version Cue CS3 - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FSPro Filter Service 2 (fsproflt2) - FSPro Labs - C:\Windows\SysWOW64\fsproflt2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ProtexisLicensing - Unknown owner - C:\Program Files (x86)\Common Files\Protexis\License Service\PSIService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 8810 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE 0x2cc
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\SysWOW64\fsproflt2.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k apphost
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe"
"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
C:\Windows\system32\CISVC.EXE
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Common Files\Protexis\License Service\PSIService.exe"
C:\Windows\System32\tcpsvcs.exe
C:\Windows\System32\snmp.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k iissvcs
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2444
"C:\Windows\system32\rundll32.exe" Shell32.dll,Control_RunDLL mmsys.cpl
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
C:\Windows\system32\svchost.exe -k WindowsMobile
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Hide Folders 2012\hf.exe" /s
C:\Windows\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "1762364446890734957-166036308910412052541685636761992109535-439101385-429464026
taskeng.exe {105D725C-D674-474B-9DFC-C45C1E0186AA}
"C:\Program Files (x86)\ASUS\TurboV EVO\TurboVHELP.exe"
C:\Windows\DAODx.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Windows\System32\rundll32.exe" C:\Windows\system32\AmbRunE.dll,RunDLLEntry
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Windows\WindowsMobile\wmdc.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\Windows\servicing\TrustedInstaller.exe
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4860.0.1982084719\452973173" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22,26 --gpu-vendor-id=0x10de --gpu-device-id=0x1200 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.3182 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group15 pct:1h stable:r3 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_51/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --channel="4860.1.843013315\1609036624" /prefetch:673131151
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group15 pct:1h stable:r3 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_51/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --channel="4860.3.2048977516\2112416212" /prefetch:673131151
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group15 pct:1h stable:r3 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_51/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --channel="4860.4.406517754\805149046" /prefetch:673131151
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group15 pct:1h stable:r3 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_51/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="4860.6.1775432106\623199530" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group15 pct:1h stable:r3 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_51/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="4860.14.137682828\1278826513" /prefetch:673131151
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4860.15.711755195\112435621" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
"C:\Users\EkZiT\Downloads\RSITx64 (2).exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\EkZiT\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group15 pct:1h stable:r3 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/Standard/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-1-Percent/group_51/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_08/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="4860.17.735239627\648936655" /prefetch:673131151

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-28354313-2184747063-3306077547-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-28354313-2184747063-3306077547-1000UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\EkZiT\AppData\Roaming\Mozilla\Firefox\Profiles\8124rlsi.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.0]
"Description"=ESN Sonar browser plugin
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.102.0]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.110.0]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.118.0]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.132.0]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.140.0]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.4]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprjplug;version=1.0.3.69]
"Description"=RealJukebox Netscape Plugin
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69]
"Description"=6.0.12.69
"Path"=C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-08 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7b523e7c-f096-4e36-a0cb-7efeb5c675c1}]
IEExtension.VDownloaderBHO - C:\Windows\system32\mscoree.dll [2010-11-05 444752]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD}]
WinToFlash Suggestor - C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.dll [2012-05-25 281424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RunDLLEntry"=C:\Windows\system32\AmbRunE.dll [2009-02-26 17920]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2012-11-29 7406392]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2013-11-11 1612504]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-11-08 1028384]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2013-12-10 2279712]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2013-12-10 1100248]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 660360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe_ID0EYTHM]
C:\PROGRA~2\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE [2007-03-20 1884160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bpk]
C:\Program Files (x86)\BPK\bpk.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2011-07-29 1259376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
C:\Program Files (x86)\Origin\Origin.exe [2013-11-22 3551576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe [2013-03-29 2081792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Freecorder FLV Service]
C:\Program Files (x86)\Freecorder\FLVSrvc.exe /run []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Go!Zilla]
C:\Program Files (x86)\GoZilla\Goz.exe [2008-06-25 3350800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2010-04-12 180224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2011-07-05 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\PROGRA~2\Raptr\raptrstub.exe --startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\Steam.exe [2013-06-06 1641896]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe [2010-06-22 198160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tlbHost]
C:\Program Files\TrueLaunchBar\tlbHost.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Total CMA Pack]
C:\Program Files (x86)\Total CMA Pack\Total CMA Pack.exe [2009-09-01 43255]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VC10Player]
C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VDownloader]
C:\Program Files\VDownloader\VDownloader.exe [2012-12-20 879104]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SketchBook Snapshot.lnk]
C:\PROGRA~2\Autodesk\SKETCH~1\SKETCH~1.EXE []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\fsproflt2]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\fsproflt2]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoStartMenuMyGames"=0
"NoDrives"=0
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"Microsoft Windows Hosting Service"="C:\Users\EkZiT\AppData\Local\Temp\csrss.exe"
"C:\Windows\SysWOW64\msiexec.exe"="C:\Windows\SysWOW64\msiexec.exe:*:Generic Host Process"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"VIDC.XFR1"=xfcodec64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave7"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux3"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave8"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer8"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2013-12-24 15:41:17 ----D---- C:\rsit
2013-12-24 15:31:10 ----SHD---- C:\$RECYCLE.BIN
2013-12-24 14:49:50 ----D---- C:\Windows\temp
2013-12-23 23:04:21 ----D---- C:\Program Files (x86)\WinToFlash Suggestor
2013-12-23 08:49:06 ----A---- C:\Windows\system32\drivers\yk62x64.sys.bak
2013-12-23 08:49:06 ----A---- C:\Windows\system32\drivers\WUDFRd.sys.bak
2013-12-23 08:49:06 ----A---- C:\Windows\system32\drivers\WUDFPf.sys.bak
2013-12-23 08:49:06 ----A---- C:\Windows\system32\drivers\ws2ifsl.sys.bak
2013-12-23 08:49:06 ----A---- C:\Windows\system32\drivers\wmilib.sys.bak
2013-12-23 08:49:05 ----A---- C:\Windows\system32\drivers\wmiacpi.sys.bak
2013-12-23 08:49:05 ----A---- C:\Windows\system32\drivers\winusb.sys.bak
2013-12-23 08:49:05 ----A---- C:\Windows\system32\drivers\wimmount.sys.bak
2013-12-23 08:49:05 ----A---- C:\Windows\system32\drivers\wfplwf.sys.bak
2013-12-23 08:49:05 ----A---- C:\Windows\system32\drivers\WdfLdr.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\Wdf01000.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\wd.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\watchdog.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\wanarp.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\wacompen.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\vwifimp.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\vwififlt.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\vwifibus.sys.bak
2013-12-23 08:49:04 ----A---- C:\Windows\system32\drivers\vsmraid.sys.bak
2013-12-23 08:49:03 ----A---- C:\Windows\system32\drivers\volsnap.sys.bak
2013-12-23 08:49:03 ----A---- C:\Windows\system32\drivers\volmgrx.sys.bak
2013-12-23 08:49:03 ----A---- C:\Windows\system32\drivers\volmgr.sys.bak
2013-12-23 08:49:03 ----A---- C:\Windows\system32\drivers\VMfilt64.sys.bak
2013-12-23 08:49:03 ----A---- C:\Windows\system32\drivers\videoprt.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\viaide.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\viahduaa.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\VHIDMini.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\vhdmp.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\vgapnp.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\vga.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\vdrvroot.sys.bak
2013-12-23 08:49:02 ----A---- C:\Windows\system32\drivers\vdrv1000.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\VcommMgr.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\VComm.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\vcd10bus.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\VBTEnum.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\usbuhci.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\usbscan.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\usbrpm.sys.bak
2013-12-23 08:49:01 ----A---- C:\Windows\system32\drivers\usbprint.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbport.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbohci.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbhub.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbfilter.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbehci.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbd.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbcir.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\usbccgp.sys.bak
2013-12-23 08:49:00 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys.bak
2013-12-23 08:48:59 ----A---- C:\Windows\system32\drivers\usb8023x.sys.bak
2013-12-23 08:48:59 ----A---- C:\Windows\system32\drivers\usb8023.sys.bak
2013-12-23 08:48:59 ----A---- C:\Windows\system32\drivers\umpass.sys.bak
2013-12-23 08:48:59 ----A---- C:\Windows\system32\drivers\umbus.sys.bak
2013-12-23 08:48:59 ----A---- C:\Windows\system32\drivers\ULIAGPKX.SYS.bak
2013-12-23 08:48:59 ----A---- C:\Windows\system32\drivers\udfs.sys.bak
2013-12-23 08:48:59 ----A---- C:\Windows\system32\drivers\UAGP35.SYS.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\tunnel.sys.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\tssecsrv.sys.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\termdd.sys.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\tdx.sys.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\tdtcp.sys.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\tdpipe.sys.bak
2013-12-23 08:48:58 ----A---- C:\Windows\system32\drivers\tdi.sys.bak
2013-12-23 08:48:57 ----A---- C:\Windows\system32\drivers\tcpipreg.sys.bak
2013-12-23 08:48:57 ----A---- C:\Windows\system32\drivers\tcpip.sys.bak
2013-12-23 08:48:57 ----A---- C:\Windows\system32\drivers\tape.sys.bak
2013-12-23 08:48:57 ----A---- C:\Windows\system32\drivers\swenum.sys.bak
2013-12-23 08:48:57 ----A---- C:\Windows\system32\drivers\stream.sys.bak
2013-12-23 08:48:56 ----A---- C:\Windows\system32\drivers\storport.sys.bak
2013-12-23 08:48:56 ----A---- C:\Windows\system32\drivers\stexstor.sys.bak
2013-12-23 08:48:56 ----A---- C:\Windows\system32\drivers\srvnet.sys.bak
2013-12-23 08:48:56 ----A---- C:\Windows\system32\drivers\srv2.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\srv.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\sptd.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\spsys.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\spldr.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\smclib.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\smb.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\sisraid4.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\sisraid2.sys.bak
2013-12-23 08:48:55 ----A---- C:\Windows\system32\drivers\sfloppy.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\sffp_sd.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\sffp_mmc.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\sffdisk.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\sermouse.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\serial.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\serenum.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\seehcri.sys.bak
2013-12-23 08:48:54 ----A---- C:\Windows\system32\drivers\secdrv.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\scsiport.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\scfilter.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\scdemu.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\sbp2port.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\SaiU0CEA.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\SaiMini.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\SaiK0CEA.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\SaiBus.sys.bak
2013-12-23 08:48:53 ----A---- C:\Windows\system32\drivers\rspndr.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\rootmdm.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\rndismpx.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\RNDISMP.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\rmcast.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\rfcomm.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\rdyboost.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\rdpwd.sys.bak
2013-12-23 08:48:52 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys.bak
2013-12-23 08:48:51 ----A---- C:\Windows\system32\drivers\RDPREFMP.sys.bak
2013-12-23 08:48:51 ----A---- C:\Windows\system32\drivers\RDPENCDD.sys.bak
2013-12-23 08:48:51 ----A---- C:\Windows\system32\drivers\RDPCDD.sys.bak
2013-12-23 08:48:51 ----A---- C:\Windows\system32\drivers\rdpbus.sys.bak
2013-12-23 08:48:51 ----A---- C:\Windows\system32\drivers\rdbss.sys.bak
2013-12-23 08:48:50 ----A---- C:\Windows\system32\drivers\rassstp.sys.bak
2013-12-23 08:48:50 ----A---- C:\Windows\system32\drivers\raspptp.sys.bak
2013-12-23 08:48:50 ----A---- C:\Windows\system32\drivers\raspppoe.sys.bak
2013-12-23 08:48:50 ----A---- C:\Windows\system32\drivers\rasl2tp.sys.bak
2013-12-23 08:48:50 ----A---- C:\Windows\system32\drivers\rasacd.sys.bak
2013-12-23 08:48:50 ----A---- C:\Windows\system32\drivers\qwavedrv.sys.bak
2013-12-23 08:48:49 ----A---- C:\Windows\system32\drivers\ql40xx.sys.bak
2013-12-23 08:48:48 ----A---- C:\Windows\system32\drivers\ql2300.sys.bak
2013-12-23 08:48:48 ----A---- C:\Windows\system32\drivers\processr.sys.bak
2013-12-23 08:48:48 ----A---- C:\Windows\system32\drivers\portcls.sys.bak
2013-12-23 08:48:48 ----A---- C:\Windows\system32\drivers\PEAuth.sys.bak
2013-12-23 08:48:48 ----A---- C:\Windows\system32\drivers\pcw.sys.bak
2013-12-23 08:48:48 ----A---- C:\Windows\system32\drivers\pctNdis64.sys.bak
2013-12-23 08:48:48 ----A---- C:\Windows\system32\drivers\pcmcia.sys.bak
2013-12-23 08:48:47 ----A---- C:\Windows\system32\drivers\pciidex.sys.bak
2013-12-23 08:48:47 ----A---- C:\Windows\system32\drivers\pciide.sys.bak
2013-12-23 08:48:47 ----A---- C:\Windows\system32\drivers\pci.sys.bak
2013-12-23 08:48:46 ----A---- C:\Windows\system32\drivers\partmgr.sys.bak
2013-12-23 08:48:46 ----A---- C:\Windows\system32\drivers\parport.sys.bak
2013-12-23 08:48:46 ----A---- C:\Windows\system32\drivers\pacer.sys.bak
2013-12-23 08:48:46 ----A---- C:\Windows\system32\drivers\ohci1394.sys.bak
2013-12-23 08:48:46 ----A---- C:\Windows\system32\drivers\nwifi.sys.bak
2013-12-23 08:48:46 ----A---- C:\Windows\system32\drivers\nvvad64v.sys.bak
2013-12-23 08:48:46 ----A---- C:\Windows\system32\drivers\NV_AGP.SYS.bak
2013-12-23 08:48:45 ----A---- C:\Windows\system32\drivers\nvstor.sys.bak
2013-12-23 08:48:42 ----A---- C:\Windows\system32\drivers\nvraid.sys.bak
2013-12-23 08:48:41 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys.bak
2013-12-23 08:48:41 ----A---- C:\Windows\system32\drivers\nvhda64v.sys.bak
2013-12-23 08:48:41 ----A---- C:\Windows\system32\drivers\nusb3xhc.sys.bak
2013-12-23 08:48:41 ----A---- C:\Windows\system32\drivers\nusb3hub.sys.bak
2013-12-23 08:48:41 ----A---- C:\Windows\system32\drivers\null.sys.bak
2013-12-23 08:48:40 ----A---- C:\Windows\system32\drivers\ntiopnp.sys.bak
2013-12-23 08:48:40 ----A---- C:\Windows\system32\drivers\ntfs.sys.bak
2013-12-23 08:48:40 ----A---- C:\Windows\system32\drivers\nsiproxy.sys.bak
2013-12-23 08:48:40 ----A---- C:\Windows\system32\drivers\npfs.sys.bak
2013-12-23 08:48:40 ----A---- C:\Windows\system32\drivers\nfrd960.sys.bak
2013-12-23 08:48:40 ----A---- C:\Windows\system32\drivers\netio.sys.bak
2013-12-23 08:48:40 ----A---- C:\Windows\system32\drivers\netbt.sys.bak
2013-12-23 08:48:39 ----A---- C:\Windows\system32\drivers\netbios.sys.bak
2013-12-23 08:48:39 ----A---- C:\Windows\system32\drivers\ndproxy.sys.bak
2013-12-23 08:48:39 ----A---- C:\Windows\system32\drivers\ndiswan.sys.bak
2013-12-23 08:48:39 ----A---- C:\Windows\system32\drivers\ndisuio.sys.bak
2013-12-23 08:48:39 ----A---- C:\Windows\system32\drivers\ndistapi.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\ndiscap.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\ndis.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\mup.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\MTConfig.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\mstee.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\mssmbios.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\msrpc.sys.bak
2013-12-23 08:48:38 ----A---- C:\Windows\system32\drivers\mspqm.sys.bak
2013-12-23 08:48:37 ----A---- C:\Windows\system32\drivers\mspclock.sys.bak
2013-12-23 08:48:37 ----A---- C:\Windows\system32\drivers\mskssrv.sys.bak
2013-12-23 08:48:37 ----A---- C:\Windows\system32\drivers\msiscsi.sys.bak
2013-12-23 08:48:37 ----A---- C:\Windows\system32\drivers\msisadrv.sys.bak
2013-12-23 08:48:37 ----A---- C:\Windows\system32\drivers\mshidkmdf.sys.bak
2013-12-23 08:48:36 ----A---- C:\Windows\system32\drivers\msfs.sys.bak
2013-12-23 08:48:36 ----A---- C:\Windows\system32\drivers\msdsm.sys.bak
2013-12-23 08:48:36 ----A---- C:\Windows\system32\drivers\msahci.sys.bak
2013-12-23 08:48:36 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys.bak
2013-12-23 08:48:36 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys.bak
2013-12-23 08:48:36 ----A---- C:\Windows\system32\drivers\mrxsmb.sys.bak
2013-12-23 08:48:35 ----A---- C:\Windows\system32\drivers\mrxdav.sys.bak
2013-12-23 08:48:35 ----A---- C:\Windows\system32\drivers\mpsdrv.sys.bak
2013-12-23 08:48:35 ----A---- C:\Windows\system32\drivers\mpio.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\mountmgr.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\mouhid.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\mouclass.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\monitor.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\modem.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\MegaSR.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\megasas.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\mcd.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\mbam.sys.bak
2013-12-23 08:48:34 ----A---- C:\Windows\system32\drivers\luafv.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\lsi_scsi.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\lsi_sas2.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\lsi_sas.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\lsi_fc.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\LNonPnP.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\lltdio.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\lirsgt.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\LGVirHid.sys.bak
2013-12-23 08:48:33 ----A---- C:\Windows\system32\drivers\LGSHidFilt.Sys.bak
2013-12-23 08:48:32 ----A---- C:\Windows\system32\drivers\LGBusEnum.sys.bak
2013-12-23 08:48:32 ----A---- C:\Windows\system32\drivers\ksthunk.sys.bak
2013-12-23 08:48:32 ----A---- C:\Windows\system32\drivers\ksecpkg.sys.bak
2013-12-23 08:48:32 ----A---- C:\Windows\system32\drivers\ksecdd.sys.bak
2013-12-23 08:48:32 ----A---- C:\Windows\system32\drivers\ks.sys.bak
2013-12-23 08:48:32 ----A---- C:\Windows\system32\drivers\kbdhid.sys.bak
2013-12-23 08:48:32 ----A---- C:\Windows\system32\drivers\kbdclass.sys.bak
2013-12-23 08:48:31 ----A---- C:\Windows\system32\drivers\jraid.sys.bak
2013-12-23 08:48:31 ----A---- C:\Windows\system32\drivers\isapnp.sys.bak
2013-12-23 08:48:31 ----A---- C:\Windows\system32\drivers\irenum.sys.bak
2013-12-23 08:48:31 ----A---- C:\Windows\system32\drivers\irda.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\ipnat.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\intelppm.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\intelide.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\inspect.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\iirsp.sys.bak
2013-12-23 08:48:30 ----A---- C:\Windows\system32\drivers\iaStorV.sys.bak
2013-12-23 08:48:29 ----A---- C:\Windows\system32\drivers\i8042prt.sys.bak
2013-12-23 08:48:29 ----A---- C:\Windows\system32\drivers\hwpolicy.sys.bak
2013-12-23 08:48:29 ----A---- C:\Windows\system32\drivers\http.sys.bak
2013-12-23 08:48:29 ----A---- C:\Windows\system32\drivers\HpSAMD.sys.bak
2013-12-23 08:48:29 ----A---- C:\Windows\system32\drivers\hidusb.sys.bak
2013-12-23 08:48:29 ----A---- C:\Windows\system32\drivers\hidir.sys.bak
2013-12-23 08:48:28 ----A---- C:\Windows\system32\drivers\hidbth.sys.bak
2013-12-23 08:48:28 ----A---- C:\Windows\system32\drivers\hidbatt.sys.bak
2013-12-23 08:48:28 ----A---- C:\Windows\system32\drivers\HH10Help.sys.bak
2013-12-23 08:48:28 ----A---- C:\Windows\system32\drivers\HDJMidi.sys.bak
2013-12-23 08:48:28 ----A---- C:\Windows\system32\drivers\HDJCtrl.sys.bak
2013-12-23 08:48:28 ----A---- C:\Windows\system32\drivers\HDJBulk.sys.bak
2013-12-23 08:48:28 ----A---- C:\Windows\system32\drivers\HDJAsioK.sys.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\HdAudio.sys.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\hdaudbus.sys.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\hcw85cir.sys.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\hamachi.sys.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\ggsemc.sys.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\ggflt.sys.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\GAGP30KX.SYS.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS.bak
2013-12-23 08:48:27 ----A---- C:\Windows\system32\drivers\fvevol.sys.bak
2013-12-23 08:48:26 ----A---- C:\Windows\system32\drivers\FSPFltd2.sys.bak
2013-12-23 08:48:26 ----A---- C:\Windows\system32\drivers\fsdepends.sys.bak
2013-12-23 08:48:26 ----A---- C:\Windows\system32\drivers\fs_rec.sys.bak
2013-12-23 08:48:26 ----A---- C:\Windows\system32\drivers\fltMgr.sys.bak
2013-12-23 08:48:26 ----A---- C:\Windows\system32\drivers\flpydisk.sys.bak
2013-12-23 08:48:26 ----A---- C:\Windows\system32\drivers\filetrace.sys.bak
2013-12-23 08:48:25 ----A---- C:\Windows\system32\drivers\fileinfo.sys.bak
2013-12-23 08:48:25 ----A---- C:\Windows\system32\drivers\fdc.sys.bak
2013-12-23 08:48:24 ----A---- C:\Windows\system32\drivers\fastfat.sys.bak
2013-12-23 08:48:24 ----A---- C:\Windows\system32\drivers\exfat.sys.bak
2013-12-23 08:48:23 ----A---- C:\Windows\system32\drivers\evbda.sys.bak
2013-12-23 08:48:23 ----A---- C:\Windows\system32\drivers\errdev.sys.bak
2013-12-23 08:48:23 ----A---- C:\Windows\system32\drivers\elxstor.sys.bak
2013-12-23 08:48:23 ----A---- C:\Windows\system32\drivers\dxgmms1.sys.bak
2013-12-23 08:48:23 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys.bak
2013-12-23 08:48:22 ----A---- C:\Windows\system32\drivers\dxg.sys.bak
2013-12-23 08:48:22 ----A---- C:\Windows\system32\drivers\dxapi.sys.bak
2013-12-23 08:48:22 ----A---- C:\Windows\system32\drivers\dumpfve.sys.bak
2013-12-23 08:48:22 ----A---- C:\Windows\system32\drivers\Dumpata.sys.bak
2013-12-23 08:48:22 ----A---- C:\Windows\system32\drivers\drmkaud.sys.bak
2013-12-23 08:48:21 ----A---- C:\Windows\system32\drivers\drmk.sys.bak
2013-12-23 08:48:21 ----A---- C:\Windows\system32\drivers\Dot4usb.sys.bak
2013-12-23 08:48:21 ----A---- C:\Windows\system32\drivers\Dot4Prt.sys.bak
2013-12-23 08:48:21 ----A---- C:\Windows\system32\drivers\Dot4.sys.bak
2013-12-23 08:48:21 ----A---- C:\Windows\system32\drivers\Diskdump.sys.bak
2013-12-23 08:48:21 ----A---- C:\Windows\system32\drivers\disk.sys.bak
2013-12-23 08:48:20 ----A---- C:\Windows\system32\drivers\discache.sys.bak
2013-12-23 08:48:20 ----A---- C:\Windows\system32\drivers\dfsc.sys.bak
2013-12-23 08:48:20 ----A---- C:\Windows\system32\drivers\crcdisk.sys.bak
2013-12-23 08:48:20 ----A---- C:\Windows\system32\drivers\crashdmp.sys.bak
2013-12-23 08:48:20 ----A---- C:\Windows\system32\drivers\cpuz135_x64.sys.bak
2013-12-23 08:48:20 ----A---- C:\Windows\system32\drivers\CompositeBus.sys.bak
2013-12-23 08:48:19 ----A---- C:\Windows\system32\drivers\compbatt.sys.bak
2013-12-23 08:48:19 ----A---- C:\Windows\system32\drivers\cng.sys.bak
2013-12-23 08:48:19 ----A---- C:\Windows\system32\drivers\cmdide.sys.bak
2013-12-23 08:48:19 ----A---- C:\Windows\system32\drivers\cmdhlp.sys.bak
2013-12-23 08:48:18 ----A---- C:\Windows\system32\drivers\cmdguard.sys.bak
2013-12-23 08:48:18 ----A---- C:\Windows\system32\drivers\cmderd.sys.bak
2013-12-23 08:48:18 ----A---- C:\Windows\system32\drivers\CmBatt.sys.bak
2013-12-23 08:48:18 ----A---- C:\Windows\system32\drivers\Classpnp.sys.bak
2013-12-23 08:48:17 ----A---- C:\Windows\system32\drivers\circlass.sys.bak
2013-12-23 08:48:17 ----A---- C:\Windows\system32\drivers\cdrom.sys.bak
2013-12-23 08:48:17 ----A---- C:\Windows\system32\drivers\cdfs.sys.bak
2013-12-23 08:48:16 ----A---- C:\Windows\system32\drivers\bxvbda.sys.bak
2013-12-23 08:48:16 ----A---- C:\Windows\system32\drivers\BTNetFilter.sys.bak
2013-12-23 08:48:15 ----A---- C:\Windows\system32\drivers\BtNetDrv.sys.bak
2013-12-23 08:48:15 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS.bak
2013-12-23 08:48:15 ----A---- C:\Windows\system32\drivers\bthport.sys.bak
2013-12-23 08:48:15 ----A---- C:\Windows\system32\drivers\bthpan.sys.bak
2013-12-23 08:48:14 ----A---- C:\Windows\system32\drivers\bthmodem.sys.bak
2013-12-23 08:48:14 ----A---- C:\Windows\system32\drivers\BTHidMgr.sys.bak
2013-12-23 08:48:14 ----A---- C:\Windows\system32\drivers\bthenum.sys.bak
2013-12-23 08:48:14 ----A---- C:\Windows\system32\drivers\btcusb.sys.bak
2013-12-23 08:48:14 ----A---- C:\Windows\system32\drivers\BrUsbSer.sys.bak
2013-12-23 08:48:13 ----A---- C:\Windows\system32\drivers\BrUsbMdm.sys.bak
2013-12-23 08:48:13 ----A---- C:\Windows\system32\drivers\BrSerWdm.sys.bak
2013-12-23 08:48:13 ----A---- C:\Windows\system32\drivers\BrSerId.sys.bak
2013-12-23 08:48:13 ----A---- C:\Windows\system32\drivers\bridge.sys.bak
2013-12-23 08:48:12 ----A---- C:\Windows\system32\drivers\BrFiltUp.sys.bak
2013-12-23 08:48:12 ----A---- C:\Windows\system32\drivers\BrFiltLo.sys.bak
2013-12-23 08:48:12 ----A---- C:\Windows\system32\drivers\bowser.sys.bak
2013-12-23 08:48:12 ----A---- C:\Windows\system32\drivers\BlueletSCOAudio.sys.bak
2013-12-23 08:48:12 ----A---- C:\Windows\system32\drivers\blueletaudio.sys.bak
2013-12-23 08:48:11 ----A---- C:\Windows\system32\drivers\blbdrive.sys.bak
2013-12-23 08:48:11 ----A---- C:\Windows\system32\drivers\beep.sys.bak
2013-12-23 08:48:11 ----A---- C:\Windows\system32\drivers\bdhv.sys.bak
2013-12-23 08:48:11 ----A---- C:\Windows\system32\drivers\bdfndisf6.sys.bak
2013-12-23 08:48:11 ----A---- C:\Windows\system32\drivers\BazisVirtualCDBus.sys.bak
2013-12-23 08:48:10 ----A---- C:\Windows\system32\drivers\battc.sys.bak
2013-12-23 08:48:10 ----A---- C:\Windows\system32\drivers\b57nd60a.sys.bak
2013-12-23 08:48:08 ----A---- C:\Windows\system32\drivers\atksgt.sys.bak
2013-12-23 08:48:08 ----A---- C:\Windows\system32\drivers\atipmdag.sys.bak
2013-12-23 08:48:06 ----A---- C:\Windows\system32\drivers\atikmpag.sys.bak
2013-12-23 08:48:06 ----A---- C:\Windows\system32\drivers\atikmdag.sys.bak
2013-12-23 08:48:06 ----A---- C:\Windows\system32\drivers\AtihdW76.sys.bak
2013-12-23 08:48:05 ----A---- C:\Windows\system32\drivers\AtiHdmi.sys.bak
2013-12-23 08:48:05 ----A---- C:\Windows\system32\drivers\ataport.sys.bak
2013-12-23 08:48:05 ----A---- C:\Windows\system32\drivers\atapi.sys.bak
2013-12-23 08:48:05 ----A---- C:\Windows\system32\drivers\asyncmac.sys.bak
2013-12-23 08:48:05 ----A---- C:\Windows\system32\drivers\ASACPI.sys.bak
2013-12-23 08:48:05 ----A---- C:\Windows\system32\drivers\arcsas.sys.bak
2013-12-23 08:48:05 ----A---- C:\Windows\system32\drivers\arc.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\appid.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\amdxata.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\amdsbs.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\amdsata.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\amdppm.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\amdk8.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\amdiox64.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\amdide.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\aliide.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\AGP440.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\agilevpn.sys.bak
2013-12-23 08:48:04 ----A---- C:\Windows\system32\drivers\afd.sys.bak
2013-12-23 08:48:03 ----A---- C:\Windows\system32\drivers\adpu320.sys.bak
2013-12-23 08:48:03 ----A---- C:\Windows\system32\drivers\adpahci.sys.bak
2013-12-23 08:48:03 ----A---- C:\Windows\system32\drivers\adp94xx.sys.bak
2013-12-23 08:48:03 ----A---- C:\Windows\system32\drivers\acpipmi.sys.bak
2013-12-23 08:48:03 ----A---- C:\Windows\system32\drivers\acpi.sys.bak
2013-12-23 08:48:03 ----A---- C:\Windows\system32\drivers\1394ohci.sys.bak
2013-12-23 08:48:02 ----A---- C:\Windows\system32\drivers\1394bus.sys.bak
2013-12-23 08:44:54 ----A---- C:\Windows\system32\drivers\mbam.sys
2013-12-23 08:44:53 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-23 08:32:15 ----D---- C:\found.000
2013-12-23 08:10:48 ----D---- C:\AdwCleaner
2013-12-23 08:01:38 ----D---- C:\Program Files\trend micro
2013-12-23 06:34:32 ----D---- C:\Users\EkZiT\AppData\Roaming\Malwarebytes
2013-12-23 05:14:46 ----D---- C:\ProgramData\HP
2013-12-20 22:39:17 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2013-12-20 22:39:17 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2013-12-15 00:51:05 ----D---- C:\Users\EkZiT\AppData\Roaming\Proxy Studios
2013-12-14 23:35:36 ----D---- C:\Users\EkZiT\AppData\Roaming\Gomo
2013-12-14 22:54:39 ----D---- C:\Games
2013-12-12 14:39:20 ----A---- C:\Windows\system32\EuEpmGdi.dll
2013-12-12 14:39:19 ----A---- C:\Windows\SYSWOW64\setupempdrv03.exe
2013-12-12 14:39:19 ----A---- C:\Windows\SYSWOW64\EuGdiDrv.sys
2013-12-12 14:39:19 ----A---- C:\Windows\SYSWOW64\EuEpmGdi.dll
2013-12-12 14:39:19 ----A---- C:\Windows\SYSWOW64\epmntdrv.sys
2013-12-12 14:39:19 ----A---- C:\Windows\SYSWOW64\BootMan.exe
2013-12-12 14:39:19 ----A---- C:\Windows\system32\setupempdrvx64.exe
2013-12-12 14:39:19 ----A---- C:\Windows\system32\EuGdiDrv.sys
2013-12-12 14:39:19 ----A---- C:\Windows\system32\epmntdrv.sys
2013-12-12 14:39:19 ----A---- C:\Windows\system32\BootMan.exe
2013-12-12 14:39:09 ----D---- C:\Program Files (x86)\EaseUS
2013-12-12 13:27:40 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-12 13:27:40 ----A---- C:\Windows\system32\msieftp.dll
2013-12-12 13:27:39 ----A---- C:\Windows\system32\win32k.sys
2013-12-12 13:27:36 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-12 13:27:36 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-12 13:27:35 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-12 13:27:35 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-12 13:27:31 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-12 13:27:31 ----A---- C:\Windows\system32\tzres.dll
2013-12-12 13:27:25 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-12 13:27:25 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-12 13:27:23 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-12 13:27:23 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-12 13:27:23 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-12 13:27:23 ----A---- C:\Windows\system32\wscript.exe
2013-12-12 13:27:23 ----A---- C:\Windows\system32\scrrun.dll
2013-12-12 13:27:23 ----A---- C:\Windows\system32\cscript.exe
2013-12-02 18:08:15 ----D---- C:\____new
2013-11-29 21:55:23 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-11-29 21:55:23 ----A---- C:\Windows\system32\mshtmled.dll
2013-11-29 21:55:22 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-11-29 21:55:22 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-11-29 21:55:22 ----A---- C:\Windows\system32\msfeeds.dll
2013-11-29 21:55:22 ----A---- C:\Windows\system32\iertutil.dll
2013-11-29 21:55:21 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-11-29 21:55:21 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-11-29 21:55:21 ----A---- C:\Windows\system32\wininet.dll
2013-11-29 21:55:21 ----A---- C:\Windows\system32\jsproxy.dll
2013-11-29 21:55:21 ----A---- C:\Windows\system32\ieui.dll
2013-11-29 21:55:20 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-11-29 21:55:20 ----A---- C:\Windows\SYSWOW64\url.dll
2013-11-29 21:55:20 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-11-29 21:55:20 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-11-29 21:55:20 ----A---- C:\Windows\system32\urlmon.dll
2013-11-29 21:55:20 ----A---- C:\Windows\system32\url.dll
2013-11-29 21:55:19 ----A---- C:\Windows\system32\ieframe.dll
2013-11-29 19:46:57 ----D---- C:\debug
2013-11-29 19:45:46 ----D---- C:\Program Files (x86)\Windows Doctor
2013-11-27 02:38:06 ----RSH---- C:\Windows\SYSWOW64\2912DA9DF7.sys
2013-11-27 02:38:06 ----ASH---- C:\Windows\SYSWOW64\KGyGaAvL.sys
2013-11-27 02:38:03 ----D---- C:\Users\EkZiT\AppData\Roaming\Corel
2013-11-27 02:34:54 ----D---- C:\ProgramData\Corel
2013-11-27 02:34:54 ----D---- C:\Program Files (x86)\Corel
2013-11-27 02:18:26 ----D---- C:\Users\EkZiT\AppData\Roaming\Autodesk
2013-11-27 02:18:19 ----D---- C:\ProgramData\Alias
2013-11-27 00:32:07 ----D---- C:\Program Files (x86)\Need For Speed Rivals
2013-11-26 21:01:00 ----D---- C:\Users\EkZiT\AppData\Roaming\dekovir

======List of files/folders modified in the last 1 month======

2013-12-24 15:41:17 ----D---- C:\Windows\Prefetch
2013-12-24 15:40:35 ----D---- C:\Windows\system32\drivers
2013-12-24 15:40:25 ----RD---- C:\Users
2013-12-24 15:39:25 ----D---- C:\Windows
2013-12-24 15:37:26 ----D---- C:\Windows\system32\config
2013-12-24 15:32:37 ----D---- C:\ProgramData\NVIDIA
2013-12-24 15:26:29 ----D---- C:\Users\EkZiT\AppData\Roaming\AIMP3
2013-12-24 15:24:53 ----SHD---- C:\System Volume Information
2013-12-24 15:13:20 ----D---- C:\Windows\SysWOW64
2013-12-24 15:13:12 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2013-12-24 15:10:47 ----D---- C:\Program Files (x86)\Origin
2013-12-24 14:52:11 ----N---- C:\Windows\system.ini
2013-12-24 14:52:05 ----D---- C:\Windows\system32\drivers\etc
2013-12-24 14:46:59 ----D---- C:\Windows\SYSWOW64\drivers
2013-12-24 14:46:59 ----D---- C:\Windows\AppPatch
2013-12-24 14:46:58 ----D---- C:\Program Files (x86)\Common Files
2013-12-24 14:40:27 ----AD---- C:\Windows\System32
2013-12-24 14:37:00 ----D---- C:\Users\EkZiT\AppData\Roaming\uTorrent
2013-12-24 13:43:12 ----D---- C:\Windows\system32\catroot2
2013-12-24 13:38:51 ----D---- C:\ProgramData
2013-12-24 13:24:36 ----D---- C:\Users\EkZiT\AppData\Roaming\vlc
2013-12-23 23:16:02 ----D---- C:\Windows\inf
2013-12-23 23:16:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-12-23 23:12:05 ----SHD---- C:\Windows\Installer
2013-12-23 23:04:21 ----RD---- C:\Program Files (x86)
2013-12-23 08:36:44 ----D---- C:\Windows\system32\Tasks
2013-12-23 08:25:34 ----D---- C:\Windows\Tasks
2013-12-23 08:01:38 ----RD---- C:\Program Files
2013-12-23 07:26:50 ----D---- C:\Windows\WindowsMobile
2013-12-23 06:36:23 ----D---- C:\ProgramData\Origin
2013-12-23 06:26:57 ----D---- C:\ProgramData\Comodo
2013-12-23 06:25:01 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2013-12-23 05:21:07 ----D---- C:\Program Files (x86)\Steam
2013-12-23 05:18:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-12-23 05:16:38 ----D---- C:\ProgramData\Sony Mobile
2013-12-23 05:16:35 ----D---- C:\Program Files (x86)\Sony Mobile
2013-12-23 05:09:21 ----D---- C:\Windows\debug
2013-12-22 10:44:15 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-21 19:44:37 ----D---- C:\Windows\system32\NDF
2013-12-20 22:41:06 ----D---- C:\Windows\Microsoft.NET
2013-12-20 22:39:45 ----D---- C:\Windows\system32\DriverStore
2013-12-20 22:39:45 ----D---- C:\Windows\system32\catroot
2013-12-20 22:29:34 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2013-12-20 22:26:52 ----RSD---- C:\Windows\assembly
2013-12-16 03:04:40 ----D---- C:\Windows\system32\MRT
2013-12-16 03:00:57 ----A---- C:\Windows\system32\MRT.exe
2013-12-15 11:29:39 ----D---- C:\Program Files\VDownloader
2013-12-15 01:41:19 ----D---- C:\Program Files (x86)\Alawarhry.cz
2013-12-13 04:03:03 ----D---- C:\Windows\rescache
2013-12-13 03:26:05 ----D---- C:\Windows\winsxs
2013-12-13 03:21:38 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-12-13 03:21:38 ----D---- C:\Windows\system32\cs-CZ
2013-12-13 03:04:43 ----D---- C:\ProgramData\Microsoft Help
2013-12-11 00:18:43 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-10 03:13:11 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2013-12-10 03:13:01 ----A---- C:\Windows\system32\nvspcap64.dll
2013-12-09 11:45:41 ----D---- C:\ProgramData\NVIDIA Corporation
2013-12-09 11:44:18 ----D---- C:\Program Files\NVIDIA Corporation
2013-12-09 11:44:18 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-12-05 09:42:26 ----A---- C:\Windows\system32\nvaudcap64v.dll
2013-11-30 03:15:41 ----D---- C:\Windows\SYSWOW64\migration
2013-11-30 03:15:41 ----D---- C:\Windows\system32\migration
2013-11-30 03:15:41 ----D---- C:\Program Files\Internet Explorer
2013-11-30 03:15:41 ----D---- C:\Program Files (x86)\Internet Explorer
2013-11-29 01:23:30 ----D---- C:\Windows\pss
2013-11-29 01:19:31 ----D---- C:\Windows\Minidump
2013-11-27 02:35:07 ----RSD---- C:\Windows\Fonts

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 BTHidEnum;Bluetooth HID Enumerator; C:\Windows\System32\Drivers\vbtenum.sys [2007-03-05 24976]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\Windows\System32\Drivers\BTHidMgr.sys [2007-03-05 49680]
R0 FSProFilter2;FSPro File Filter 2; C:\Windows\System32\Drivers\FSPFltd2.sys [2011-06-03 57648]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2009-10-29 115824]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-05-31 564824]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2010-04-22 13440]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\system32\DRIVERS\cmderd.sys [2013-09-24 23168]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2013-09-24 48872]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2013-09-24 96800]
R1 ntiopnp;ntiopnp; C:\Windows\system32\drivers\ntiopnp.sys [2010-11-11 19544]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 91568]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [2013-02-06 57952]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-08-02 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-08-02 43680]
R3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys [2007-05-11 38160]
R3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys [2007-03-05 37648]
R3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\Windows\System32\Drivers\btcusb.sys [2007-05-09 44688]
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
R3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [2012-10-02 66360]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2009-11-24 16008]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2010-01-22 77824]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2010-01-22 180224]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-06-16 196384]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2013-12-05 39200]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 11264]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2012-07-24 34032]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-10-19 39480]
R3 VComm;Virtual Serial port driver; C:\Windows\system32\DRIVERS\VComm.sys [2007-03-05 47120]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\Windows\System32\Drivers\VcommMgr.sys [2007-03-05 63248]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2010-03-02 1301504]
S0 TfFsMon;TfFsMon; C:\Windows\system32\drivers\TfFsMon.sys []
S0 TfSysMon;TfSysMon; C:\Windows\system32\drivers\TfSysMon.sys []
S0 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys []
S1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\system32\DRIVERS\cmdguard.sys [2013-11-14 709144]
S1 ntiomin;ntiomin; C:\Windows\system32\drivers\ntiomin.sys []
S2 AODDriver4.01;AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys []
S2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
S3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-12-06 327168]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-10-17 93712]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-04-08 124944]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
S3 atillk64;atillk64; \??\C:\Program Files (x86)\AMD\System Monitor\atillk64.sys []
S3 BazisVirtualCDBus;WinCDEmu Virtual Bus Driver; C:\Windows\system32\DRIVERS\BazisVirtualCDBus.sys [2010-10-28 170080]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2007-03-05 25360]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 cpuz130;cpuz130; \??\C:\Users\EkZiT\AppData\Local\Temp\cpuz130\cpuz_x64.sys []
S3 cpuz135;cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 19968]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 ENTECH;ENTECH; \??\C:\Windows\system32\DRIVERS\ENTECH.SYS []
S3 epmntdrv;epmntdrv; \??\C:\Windows\syswow64\epmntdrv.sys [2013-03-07 13896]
S3 EuGdiDrv;EuGdiDrv; \??\C:\Windows\syswow64\EuGdiDrv.sys [2013-03-07 9160]
S3 FLASHSYS;FLASHSYS; \??\C:\Program Files (x86)\MSI\Live Update 4\LU4\FLASHSYS64.sys [2008-02-15 15192]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2013-11-20 14448]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2013-11-20 27760]
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2011-06-11 33344]
S3 HDJCtrl;Hercules DJ Control MP3 Service; C:\Windows\System32\Drivers\HDJCtrl.sys [2009-10-02 27648]
S3 HDJMidi;Hercules DJ Control MP3 MIDI; C:\Windows\system32\DRIVERS\HDJMidi.sys [2009-10-02 144896]
S3 HH10Help.sys;HH10Help.sys; \??\C:\Windows\system32\drivers\HH10Help.sys [2009-07-09 24088]
S3 JakNDisMP;JakNDisMP; C:\Windows\system32\DRIVERS\JakNDis.sys []
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys []
S3 MSICDSetup;MSICDSetup; \??\E:\CDriver64.sys []
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 4\LU4\NTIOLib_X64.sys [2010-10-22 14136]
S3 pctNDIS;PC Tools Driver; C:\Windows\system32\DRIVERS\pctNdis64.sys [2009-11-04 76440]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 SaiK0CEA;SaiK0CEA; C:\Windows\system32\DRIVERS\SaiK0CEA.sys [2008-04-04 129024]
S3 SaiMini;SaiMini; C:\Windows\system32\DRIVERS\SaiMini.sys [2010-08-10 22792]
S3 SaiNtBus;SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [2010-08-10 50056]
S3 SaiU0CEA;SaiU0CEA; C:\Windows\system32\DRIVERS\SaiU0CEA.sys [2008-04-04 34432]
S3 SNPSTD3;USB PC Camera (SNPSTD3); C:\Windows\system32\DRIVERS\snpstd3.sys []
S3 TfNetMon;TfNetMon; \??\C:\Windows\system32\drivers\TfNetMon.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-12-06 235520]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [2009-12-28 96896]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2009-07-14 19456]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2013-10-20 6254152]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2009-02-23 307200]
R2 fsproflt2;FSPro Filter Service 2; C:\Windows\SysWOW64\fsproflt2.exe [2012-07-12 49512]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-12-10 1494304]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-12-10 15129376]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-12-20 76888]
R2 ProtexisLicensing;ProtexisLicensing; C:\Program Files (x86)\Common Files\Protexis\License Service\PSIService.exe [2006-11-02 174656]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 simptcp;@%SystemRoot%\system32\simptcp.dll,-200; C:\Windows\System32\tcpsvcs.exe [2009-07-14 10240]
R2 SNMP;@%SystemRoot%\system32\snmp.exe,-3; C:\Windows\System32\snmp.exe [2010-11-20 49664]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-11-11 414496]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-08 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S3 Adobe Version Cue CS3;Adobe Version Cue CS3; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe [2007-03-20 153792]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2013-09-24 164056]
S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2010-05-24 79360]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2010-05-24 79360]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-09-19 654848]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-06-06 543656]
S4 AODService;AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2013-02-06 137096]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]

-----------------EOF-----------------

EkZiT
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 18 lis 2012 22:24

Re: win7 zamrzne u startu / PUP.Dealply.malware

#20 Příspěvek od EkZiT »

info.txt logfile of random's system information tool 1.09 2013-12-24 15:41:27

======Uninstall list======

Update for Microsoft Office 2007 (KB2508958)-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
Update for Microsoft Office 2007 (KB2508958)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
-->C:\Program Files (x86)\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->MsiExec /X{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{6F3684E3-0FA0-4443-B97D-65117730222E}\setup.exe"
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{AAEF329E-F353-46C9-933D-24A571986093}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{AAEF329E-F353-46C9-933D-24A571986093}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x9 /remove
64 Bit HP CIO Components Installer-->MsiExec.exe /I{FF21C3E6-97FD-474F-9518-8DCBE94C2854}
7-Zip 4.65 (x64 edition)-->MsiExec.exe /I{23170F69-40C1-2702-0465-000001000000}
7-Zip 4.65-->"C:\Program Files (x86)\7-Zip\Uninstall.exe"
Activision(R)-->MsiExec.exe /X{14C36646-83C8-430E-92B3-16F998BDB4E0}
Add or Remove Adobe Creative Suite 3 Master Collection-->C:\Program Files (x86)\Common Files\Adobe\Installers\4dcfd9b7e901b57f81f667144603236\Setup.exe
Adobe After Effects CS3 Presets-->MsiExec.exe /I{193EAFD0-1BAF-4FB4-B18F-79D5D6A4B285}
Adobe After Effects CS3 Third Party Content-->C:\Program Files (x86)\Common Files\Adobe\Installers\3675c95c239b992d5d0ee8fce969b9e\Setup.exe
Adobe After Effects CS3 Third Party Content-->MsiExec.exe /I{7ECEF10B-F1C2-4FD5-861F-A3FCB4653304}
Adobe After Effects CS3-->MsiExec.exe /I{EB0202F7-016A-410C-ADE4-40F848CCC661}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe BridgeTalk Plugin CS3-->MsiExec.exe /I{B73CFB12-C814-4638-AFFD-7E3AAFAF0B4E}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color Common Settings-->MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
Adobe Color EU Extra Settings-->MsiExec.exe /I{51846830-E7B2-4218-8968-B77F0FF475B8}
Adobe Color JA Extra Settings-->MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
Adobe Color NA Recommended Settings-->MsiExec.exe /I{95655ED4-7CA5-46DF-907F-7144877A32E5}
Adobe Contribute CS3-->MsiExec.exe /I{FC9E08AA-CD59-4C59-BEF9-87E05B9E37D7}
Adobe Creative Suite 3 Master Collection-->MsiExec.exe /I{8718DC03-D066-4957-94E5-50C3C5042E8E}
Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe Dreamweaver CS3-->MsiExec.exe /I{7C10F5C7-F00F-4BD3-A110-C7D240D2DD25}
Adobe Encore CS3 Codecs-->MsiExec.exe /I{B8B7A4D8-80E1-4DAE-BD33-7FD535BA3931}
Adobe Encore CS3-->MsiExec.exe /I{54B2EAD9-A110-43F7-B010-2859A1BD2AFE}
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
Adobe Extension Manager CS3-->MsiExec.exe /I{BE5F3842-8309-4754-92D5-83E02E6077A3}
Adobe Fireworks CS3-->MsiExec.exe /I{7DFC1012-D346-46CE-B03E-FF79125AE029}
Adobe Flash CS3-->MsiExec.exe /I{6B52140A-F189-4945-BFFC-DB3F00B8C589}
Adobe Flash Player 11 ActiveX-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_170_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_170_Plugin.exe -maintain plugin
Adobe Flash Video Encoder-->MsiExec.exe /I{2EFFFC71-1E66-454E-A6E6-CEEC800B96D2}
Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Viewer CS3-->MsiExec.exe /I{7ACFB90E-8FD0-4397-AD3A-5195412623A3}
Adobe Illustrator CS3-->MsiExec.exe /I{F08E8D2E-F132-4742-9C87-D5FF223A016A}
Adobe InDesign CS3 Icon Handler-->MsiExec.exe /I{EA7B3CC4-366D-4CF6-8350-FD7A7034116E}
Adobe InDesign CS3-->MsiExec.exe /I{CB3F8375-B600-4B9F-83C9-238ED1E583FD}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe MotionPicture Color Files-->MsiExec.exe /I{6B708481-748A-4EB4-97C1-CD386244FF77}
Adobe PDF Library Files-->MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
Adobe Photoshop CS3-->MsiExec.exe /I{0046FA01-C5B9-4985-BACB-398DC480FC05}
Adobe Premiere Pro CS3 Functional Content-->MsiExec.exe /I{50F102CA-4BE2-41A9-9810-5BB05EB91B9A}
Adobe Premiere Pro CS3 Third Party Content-->MsiExec.exe /I{485ACF57-F364-440A-8496-E1E81C8FA1AA}
Adobe Premiere Pro CS3-->MsiExec.exe /I{58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA}
Adobe Setup-->MsiExec.exe /I{004685F7-9FB6-4789-812F-59ABB34A55AF}
Adobe Setup-->MsiExec.exe /I{4458C442-7376-4CF9-AF58-E8CEA6722363}
Adobe Shockwave Player 11.5-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
Adobe SING CS3-->MsiExec.exe /I{B671CBFD-4109-4D35-9252-3062D3CCB7B2}
Adobe Soundbooth CS3 Codecs-->MsiExec.exe /I{0327FA9D-975C-448C-A086-577D57BB25B8}
Adobe Soundbooth CS3-->MsiExec.exe /I{A6B23EFA-6590-482C-A11F-5ACE1B91F5B9}
Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
Adobe Version Cue CS3 Server-->MsiExec.exe /I{1D58229F-C505-45CA-8223-F35F3A34B963}
Adobe Video Profiles-->MsiExec.exe /I{845A8DB9-8802-4FD3-9FE3-938A6C46A2EC}
Adobe WAS CS3-->MsiExec.exe /I{C5BD220A-EFE8-48A5-B70E-9503D535FACE}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe XMP DVA Panels CS3-->MsiExec.exe /I{0224CACC-994D-45F8-B973-D65056EA9C2F}
Adobe XMP Panels CS3-->MsiExec.exe /I{D5A31AB1-345D-47C7-A87B-036A669F6DF1}
AHV content for Acrobat and Flash-->MsiExec.exe /I{6BBAA81D-6A7E-43AD-8889-2F002DCAAFDD}
AIMP3-->C:\Program Files (x86)\AIMP3\Uninstall.exe
Aktualizace ovladače pro aplikaci Centrum zařízení Windows Mobile-->MsiExec.exe /X{92DBCA36-9B41-4DD1-941A-AED149DD37F0}
AMD Catalyst Install Manager-->msiexec /q/x{05F0EE9C-A87B-01B5-EE44-F344F6CC9023} REBOOT=ReallySuppress
AMD OverDrive-->MsiExec.exe /X{973620A0-7EA9-4D9D-95B7-349B78664AC7}
AMD System Monitor-->MsiExec.exe /I{13EE03A3-7B77-47BC-9C42-B60576AB3A08}
Angry Birds Rio-->MsiExec.exe /I{A409B55C-DD9B-4157-86D7-FD6F4F0F2C1A}
Angry Birds Seasons-->MsiExec.exe /I{37F8C732-02B5-41A2-9F5B-D94EAC2226AB}
Angry Birds Space-->MsiExec.exe /I{45FFEC16-0615-47E2-8B70-CBAFD31D820C}
Angry Birds-->MsiExec.exe /I{61637194-D4E8-45CB-8619-23CE7B637FCF}
Anime Studio Pro 8.0-->"d:\Program Files (x86)\Smith Micro\Anime Studio Pro 8\unins000.exe"
Assassins Creed IV - Black Flag 1.01-->"d:\Hry\Assassins Creed IV - Black Flag\unins000.exe"
ASUS PC Diagnostics-->MsiExec.exe /I{D709005F-D8DC-42A8-8435-5AE880ECAF82}
Auto Hide IP-->"C:\Program Files (x86)\AutoHideIP\uninst.exe"
Bad Piggies-->MsiExec.exe /X{9B46C84F-4985-42F7-9AFC-437B53C84397}
Battlefield 3™-->"C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 3\Cleanup.exe" uninstall_game -autologging
Battlefield 4™-->"C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 4\Cleanup.exe" uninstall_game -autologging
Battlelog Web Plugins-->C:\Program Files (x86)\Battlelog Web Plugins\uninstall.exe
Blood Knights-->"d:\Program Files (x86)\Blood Knights\unins000.exe"
Bluesoleil2.6.0.8 Release 070517-->MsiExec.exe /X{438BB9B4-65FE-4626-91D9-A8F57B18001D}
Call of Duty - Ghosts 1.0.0.1-->"j:\Hry\Call of Duty - Ghosts\unins000.exe"
Centrum zařízení Windows Mobile-->MsiExec.exe /X{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}
COMODO Firewall-->MsiExec.exe /I{5969857A-B3B6-4CB8-8AC0-240E1A099246}
CorelDRAW Graphics Suite X3-->MsiExec.exe /I{63218538-4A69-497F-8455-904261B0E9E4}
Counter-Strike: Global Offensive - SDK-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/745
Counter-Strike: Global Offensive Beta-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730
Counter-Strike-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/10
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
DAEMON Tools Lite-->C:\Program Files (x86)\DAEMON Tools Lite\uninst.exe
DivX Setup-->C:\ProgramData\DivX\Setup\DivXSetup.exe /uninstall
Dungeon Siege III Collection-->"d:\Program Files (x86)\Square Enix\Dungeon Siege III Collection\unins000.exe"
EaseUS Partition Master 9.2.2-->"C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\unins000.exe"
EN-->MsiExec.exe /I{32A72502-BC2C-4C39-ACEA-BC3D463F0697}
EPU-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{9C2AC00C-0C06-4B7E-97A4-A833808D54D6}\setup.exe" -l0x9
Far Cry 3 v1.01-->"d:\Program Files (x86)\Far Cry 3\unins000.exe"
FlashFXP v4.1-->"C:\Program Files (x86)\FlashFXP 4\Uninstall.exe" "C:\Program Files (x86)\FlashFXP 4\install.log" -u
FontNav-->MsiExec.exe /I{4E98F23B-1328-4322-A6EC-2EDC8FC3A4FE}
Foxit Reader-->C:\Program Files (x86)\Foxit Software\Foxit Reader\Uninstall.exe
Free Hide Folder-->C:\PROGRA~2\FREEHI~1\UNWISE.EXE C:\PROGRA~2\FREEHI~1\INSTALL.LOG
GIMP 2.6.11-->"C:\Program Files (x86)\GIMP-2.0\setup\unins000.exe"
GOM Player-->"C:\Program Files (x86)\GRETECH\GomPlayer\Uninstall.exe"
Gomo 1.0.4-->C:\Games\Gomo\Uninstall.exe
Google Earth-->MsiExec.exe /X{468D22C0-8080-11E2-B86E-B8AC6F98CCE3}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Hotfix for Microsoft Visual C# 2010 Express - ENU (KB2635973)-->C:\Windows\SysWOW64\msiexec.exe /package {59F24743-2EA1-3A45-B8C2-6E0E1E078FA8} /uninstall {A003ADF2-C209-378D-959B-4D93E75FD7A5} /qb+ REBOOTPROMPT=""
HP Customer Participation Program 13.0-->C:\Program Files (x86)\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat -forcereboot
HP Imaging Device Functions 13.0-->C:\Program Files (x86)\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart C4200 All-In-One Driver Software 13.0 Rel. 1-->C:\Program Files (x86)\HP\Digital Imaging\{14BC5667-22B0-4DC4-8205-597053BBDDC9}\setup\hpzscr40.exe -datfile hposcr13.dat -onestop -forcereboot
HP Photosmart Essential 3.5-->C:\Program Files (x86)\HP\Digital Imaging\PhotosmartEssential\hpzscr01.exe -datfile hpqbud13.dat -forcereboot
HP Smart Web Printing 4.51-->C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpzscr01.exe -datfile hpqbud15.dat
HP Solution Center 13.0-->C:\Program Files (x86)\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat -forcereboot
HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4}
HPDiagnosticAlert-->MsiExec.exe /I{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}
Java 7 Update 45-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217040FF}
JMicron JMB36X Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x9 -removeonly
KillProcess 2.43-->C:\Program Files (x86)\KillProcess\uninst.exe
K-Lite Mega Codec Pack 9.1.0-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
Liveupdate4-->"C:\Program Files (x86)\MSI\Live Update 4\unins000.exe"
Logitech Gaming Software 8.40-->C:\Program Files\Logitech Gaming Software\uninstallhlpr.exe /bitness=x64 /silentmode=off /langid=CSY /downgrade=no
Malwarebytes Anti-Malware verze 1.75.0.1300-->"C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe"
Marvell Miniport Driver-->C:\Program Files (x86)\Marvell\Miniport Driver\Uninst.exe
Mesh Runtime-->MsiExec.exe /I{8C6D6116-B724-4810-8F2D-D047E6B7D68E}
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 4 Multi-Targeting Pack-->MsiExec.exe /I{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}
Microsoft .NET Framework 4.5 CSY Language Pack-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\CSY\\Setup.exe /repair /x86 /x64 /lcid 1029
Microsoft .NET Framework 4.5 CSY Language Pack-->MsiExec.exe /X{A4F0DB87-3269-34FE-AFFE-4168FDFA4A22}
Microsoft .NET Framework 4.5-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\\Setup.exe /repair /x86 /x64
Microsoft .NET Framework 4.5-->MsiExec.exe /X{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}
Microsoft Expression Web MUI (English)-->MsiExec.exe /X{90120000-0026-0409-0000-0000000FF1CE}
Microsoft Expression Web Service Pack 1 (SP1)-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {9037FDA8-8383-4B6F-859D-D49C3C625225}
Microsoft Expression Web-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall WEBDESIGNER /dll ESETUP.DLL
Microsoft Expression Web-->MsiExec.exe /X{90120000-0026-0000-0000-0000000FF1CE}
Microsoft Games for Windows Marketplace-->MsiExec.exe /X{4CB0307C-565E-4441-86BE-0DF2E4FB828C}
Microsoft Help Viewer 1.1-->C:\Program Files\Microsoft Help Viewer\v1.0\Microsoft Help Viewer 1.1\install.exe
Microsoft Help Viewer 1.1-->MsiExec.exe /X{E5748D30-7E6D-3A8E-BFE6-C1D02C6DDABB}
Microsoft Chart Controls for Microsoft .NET Framework 3.5-->MsiExec.exe /X{41785C66-90F2-40CE-8CB5-1C94BFC97280}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0116-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0116-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office File Validation Add-In-->MsiExec.exe /I{90140000-2005-0000-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {71F055E8-E2C6-4214-BB3D-BFE03561B89E}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {71F055E8-E2C6-4214-BB3D-BFE03561B89E}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (English) 2007-->MsiExec.exe /X{90120000-002A-0409-1000-0000000FF1CE}
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0116-0409-1000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0026-0409-0000-0000000FF1CE} /uninstall {C00A9857-850C-4C68-A583-2EF4F24706F5}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server 2008 R2 Management Objects-->MsiExec.exe /I{77F1F8AD-51B8-4490-AEEC-BF480073E0FC}
Microsoft SQL Server Compact 3.5 SP2 ENU-->MsiExec.exe /I{3A9FC03D-C685-4831-94CF-4EDFD3749497}
Microsoft SQL Server Compact 3.5 SP2 x64 ENU-->MsiExec.exe /I{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}
Microsoft SQL Server System CLR Types-->MsiExec.exe /I{877B76B2-F83F-4F5A-B28D-3F398641ADB6}
Microsoft Visual Basic PowerPacks 10.0-->MsiExec.exe /I{2D9F8079-7D50-3EFD-B3BD-ED642E4EE756}
Microsoft Visual C# 2010 Express - ENU-->C:\Program Files (x86)\Microsoft Visual Studio 10.0\Microsoft Visual C# 2010 Express - ENU\setup.exe
Microsoft Visual C# 2010 Express - ENU-->MsiExec.exe /X{59F24743-2EA1-3A45-B8C2-6E0E1E078FA8}
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053-->MsiExec.exe /X{B6E3757B-5E77-3915-866A-CCFC4B8D194C}
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175-->MsiExec.exe /X{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570-->MsiExec.exe /X{8338783A-0968-3B85-AFC7-BAAE0A63DC50}
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570-->MsiExec.exe /X{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411-->MsiExec.exe /X{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219-->MsiExec.exe /X{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219-->MsiExec.exe /X{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610-->"C:\ProgramData\Package Cache\{a1909659-0a08-4554-8af1-2175904903a1}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610-->"C:\ProgramData\Package Cache\{95716cce-fc71-413f-8ad5-56c2892d4b3a}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610-->MsiExec.exe /X{764384C5-BCA9-307C-9AAC-FD443662686A}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610-->MsiExec.exe /X{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610-->MsiExec.exe /X{3D6AD258-61EA-35F5-812C-B7A02152996E}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610-->MsiExec.exe /X{E7D4E834-93EB-351F-B8FB-82CDAE623003}
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools-->MsiExec.exe /X{14DD7530-CCD2-3798-B37D-3839ED6A441C}
Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU-->MsiExec.exe /X{BCA26999-EC22-3007-BB79-638913079C9A}
Microsoft Visual Studio 2010 Service Pack 1-->C:\ProgramData\VS\vs10sp1\SetupCache\Setup.exe
Microsoft Visual Studio 2010 Service Pack 1-->MsiExec.exe /X{5AB7D739-1735-3A9E-BE73-C43507CB4E6F}
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->C:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->MsiExec.exe /X{B143BE44-8723-315E-9413-011C55873C0E}
Microsoft XNA Framework Redistributable 3.1-->MsiExec.exe /I{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}
Microsoft XNA Framework Redistributable 4.0-->MsiExec.exe /I{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}
mIRC-->C:\Program Files (x86)\mIRC\uninstall.exe _?=C:\Program Files (x86)\mIRC
Moorhuhn Wanted XXL-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{A116D023-A3BC-4C70-A8B8-9FE77850F0D9}\Setup.exe" -l0x7 DUIM
Mozilla Firefox 25.0.1 (x86 cs)-->"C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe"
MSI Afterburner 2.3.0-->"C:\Program Files (x86)\MSI Afterburner\uninstall.exe"
MSI Kombustor 2.4.2-->"C:\Program Files (x86)\MSI Kombustor 2.4\unins000.exe"
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 4.0 SP3 Parser (KB2721691)-->MsiExec.exe /I{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}
MSXML 4.0 SP3 Parser (KB2758694)-->MsiExec.exe /I{1D95BA90-F4F8-47EC-A882-441C99D30C1E}
MV2Player (remove only)-->C:\Program Files (x86)\Mv2Player\uninst.exe
NEC Electronics USB 3.0 Host Controller Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{D7BF9739-8A68-4335-BBEE-37752AD9E86B}\setup.exe" -runfromtemp -l0x0405 -removeonly
NEC Electronics USB 3.0 Host Controller Driver-->MsiExec.exe /I{D7BF9739-8A68-4335-BBEE-37752AD9E86B}
Need For Speed Rivals-->C:\Program Files (x86)\Need For Speed Rivals\uninstall.exe
NVIDIA GeForce Experience 1.8.1-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{A5FEAFBC-436E-485D-A4F1-7185E1106A4F}\NVI2.DLL",UninstallPackage Display.GFExperience
NVIDIA Ovladač 3D Vision 331.82-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{C70E1B83-9015-451A-828C-9D39E3B3C8F7}\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA Ovladač HD audia 1.3.26.4-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{C70E1B83-9015-451A-828C-9D39E3B3C8F7}\NVI2.DLL",UninstallPackage HDAudio.Driver
NVIDIA Ovladač řídící jednotky 3D Vision 331.82-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{C70E1B83-9015-451A-828C-9D39E3B3C8F7}\NVI2.DLL",UninstallPackage Display.NVIRUSB
NVIDIA Ovladače grafiky 331.82-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{C70E1B83-9015-451A-828C-9D39E3B3C8F7}\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /I{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
NVIDIA Systémový software PhysX 9.13.0725-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{CF160103-B15D-40CB-99BF-CCCD33E14D03}\NVI2.DLL",UninstallPackage Display.PhysX
NVIDIA Virtual Audio 1.2.19-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{A5FEAFBC-436E-485D-A4F1-7185E1106A4F}\NVI2.DLL",UninstallPackage VirtualAudio.Driver
Odsuň bednu-->C:\Program Files (x86)\Alawarhry.cz\Push the box\Uninstall.exe
OpenAL-->"C:\Program Files (x86)\OpenAL\oalinst.exe" /U
Origin-->C:\Program Files (x86)\Origin\OriginUninstall.exe
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení-->MsiExec.exe /I{B6190387-0036-4BEB-8D74-A0AFC5F14706}
Pandora: First Contact version 1.0.2-->"j:\Program Files (x86)\Pandora\unins000.exe"
PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
Plants vs. Zombies-->d:\Program Files (x86)\PopCap Games\Plants vs. Zombies\PopUninstall.exe "d:\Program Files (x86)\PopCap Games\Plants vs. Zombies\Install.log"
PowerISO-->"C:\Program Files (x86)\PowerISO\uninstall.exe"
Prime World Defenders (c) Nival version 1-->"j:\Program Files (x86)\Prime World Defenders\unins000.exe"
Příběhy z království-->C:\Program Files (x86)\Alawarhry.cz\Kingdom Tales\Uninstall.exe
PunkBuster Services-->J:\Program Files (x86)\Battlefield 4\pbsvc.exe -u
QuickTime-->MsiExec.exe /I{C9E14402-3631-4182-B377-6B0DFB1C0339}
Race Driver - GRID 2 1.0.82.5097-->"d:\Hry\Race Driver - GRID 2\unins000.exe"
RealPlayer-->C:\Program Files (x86)\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Royal Defense 3 - Ancient Menace-->"C:\Windows\Royal Defense 3 - Ancient Menace\uninstall.exe" "/U:d:\Program Files (x86)\Royal Defense 3 - Ancient Menace\Uninstall\uninstall.xml"
Scroll Mouse-->C:\Program Files (x86)\Scroll Mouse\Setup.exe /Uninstall
Security Update for 2007 Microsoft Office System (KB2288621)-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {5C497F0B-2061-4CC9-A61C-6B45B867354D}
Security Update for Microsoft .NET Framework 4.5 (KB2737083)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {00909A54-CC11-3F00-9279-3CE090432A91}
Security Update for Microsoft .NET Framework 4.5 (KB2742613)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {36E5C79E-06D3-32C3-9251-D284B9F3F7E7}
Security Update for Microsoft .NET Framework 4.5 (KB2789648)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {698F9EB6-6753-318E-8615-53D77414313F}
Security Update for Microsoft .NET Framework 4.5 (KB2833957)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {9BBF7EC5-5F9A-3D5E-85E5-3EE53A16166E}
Security Update for Microsoft .NET Framework 4.5 (KB2840642v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {4F658047-A12E-38D9-8EA9-D941E4A84B7D}
Security Update for Microsoft .NET Framework 4.5 (KB2861208)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {6AF12FE8-C359-3748-BDF6-B437C0A42154}
Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition -->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {C6997D22-CC93-4ED9-AD8A-02C3F3D2F1F9}
Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition -->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {5DD3FF90-B302-45B2-A188-C5EA7ACD5D46}
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition -->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {D33B9EF5-3801-496A-A2D6-B7F4BE972D75}
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {D33B9EF5-3801-496A-A2D6-B7F4BE972D75}
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition -->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {B145DBBB-7778-4A5D-9D2B-DA6569F02391}
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B145DBBB-7778-4A5D-9D2B-DA6569F02391}
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {E34960DB-2A93-45DB-A208-02650F7AB09C}
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E34960DB-2A93-45DB-A208-02650F7AB09C}
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B7727B4D-5EA3-4C11-9D30-15E47616DCAF}
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {2B3C041A-A7F2-4A24-968D-4BEB6A123D15}
Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EA575F57-C5D1-4B5A-B9F9-F16EEBC6B58C}
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3579CE34-B225-4B19-A3AF-DE5F562A212F}
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition -->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {EF5B5C7F-20CB-4A3A-AC3D-F5DE2C2BFDC7}
Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition -->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {020B65AD-B2ED-4B35-92CA-DB56EFB864A5}
Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {79850906-6D2B-4061-8EAF-EAC84173DEC5}
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition -->msiexec /package {90120000-0026-0409-0000-0000000FF1CE} /uninstall {318439CB-4E76-48A5-AED6-E0D781DD50D8}
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition -->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {318439CB-4E76-48A5-AED6-E0D781DD50D8}
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition -->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {318439CB-4E76-48A5-AED6-E0D781DD50D8}
Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition -->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {CAB47CC0-A98C-47DD-9FA1-C0416EC96ED5}
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8907F32C-DF89-4C2F-AEDE-0DB4B65451C0}
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {319FC809-3841-4739-A25F-FDBADF073697}
Security Update for Microsoft Office 2007 suites (KB2817641) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B7112510-2575-4BA4-A576-78BF8A6307BC}
Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4CCE0378-386F-4DC2-9CC1-A3710C77057D}
Security Update for Microsoft Office 2007 suites (KB2827329) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {81352C19-97CF-4365-8EAE-205BCC9A2DC8}
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6B4A3804-666A-4DD8-84A7-B97701416784}
Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {686630EC-8033-4031-85C5-D8E5CD62A958}
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F311D6C-D8DD-4C32-9457-1A129CABD1A5}
Security Update for Microsoft Office Outlook 2007 (KB2825644) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {12A1DD97-E9A1-4370-837E-D1BBD088584B}
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AEA16A27-0B97-4670-818F-A98D06EC0A6F}
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
Security Update for Microsoft Office Publisher 2007 (KB2597971) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {9D689455-5858-4AE4-A3CA-6E4149FE3F70}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Word 2007 (KB2827330) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {2C57A81A-7534-4DEE-A450-7FBE86F3200D}
Sound Blaster X-Fi MB-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{818690C7-8DA5-4623-BBA8-A73CFBD44077}\setup.exe" -l0x9 /remove
Starbound-->j:\Program Files (x86)\Starbound\Uninstal.exe
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
Subway Surfers-->C:\Program Files (x86)\By Kiloo\Subway Surfers\Uninstall.exe
SUPER STREET FIGHTER IV: ARCADE EDITION-->MsiExec.exe /I{43430FA0-4A2E-404A-B715-951000018101}
TechPowerUp GPU-Z-->"C:\Program Files (x86)\GPU-Z\uninstall.exe"
The KMPlayer (remove only)-->"C:\Program Files (x86)\The KMPlayer\uninstall.exe"
The Splatters-->C:\Program Files (x86)\SpikySnail\The Splatters\Uninstall.exe
The Treasures Of Montezuma 4-->C:\Program Files (x86)\Alawarhry.cz\The Treasures Of Montezuma 4\Uninstall.exe
TimeLeft-->"C:\Program Files (x86)\TimeLeft3\unins000.exe"
Total CMA Pack 0.50-->C:\Program Files (x86)\Total CMA Pack\Uninstall.exe
TurboV EVO-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{491D92A9-69CA-4EB4-81D3-0106F9337957}\Setup.exe" -l0x9
Ubuntu-->F:\ubuntu\uninstall-wubi.exe
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 4.5 (KB2750147)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {BEBBFEB1-EA1C-3479-A39D-23A76BCB7BFC}
Update for Microsoft .NET Framework 4.5 (KB2805221)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {83FD3E08-19A9-3E5F-85EF-C4786CB743B5}
Update for Microsoft .NET Framework 4.5 (KB2805226)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\setup.exe /uninstallpatch {87B3F837-4DE6-35DE-B11D-D21554DD8412}
Update for Microsoft Office 2007 Help for Common Features (KB963673)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
Update for Microsoft Office 2007 Help for Common Features (KB963673)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A024FC7B-77DE-45DE-A058-1C049A17BFB3}
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {620E77C0-CDFE-4C14-AAEB-830ABB65864C}
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {8153EC80-C988-4336-8DAF-6D99C0D26E0C}
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6FAA03BD-2B51-4029-9AD9-64A3B8E3C84C}
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {CB68A5B0-3508-4193-AEB9-AF636DAECE0F}
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {CB68A5B0-3508-4193-AEB9-AF636DAECE0F}
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CB68A5B0-3508-4193-AEB9-AF636DAECE0F}
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}
Update for Microsoft Office 2007 System (KB2539530)-->msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}
Update for Microsoft Office Access 2007 Help (KB963663)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
Update for Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
Update for Microsoft Office Infopath 2007 Help (KB963662)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {716B81B8-B13C-41DF-8EAC-7A2F656CAB63}
Update for Microsoft Office OneNote 2007 Help (KB963670)-->msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2744EF05-38E1-4D5D-B333-E021EDAEA245}
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {ED38F8A3-4F61-494E-8BCA-E3AC7760C924}
Update for Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2850085) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {128A5449-CF71-4DA4-A746-F49E3B5DB584}
Update for Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
Update for Microsoft Office Publisher 2007 Help (KB963667)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
Update for Microsoft Office Script Editor Help (KB963671)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
Update for Microsoft Office Script Editor Help (KB963671)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
Update for Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
Update Manager-->MsiExec.exe /I{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}
VBA-->MsiExec.exe /I{C94E45B0-6AA6-4FB9-9AAE-22085F631880}
VC80CRTRedist - 8.0.50727.6195-->MsiExec.exe /I{933B4015-4618-4716-A828-5289FC03165F}
VDownloader 3.9.1360-->"C:\Program Files\VDownloader\unins000.exe"
VIA Platforma Ovladače zařízení-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU-->MsiExec.exe /X{112C23F2-C036-4D40-BED4-0CB47BF5555C}
VLC media player 2.0.4-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe
Windows 7 USB/DVD Download Tool-->MsiExec.exe /X{CCF298AF-9CE1-4B26-B251-486E98A34789}
Windows Doctor 2.7.6-->"C:\Program Files (x86)\Windows Doctor\unins000.exe"
Windows Live Communications Platform-->MsiExec.exe /I{D45240D3-B6B3-4FF9-B243-54ECE3E10066}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}
Windows Live Fotogalerie-->MsiExec.exe /X{FB79FDB7-4DE1-453D-99FE-9A880F57380E}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{1B8ABA62-74F0-47ED-B18C-A43128E591B8}
Windows Live Installer-->MsiExec.exe /I{0B0F231F-CE6A-483D-AA23-77B364F75917}
Windows Live Language Selector-->MsiExec.exe /I{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}
Windows Live Mesh-->MsiExec.exe /I{80E8C65A-8F70-4585-88A2-ABC54BABD576}
Windows Live Mesh-->MsiExec.exe /I{DECDCB7C-58CC-4865-91AF-627F9798FE48}
Windows Live Movie Maker-->MsiExec.exe /X{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}
Windows Live Movie Maker-->MsiExec.exe /X{92EA4134-10D1-418A-91E1-5A0453131A38}
Windows Live Photo Common-->MsiExec.exe /X{78906B56-0E81-42A7-AC25-F54C946E1538}
Windows Live Photo Common-->MsiExec.exe /X{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
Windows Live Photo Gallery-->MsiExec.exe /X{3336F667-9049-4D46-98B6-4C743EEBC5B1}
Windows Live PIMT Platform-->MsiExec.exe /I{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}
Windows Live Remote Client Resources-->MsiExec.exe /I{3921492E-82D2-4180-8124-E347AD2F2DB4}
Windows Live Remote Client-->MsiExec.exe /I{DF6D988A-EEA0-4277-AAB8-158E086E439B}
Windows Live Remote Service Resources-->MsiExec.exe /I{34384A2A-2CA2-4446-AB0E-1F360BA2AAC5}
Windows Live Remote Service-->MsiExec.exe /I{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}
Windows Live SOXE Definitions-->MsiExec.exe /I{200FEC62-3C34-4D60-9CE8-EC372E01C08F}
Windows Live SOXE-->MsiExec.exe /I{682B3E4F-696A-42DE-A41C-4C07EA1678B4}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{463F67F4-58D0-4C0D-BBC9-D0CC4E56D1B8}
Windows Live UX Platform-->MsiExec.exe /I{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
Windows Live Writer Resources-->MsiExec.exe /X{AB78C965-5C67-409B-8433-D7B5BDB12073}
Windows Live Writer-->MsiExec.exe /X{4264C020-850B-4F08-ACBE-98205D9C336C}
Windows Live Writer-->MsiExec.exe /X{A726AE06-AAA3-43D1-87E3-70F510314F04}
Windows Live Writer-->MsiExec.exe /X{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
WinToFlash Suggestor-->"C:\Program Files (x86)\WinToFlash Suggestor\Uninstall.exe"
World of Goo-->"j:\Program Files (x86)\MyPlayBus.com\World of Goo\unins000.exe"
Worms Clan Wars-->"d:\Program Files (x86)\Worms Clan Wars\unins000.exe"
Xfire (remove only)-->"C:\Program Files (x86)\Xfire\uninst.exe"
Zombie Tycoon 2 Brainhovs Revenge-->"j:\Program Files (x86)\Frima Studio\Zombie Tycoon 2 Brainhovs Revenge\unins000.exe"

======System event log======

Computer Name: EkZiT-PC
Event Code: 51
Message: Na zařízení \Device\Harddisk3\DR3 byla při operaci stránkování rozpoznána chyba.
Record Number: 13389134
Source Name: Disk
Time Written: 20131016082741.024432-000
Event Type: Upozornění
User:

Computer Name: EkZiT-PC
Event Code: 51
Message: Na zařízení \Device\Harddisk3\DR3 byla při operaci stránkování rozpoznána chyba.
Record Number: 13389133
Source Name: Disk
Time Written: 20131016082741.024432-000
Event Type: Upozornění
User:

Computer Name: EkZiT-PC
Event Code: 51
Message: Na zařízení \Device\Harddisk3\DR3 byla při operaci stránkování rozpoznána chyba.
Record Number: 13389132
Source Name: Disk
Time Written: 20131016082741.024432-000
Event Type: Upozornění
User:

Computer Name: EkZiT-PC
Event Code: 51
Message: Na zařízení \Device\Harddisk3\DR3 byla při operaci stránkování rozpoznána chyba.
Record Number: 13389131
Source Name: Disk
Time Written: 20131016082741.024432-000
Event Type: Upozornění
User:

Computer Name: EkZiT-PC
Event Code: 51
Message: Na zařízení \Device\Harddisk3\DR3 byla při operaci stránkování rozpoznána chyba.
Record Number: 13389130
Source Name: Disk
Time Written: 20131016082741.023432-000
Event Type: Upozornění
User:

=====Application event log=====

Computer Name: EkZiT-PC
Event Code: 1001
Message: Chybný blok 2563037865, typ 1
Název události: APPCRASH
Reakce: Není k dispozici
ID souboru CAB: 0

Podpis problému:
P1: hl2.exe
P2: 0.0.0.0
P3: 4d094ebe
P4: QuickTime.qts
P5: 7.70.80.34
P6: 4e13ba08
P7: c0000005
P8: 0001ae14
P9:
P10:

Připojené soubory:
C:\Users\EkZiT\AppData\Local\Temp\WER26DE.tmp.WERInternalMetadata.xml

Tyto soubory mohou být k dispozici zde:
C:\Users\EkZiT\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_hl2.exe_244aa79b0f148ada4431ff74244e046e1e4f5_0fa2470a

Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 653deaf3-fc7c-11e1-8e95-485b393e1d66
Stav hlášení: 0
Record Number: 58632
Source Name: Windows Error Reporting
Time Written: 20120912015150.000000-000
Event Type: Informace
User:

Computer Name: EkZiT-PC
Event Code: 1000
Message: Název chybující aplikace: hl2.exe, verze: 0.0.0.0, časové razítko: 0x4d094ebe
Název chybujícího modulu: QuickTime.qts, verze: 7.70.80.34, časové razítko: 0x4e13ba08
Kód výjimky: 0xc0000005
Posun chyby: 0x0001ae14
ID chybujícího procesu: 0x15cc
Čas spuštění chybující aplikace: 0x01cd908913e06ffb
Cesta k chybující aplikaci: D:\css\hl2.exe
Cesta k chybujícímu modulu: C:\Program Files (x86)\QuickTime\QTSystem\QuickTime.qts
ID zprávy: 653deaf3-fc7c-11e1-8e95-485b393e1d66
Record Number: 58631
Source Name: Application Error
Time Written: 20120912015141.000000-000
Event Type: Chyba
User:

Computer Name: EkZiT-PC
Event Code: 902
Message: Služba Ochrana softwaru byla spuštěna.
6.1.7601.17514
Record Number: 58630
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20120912014911.000000-000
Event Type: Informace
User:

Computer Name: EkZiT-PC
Event Code: 1003
Message: Služba Ochrana softwaru dokončila kontrolu stavu licencování.
ID aplikace=55c92734-d682-4d71-983e-d6ec3f16059f
Stav licencování=
1: 01f5fc37-a99e-45c5-b65e-d762f3518ead, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 2e7d060d-4714-40f2-9896-1e4f15b612ad, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
3: 3b965dfc-31d9-4903-886f-873a0382776c, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 586bc076-c93d-429a-afe5-a69fbc644e88, 1, 1 [(0 [0x00000000, 1, 0], [(?)(?)( 1 0x00000000 3 0 msft:rm/algorithm/hwid/4.0 0x00000000 0)(?)(?)(?)])(1 )(2 )]
5: 5e017a8a-f3f9-4167-b1bd-ba3e236a4d8f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
6: 5e35dc43-389b-47c5-b889-2088b06738cb, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: 6a7d5d8a-92af-4e6a-af4b-8fddaec800e5, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: 9ab82e0c-ffc9-4107-baa1-c65a8bd3ccc3, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: 9f83d90f-a151-4665-ae69-30b3f63ec659, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: a63275f4-530c-48a7-b0d3-4f00d688d151, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: b8a4bb91-69b1-460d-93f8-40e0670af04a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: d2c04e90-c3dd-4260-b0f3-f845f5d27d64, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
13: e68b141f-4dfa-4387-b3b7-e65c4889216e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
14: ee4e1629-bcdc-4b42-a68f-b92e135f78d7, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
15: 4a8149bb-7d61-49f4-8822-82c7bf88d64b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
16: afd5f68f-b70f-4000-a21d-28dbc8be8b07, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]


Record Number: 58629
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20120912014911.000000-000
Event Type: Informace
User:

Computer Name: EkZiT-PC
Event Code: 1066
Message: Inicializační stav pro objekty služby
C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/2005, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/licenserenewal/1.0, 0x00000000, 0x00000000

Record Number: 58628
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20120912014911.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: EkZiT-PC
Event Code: 5058
Message: Operace se souborem klíče.

Předmět:
ID zabezpečení: S-1-5-21-28354313-2184747063-3306077547-1000
Název účtu: EkZiT
Doména účtu: EkZiT-PC
ID přihlášení: 0x4412d

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: Není k dispozici.
Název klíče: CertContainer
Typ klíče: Klíč počítače

Informace o operaci se souborem klíče:
Cesta k souboru: C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ab603ab15b202d8d2891a35c748137a0_94cc5f21-49cc-4df3-be93-7fcf9d8557f6
Operace: Čtení trvalého klíče ze souboru
Návratový kód: 0x0
Record Number: 131254
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130914115742.867419-000
Event Type: Úspěšný audit
User:

Computer Name: EkZiT-PC
Event Code: 5061
Message: Kryptografická operace.

Předmět:
ID zabezpečení: S-1-5-21-28354313-2184747063-3306077547-1000
Název účtu: EkZiT
Doména účtu: EkZiT-PC
ID přihlášení: 0x4412d

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: RSA
Název klíče: CertContainer
Typ klíče: Klíč počítače

Kryptografická operace:
Operace: Otevřít klíč
Návratový kód: 0x0
Record Number: 131253
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130914115742.862418-000
Event Type: Úspěšný audit
User:

Computer Name: EkZiT-PC
Event Code: 5058
Message: Operace se souborem klíče.

Předmět:
ID zabezpečení: S-1-5-21-28354313-2184747063-3306077547-1000
Název účtu: EkZiT
Doména účtu: EkZiT-PC
ID přihlášení: 0x4412d

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: Není k dispozici.
Název klíče: CertContainer
Typ klíče: Klíč počítače

Informace o operaci se souborem klíče:
Cesta k souboru: C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ab603ab15b202d8d2891a35c748137a0_94cc5f21-49cc-4df3-be93-7fcf9d8557f6
Operace: Čtení trvalého klíče ze souboru
Návratový kód: 0x0
Record Number: 131252
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130914115742.862418-000
Event Type: Úspěšný audit
User:

Computer Name: EkZiT-PC
Event Code: 5061
Message: Kryptografická operace.

Předmět:
ID zabezpečení: S-1-5-21-28354313-2184747063-3306077547-1000
Název účtu: EkZiT
Doména účtu: EkZiT-PC
ID přihlášení: 0x4412d

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: RSA
Název klíče: CertContainer
Typ klíče: Klíč počítače

Kryptografická operace:
Operace: Otevřít klíč
Návratový kód: 0x0
Record Number: 131251
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130914115742.227382-000
Event Type: Úspěšný audit
User:

Computer Name: EkZiT-PC
Event Code: 5058
Message: Operace se souborem klíče.

Předmět:
ID zabezpečení: S-1-5-21-28354313-2184747063-3306077547-1000
Název účtu: EkZiT
Doména účtu: EkZiT-PC
ID přihlášení: 0x4412d

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: Není k dispozici.
Název klíče: CertContainer
Typ klíče: Klíč počítače

Informace o operaci se souborem klíče:
Cesta k souboru: C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ab603ab15b202d8d2891a35c748137a0_94cc5f21-49cc-4df3-be93-7fcf9d8557f6
Operace: Čtení trvalého klíče ze souboru
Návratový kód: 0x0
Record Number: 131250
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130914115742.227382-000
Event Type: Úspěšný audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\QuickTime\QTSystem;C:\Program Files\VDownloader
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=16
"PROCESSOR_IDENTIFIER"=AMD64 Family 16 Model 4 Stepping 3, AuthenticAMD
"PROCESSOR_REVISION"=0403
"sourcesdk"=D:\SourceSDK
"VProject"=D:\cs\cstrike
"CLASSPATH"=.;C:\Program Files (x86)\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files (x86)\Java\jre6\lib\ext\QTJava.zip

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: win7 zamrzne u startu / PUP.Dealply.malware

#21 Příspěvek od vyosek »

:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe
  • Pokud pouzivate Win Vista ci W7, kliknete na OTM pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do leveho okna Paste Instructions for Items to be Moved (pod zlutou caru) vlozte obsah, ktery mate nize
  • Kód: Vybrat vše

    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "Nvtmru"=-
    "NvBackend"=-
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe_ID0EYTHM]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bpk]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Freecorder FLV Service]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tlbHost]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Total CMA Pack]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VC10Player]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VDownloader]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SketchBook Snapshot.lnk]
    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
    "GrooveMonitor"=-
    
    :files
    C:\Windows\tasks\Adobe Flash Player Updater.job
    C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-28354313-2184747063-3306077547-1000Core.job
    C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-28354313-2184747063-3306077547-1000UA.job
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
    [EMPTYJAVA]
  • Kliknete na cervene tlacitko MoveIt!
  • Budete vyzvani na restart, dejte Yes, log pote najdete C:\_OTM\MovedFiles, obsah sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

EkZiT
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 18 lis 2012 22:24

Re: win7 zamrzne u startu / PUP.Dealply.malware

#22 Příspěvek od EkZiT »

omlouvam se za zpozdeni
Přílohy
MovedFiles.7z
(220 bajtů) Staženo 38 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: win7 zamrzne u startu / PUP.Dealply.malware

#23 Příspěvek od vyosek »

Jak se chova PC?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

EkZiT
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 18 lis 2012 22:24

Re: win7 zamrzne u startu / PUP.Dealply.malware

#24 Příspěvek od EkZiT »

mno jak kdy, nekdy mi u nekterych .exe souboru vyskoci tabulka ze pro pristup nemam dostatecne opravneni ! a dalsi den to uz treba otevrit jde. to mi udelal i ten OTM.exe . az po 2 dnech se spustil, a pritom jsem administrator a jiny ucet krome guesta nemam :?:

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: win7 zamrzne u startu / PUP.Dealply.malware

#25 Příspěvek od vyosek »

To uz vypada spise na naboreny system :?:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět