
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Samovolné vyskakování reklam v prohlížeči
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Samovolné vyskakování reklam v prohlížeči
Zdravíčko,
posledních pár dní se trápím s jedním problémem.
V jakémkoliv internetovém prohlížeči (i ve STEAM prohlížeči) se při načtení některých stránek (i tohoto komunitního fóra) objevují reklamy. Nelze říci, kdy přesně a v jákém intervalu, ale není to opravdu nic příjemného.
Za odpověď předem děkuji.
Zde házím 2 měsíční RSIT LOG:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Zobasek at 2014-03-07 14:27:46
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 170 GB (18%) free of 954 GB
Total RAM: 4043 MB (42% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:27:51, on 7.3.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16518)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\4.3.0.20\LightShot.exe
C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\MSI\Live Update 5\LU5.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Zobasek\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritDesktop.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Zobasek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?ptr=100&crg=3. ... D111051A1C}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?ptr=100&crg=3. ... D111051A1C}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=http://127.0.0.1:9880
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: continuetosayvie - {7BAFFAC6-C9DC-02B1-059E-5ACFA5309B01} - C:\ProgramData\continuetosayvie\51814e8e0dc24.dll (file missing)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - mscoree.dll (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O4 - HKLM\..\Run: [Live Update 5] C:\Program Files (x86)\MSI\Live Update 5\LU5.exe /reminder
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKCU\..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [LightShot] C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
O4 - HKCU\..\Run: [SpeedUpMyComputer] C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as
O4 - HKCU\..\Run: [Google Update] "C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
O4 - HKCU\..\Run: [Battle.net] "C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe" --autostarted
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Registrace .lnk = Zobasek\Downloads\NHL 09\Support\EAregister.exe
O8 - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3
O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: New Note - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\gssupp~1\assist~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PirritDesktop - Unknown owner - C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritService.exe
O23 - Service: PirritUpdater - Unknown owner - C:\Program Files (x86)\Pirrit\AutoUpdater.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Unknown owner - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Soluto Launcher Service (SolutoLauncherService) - Soluto - C:\Program Files\Soluto\SolutoLauncherService.exe
O23 - Service: Soluto Remote Service (SolutoRemoteService) - GlavSoft LLC. - C:\Program Files\Soluto\SolutoRemoteService.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WinRST - Unknown owner - C:\Program Files (x86)\WinRST\WinRST.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13717 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Windows\system32\rundll32.exe" "c:\progra~2\gssupp~1\AssistantSvc.dll",service
"C:\Windows\system32\rundll32.exe" "c:\progra~2\gssupp~1\AssistantSvc.dll",service
atieclxx
C:\Windows\system32\IProsetMonitor.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"c:\program files\soluto\soluto.exe" /userinit
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritService.exe
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\Program Files (x86)\Pirrit\AutoUpdater.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Soluto\SolutoLauncherService.exe"
"C:\Program Files\Soluto\SolutoService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files (x86)\WinRST\WinRST.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\4.3.0.20\LightShot.exe" Flags: uninsdeletevalue
"C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\MSI\Live Update 5\LU5.exe" /reminder
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Users\Zobasek\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe"
C:/Users/Zobasek/AppData/Local/PirritSuggestor\PirritDesktop.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4532.0.1885798101\1717699921" --disable-image-transport-surface --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,13,23 --gpu-vendor-id=0x1002 --gpu-device-id=0x6819 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.150.100.1000 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.1.1988515872\651866594" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.2.1952961230\929416822" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.3.394991575\141702991" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.5.435800874\124174255" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.6.1112117663\30542056" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.8.1739451615\1760301017" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.9.629189518\2059993149" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.10.1916534850\2051274131" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4532.11.1124756726\1974358627" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.12.977781162\1425333761" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.13.2009756175\142812059" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.14.947293406\1865194383" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.16.402056173\2084095247" /prefetch:673131151
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.23.848381688\510510546" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.24.1750893412\1194943156" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.25.726489054\729472501" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.29.1866836711\561420407" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.31.1290511439\719561685" /prefetch:673131151
"C:\Users\Zobasek\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore1cef200c01a3b38.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-969319244-3774007177-1369147609-1000Core1cef0ac9fd05ed3.job
C:\Windows\tasks\GS.Enabler-S-926685765.job
C:\Windows\tasks\MSIAfterburner.job
C:\Windows\tasks\RunOW.job
C:\Windows\tasks\update-S-1-5-21-969319244-3774007177-1369147609-1000.job
C:\Windows\tasks\update-sys.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Zobasek\AppData\Roaming\Mozilla\Firefox\Profiles\w4d8af2j.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.70 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.7]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.70 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\Zobasek\AppData\Roaming\Mozilla\Firefox\Profiles\w4d8af2j.default\extensions\
0402d750-8010-4204-b167-01e83cb6f12d@694f8c69-18e7-4a97-8e6d-448c10f4a0ff.com
https-everywhere@eff.org
staged
C:\Users\Zobasek\AppData\Roaming\Mozilla\Firefox\Profiles\w4d8af2j.default\searchplugins\
MyStart Search.xml
SweetIM Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901134}]
FTdownloader V7.0 - C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-bho64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-07-12 6308736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BC9F3B56-8A2D-42E9-74C0-C0A733EAA3B4}]
RemoveTheAdApp - C:\ProgramData\RemoveTheAdApp\vjXH2.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EAF13DCD-7B84-F2E0-B32E-ED3DB2525EC6}]
greatsaver - C:\Program Files (x86)\greatsaver\Y6X.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2012-11-06 183112]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BAFFAC6-C9DC-02B1-059E-5ACFA5309B01}]
continuetosayvie - C:\ProgramData\continuetosayvie\51814e8e0dc24.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2013-05-08 587104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-07-12 4532096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d40c654d-7c51-4eb3-95b2-1e23905c2a2d}]
IEExtension.Extension - C:\Windows\system32\mscoree.dll [2010-11-05 444752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7473b6bd-4691-4744-a82b-7854eb3d70b6} - uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2012-11-06 183112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-04-24 12480616]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EA Core"=C:\Program Files (x86)\Electronic Arts\EADM\Core.exe -silent []
"RGSC"=C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2008-11-14 305064]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"LightShot"=C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\LightShot.exe [2013-05-27 226592]
"SpeedUpMyComputer"=C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as []
"Google Update"=C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-13 116648]
"Overwolf"=C:\Program Files (x86)\Overwolf\Overwolf.exe -silent []
"Battle.net"=C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe [2014-02-12 2561072]
"uTorrent"=C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe [2014-02-10 905296]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Live Update 5"=C:\Program Files (x86)\MSI\Live Update 5\LU5.exe [2011-11-22 1935888]
"amd_dc_opt"=C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2013-02-15 601976]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-12-19 642808]
"Driver Genius"= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
C:\Users\Zobasek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Registrace .lnk - C:\Users\Zobasek\Downloads\NHL 09\Support\EAregister.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~3\Wincert\WIN64C~1.DLL C:\PROGRA~2\GSSUPP~1\ASSIST~2.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.txt - open - "C:\Program Files (x86)\PSPad editor\PSPad.exe" "%1"
======List of files/folders created in the last 2 months======
2014-03-07 14:27:47 ----D---- C:\Program Files\trend micro
2014-03-07 14:27:46 ----D---- C:\rsit
2014-03-05 16:53:10 ----D---- C:\ProgramData\CODEX
2014-03-05 16:39:34 ----D---- C:\Program Files (x86)\The Walking Dead Season 2 EP 2
2014-03-03 07:30:04 ----D---- C:\Users\Zobasek\AppData\Roaming\FlvtoConverter
2014-03-03 07:29:18 ----D---- C:\Program Files (x86)\WinRST
2014-03-03 07:29:11 ----D---- C:\Users\Zobasek\AppData\Roaming\Pirrit
2014-03-03 07:29:09 ----D---- C:\Program Files (x86)\Pirrit
2014-02-26 14:09:05 ----D---- C:\Windows\Migration
2014-02-26 14:04:52 ----D---- C:\82613d55c1f366f8655d5a
2014-02-23 17:16:42 ----RA---- C:\Windows\SYSWOW64\tmpEE68.tmp
2014-02-23 17:16:23 ----D---- C:\Program Files (x86)\GameShadow
2014-02-23 17:11:12 ----D---- C:\Program Files (x86)\Eidos
2014-02-19 15:59:28 ----D---- C:\hry
2014-02-18 17:43:54 ----D---- C:\Program Files (x86)\EA Sports
2014-02-18 17:35:48 ----D---- C:\Users\Zobasek\AppData\Roaming\Leadertech
2014-02-17 21:12:51 ----D---- C:\Users\Zobasek\AppData\Roaming\Malwarebytes
2014-02-17 21:12:39 ----D---- C:\ProgramData\Malwarebytes
2014-02-17 21:12:38 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-17 21:12:38 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-02-17 18:42:55 ----RSH---- C:\Users\Zobasek\AppData\Roaming\zlib1.dll
2014-02-17 18:42:51 ----RSH---- C:\Users\Zobasek\AppData\Roaming\pthreadVC2.dll
2014-02-17 18:42:50 ----RSH---- C:\Users\Zobasek\AppData\Roaming\pthreadGC2.dll
2014-02-17 18:42:23 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcr100d.dll
2014-02-17 18:42:18 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcr100.dll
2014-02-17 18:42:14 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcp100d.dll
2014-02-17 18:42:12 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcp100.dll
2014-02-17 18:42:09 ----RSH---- C:\Users\Zobasek\AppData\Roaming\cudart32_55.dll
2014-02-17 18:42:05 ----RSH---- C:\Users\Zobasek\AppData\Roaming\cudart32_50_35.dll
2014-02-14 03:01:42 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-02-14 03:01:42 ----A---- C:\Windows\system32\vbscript.dll
2014-02-14 03:00:48 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-02-14 03:00:48 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-02-14 03:00:48 ----A---- C:\Windows\system32\msrating.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\ieui.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\iernonce.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\ie4uinit.exe
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\msfeeds.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\jsproxy.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\ieUnatt.exe
2014-02-14 03:00:46 ----A---- C:\Windows\system32\iesetup.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-02-14 03:00:45 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-02-14 03:00:45 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-02-14 03:00:45 ----A---- C:\Windows\system32\mshtml.dll
2014-02-14 03:00:45 ----A---- C:\Windows\system32\jscript9diag.dll
2014-02-14 03:00:45 ----A---- C:\Windows\system32\ieapfltr.dll
2014-02-14 03:00:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-02-14 03:00:44 ----A---- C:\Windows\system32\iertutil.dll
2014-02-14 03:00:43 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-02-14 03:00:43 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-02-14 03:00:43 ----A---- C:\Windows\system32\wininet.dll
2014-02-14 03:00:43 ----A---- C:\Windows\system32\urlmon.dll
2014-02-14 03:00:42 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-02-14 03:00:42 ----A---- C:\Windows\system32\ieframe.dll
2014-02-14 03:00:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-02-14 03:00:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-02-14 03:00:41 ----A---- C:\Windows\system32\jscript9.dll
2014-02-13 16:02:51 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-02-13 16:02:51 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-02-13 16:02:51 ----A---- C:\Windows\system32\msxml3r.dll
2014-02-13 16:02:51 ----A---- C:\Windows\system32\msxml3.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\msdrm.dll
2014-02-13 16:02:43 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-02-13 16:02:43 ----A---- C:\Windows\system32\d3d10warp.dll
2014-02-13 16:02:43 ----A---- C:\Windows\system32\d2d1.dll
2014-02-13 16:02:42 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-02-08 14:37:44 ----A---- C:\Windows\system32\drivers\TotRec8.sys
2014-02-05 21:45:25 ----D---- C:\Games
2014-02-04 15:33:05 ----D---- C:\Windows\SYSWOW64\jmdp
2014-02-04 15:33:05 ----D---- C:\Windows\system32\ljkb
2014-01-31 03:02:38 ----D---- C:\ProgramData\RemoveTheAdApp
2014-01-31 03:02:35 ----D---- C:\ProgramData\akbbjifnggmcnfpbphhmcfljaadhkooa
2014-01-29 15:15:07 ----D---- C:\Users\Zobasek\AppData\Roaming\SPORE
2014-01-20 00:42:26 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-01-20 00:42:23 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-01-20 00:42:23 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-01-20 00:42:23 ----A---- C:\Windows\SYSWOW64\java.exe
2014-01-16 22:49:55 ----D---- C:\Program Files (x86)\Mobogenie
2014-01-16 22:32:36 ----D---- C:\Program Files (x86)\Dishonored
2014-01-15 14:45:44 ----A---- C:\Windows\system32\win32k.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-01-15 14:45:43 ----A---- C:\Windows\system32\drivers\netio.sys
2014-01-12 01:51:55 ----D---- C:\ProgramData\SoftWarehouse
2014-01-12 01:51:47 ----D---- C:\Program Files (x86)\GS Supporter
2014-01-12 01:51:39 ----D---- C:\ProgramData\e7d26fbd8110977c
2014-01-08 11:40:52 ----D---- C:\Program Files (x86)\WTFast
2014-01-08 11:40:52 ----A---- C:\Windows\SYSWOW64\SPORDER.DLL
======List of files/folders modified in the last 2 months======
2014-03-07 14:27:52 ----D---- C:\Users\Zobasek\AppData\Roaming\uTorrent
2014-03-07 14:27:48 ----D---- C:\Windows\Temp
2014-03-07 14:27:47 ----RD---- C:\Program Files
2014-03-07 14:13:42 ----D---- C:\Windows\system32\config
2014-03-07 06:43:36 ----D---- C:\ProgramData\PMB Files
2014-03-07 06:41:38 ----D---- C:\Program Files (x86)\Steam
2014-03-06 15:39:22 ----D---- C:\Program Files (x86)\Battle.net
2014-03-05 16:53:10 ----HD---- C:\ProgramData
2014-03-05 16:39:34 ----RD---- C:\Program Files (x86)
2014-03-05 15:15:20 ----D---- C:\Windows\inf
2014-03-05 11:47:49 ----D---- C:\Windows\system32\drivers
2014-03-04 15:35:49 ----SD---- C:\System Volume Information
2014-03-03 22:26:04 ----SHD---- C:\Windows\Installer
2014-03-03 22:26:03 ----D---- C:\ProgramData\continuetosayvie
2014-03-03 22:26:03 ----D---- C:\Program Files\WinRAR
2014-03-03 22:26:03 ----D---- C:\Program Files (x86)\ESET Smart Security 6 Licencia Navdy
2014-03-03 19:45:31 ----D---- C:\Users\Zobasek\AppData\Roaming\Skype
2014-03-03 15:43:03 ----D---- C:\Windows\SYSWOW64\WNLT
2014-03-03 15:43:02 ----D---- C:\Program Files (x86)\SweetIM
2014-03-03 15:43:00 ----D---- C:\Program Files (x86)\Movies Toolbar
2014-03-03 15:42:58 ----D---- C:\ProgramData\InstallMate
2014-03-03 15:42:58 ----D---- C:\ProgramData\BetterSoft
2014-03-03 15:42:52 ----D---- C:\Windows\Tasks
2014-03-03 15:42:52 ----D---- C:\ProgramData\Wincert
2014-02-28 20:21:22 ----D---- C:\Windows\Microsoft.NET
2014-02-28 19:46:45 ----SD---- C:\Config.Msi
2014-02-28 08:53:24 ----D---- C:\Windows\SysWOW64
2014-02-28 08:53:24 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-02-28 08:53:09 ----D---- C:\Windows\System32
2014-02-28 08:53:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-02-26 15:54:49 ----D---- C:\Users\Zobasek\AppData\Roaming\.minecraft
2014-02-26 14:09:53 ----D---- C:\Windows\SYSWOW64\en-US
2014-02-26 14:09:53 ----D---- C:\Windows\system32\en-US
2014-02-26 14:09:05 ----SD---- C:\ProgramData\Microsoft
2014-02-26 14:09:05 ----D---- C:\Windows
2014-02-26 14:04:36 ----D---- C:\Windows\system32\catroot2
2014-02-25 18:36:30 ----D---- C:\Users\Zobasek\AppData\Roaming\Audacity
2014-02-24 19:53:28 ----D---- C:\Windows\system32\NDF
2014-02-20 19:33:37 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-02-19 16:10:06 ----RSD---- C:\Windows\assembly
2014-02-17 03:00:44 ----D---- C:\Windows\system32\MRT
2014-02-17 03:00:42 ----A---- C:\Windows\system32\MRT.exe
2014-02-15 14:19:55 ----D---- C:\Users\Zobasek\AppData\Roaming\TotalRecorder
2014-02-14 21:44:51 ----D---- C:\Users\Zobasek\AppData\Roaming\TeamViewer
2014-02-14 21:44:24 ----RSD---- C:\Windows\Fonts
2014-02-14 21:44:16 ----D---- C:\Program Files (x86)\TeamViewer
2014-02-14 03:27:17 ----D---- C:\Windows\winsxs
2014-02-14 03:25:22 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-02-14 03:25:22 ----D---- C:\Windows\system32\cs-CZ
2014-02-14 03:25:21 ----D---- C:\Program Files\Internet Explorer
2014-02-14 03:25:21 ----D---- C:\Program Files (x86)\Internet Explorer
2014-02-14 03:05:42 ----D---- C:\Windows\system32\catroot
2014-02-11 18:37:46 ----D---- C:\Windows\system32\drivers\UMDF
2014-02-11 18:35:47 ----D---- C:\Windows\system32\DriverStore
2014-02-04 15:32:42 ----D---- C:\Windows\SYSWOW64\ARFC
2014-02-04 10:28:20 ----A---- C:\Windows\system32\dmwu.exe
2014-02-04 10:23:42 ----A---- C:\Windows\system32\ImHttpComm.dll
2014-02-03 16:11:59 ----D---- C:\ProgramData\Origin
2014-02-03 16:09:27 ----D---- C:\Program Files (x86)\Origin
2014-02-02 21:23:30 ----D---- C:\Windows\Prefetch
2014-01-31 03:02:37 ----HD---- C:\Windows\system32\GroupPolicy
2014-01-31 03:02:37 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-01-29 15:09:30 ----D---- C:\Program Files (x86)\Electronic Arts
2014-01-29 15:07:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-01-28 23:41:44 ----D---- C:\Program Files (x86)\ArmA 2
2014-01-26 12:48:08 ----D---- C:\Users\Zobasek\AppData\Roaming\Mozilla
2014-01-20 00:42:41 ----D---- C:\ProgramData\Oracle
2014-01-20 00:42:23 ----D---- C:\Program Files (x86)\Java
2014-01-18 12:06:03 ----D---- C:\Program Files (x86)\Saints Row IV
2014-01-18 12:05:19 ----D---- C:\Program Files (x86)\MSI Afterburner
2014-01-18 12:03:17 ----D---- C:\Windows\SYSWOW64\directx
2014-01-18 12:03:12 ----HD---- C:\Windows\msdownld.tmp
2014-01-18 05:36:03 ----D---- C:\Program Files (x86)\Hearthstone
2014-01-14 16:40:58 ----D---- C:\Program Files (x86)\Assassins Creed 4 Black Flag
2014-01-12 01:51:37 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MxEFUF;Matrox Extio Upper Function Filter; C:\Windows\system32\DRIVERS\MxEFUF64.sys [2011-10-20 157696]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 Soluto;Soluto; C:\Windows\system32\DRIVERS\Soluto.sys [2013-07-10 54728]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-05-31 283200]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [2010-01-29 115600]
R2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2013-02-15 71032]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-07-17 12514816]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-07-17 617472]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-11-06 96256]
R3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-04-24 4028520]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-10-16 791608]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-05-21 99800]
R3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [2010-05-10 33592]
R3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [2010-10-22 14136]
R3 RTLE8023x64;Realtek 10/100/1000 PCI-E NIC Family NDIS XP(x64) Driver; C:\Windows\system32\DRIVERS\Rtenic64.sys [2013-08-03 509144]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2012-10-18 44344]
R3 TotRec8;Total Recorder WDM audio filter driver; \??\C:\Windows\system32\drivers\TotRec8.sys [2013-10-16 125640]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme Edition\kerneld.x64 [2013-01-28 30624]
S3 ATICDSDr;ATICDSDr; \??\C:\Users\Zobasek\AppData\Local\Temp\ATICDSDr.sys []
S3 cpuz135;cpuz135; \??\C:\Users\Zobasek\AppData\Local\Temp\cpuz135\cpuz135_x64.sys []
S3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R); C:\Windows\system32\DRIVERS\e1y60x64.sys [2009-06-10 281088]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [2010-03-31 26752]
S3 FEIExpress;Intel(R) 10/100 Network Connection Driver; C:\Windows\system32\DRIVERS\fei62x64.sys [2009-10-02 187392]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 InputFilter_Hid_FlexDef2b;Siliten HID Devices(FlexDef2b) Driver Service; C:\Windows\system32\DRIVERS\InputFilter_FlexDef2b.sys [2010-06-18 17920]
S3 MSICDSetup;MSICDSetup; \??\D:\CDriver64.sys []
S3 netvsc;netvsc; C:\Windows\system32\drivers\netvsc60.sys [2010-11-20 168448]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-07-23 52736]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-12-27 805088]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 vcd10bus;Virtual CD v10 Bus Enumerator; C:\Windows\system32\DRIVERS\vcd10bus.sys [2008-06-17 40464]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUSB;Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-07-17 239616]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2013-02-15 384888]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 e9f32388;GS Supporter; C:\Windows\syswow64\rundll32.exe [2009-07-14 44544]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2012-09-06 170824]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 PirritDesktop;PirritDesktop; C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritService.exe [2014-02-20 52568]
R2 PirritUpdater;PirritUpdater; C:\Program Files (x86)\Pirrit\AutoUpdater.exe [2014-02-20 59904]
R2 SolutoLauncherService;Soluto Launcher Service; C:\Program Files\Soluto\SolutoLauncherService.exe [2013-07-10 182848]
R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2013-07-10 792128]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-02-05 4915040]
R2 WinRST;WinRST; C:\Program Files (x86)\WinRST\WinRST.exe [2014-02-26 59904]
R3 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-12-27 76888]
S2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2013-02-15 393080]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-01 116648]
S2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-07-12 3289472]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-20 257928]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2013-11-22 49152]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-01 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-02-06 111616]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SolutoRemoteService;Soluto Remote Service; C:\Program Files\Soluto\SolutoRemoteService.exe [2013-07-10 1942528]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-03-05 568512]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-02-16 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
posledních pár dní se trápím s jedním problémem.
V jakémkoliv internetovém prohlížeči (i ve STEAM prohlížeči) se při načtení některých stránek (i tohoto komunitního fóra) objevují reklamy. Nelze říci, kdy přesně a v jákém intervalu, ale není to opravdu nic příjemného.
Za odpověď předem děkuji.
Zde házím 2 měsíční RSIT LOG:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Zobasek at 2014-03-07 14:27:46
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 170 GB (18%) free of 954 GB
Total RAM: 4043 MB (42% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:27:51, on 7.3.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16518)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\4.3.0.20\LightShot.exe
C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\MSI\Live Update 5\LU5.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Zobasek\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritDesktop.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Zobasek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?ptr=100&crg=3. ... D111051A1C}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?ptr=100&crg=3. ... D111051A1C}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=http://127.0.0.1:9880
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: continuetosayvie - {7BAFFAC6-C9DC-02B1-059E-5ACFA5309B01} - C:\ProgramData\continuetosayvie\51814e8e0dc24.dll (file missing)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - mscoree.dll (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
O4 - HKLM\..\Run: [Live Update 5] C:\Program Files (x86)\MSI\Live Update 5\LU5.exe /reminder
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKCU\..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [LightShot] C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue
O4 - HKCU\..\Run: [SpeedUpMyComputer] C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as
O4 - HKCU\..\Run: [Google Update] "C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
O4 - HKCU\..\Run: [Battle.net] "C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe" --autostarted
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Registrace .lnk = Zobasek\Downloads\NHL 09\Support\EAregister.exe
O8 - Extra context menu item: Clip Image - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: Clip selection - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3
O8 - Extra context menu item: Clip this page - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: Clip URL - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: New Note - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\gssupp~1\assist~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PirritDesktop - Unknown owner - C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritService.exe
O23 - Service: PirritUpdater - Unknown owner - C:\Program Files (x86)\Pirrit\AutoUpdater.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Unknown owner - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Soluto Launcher Service (SolutoLauncherService) - Soluto - C:\Program Files\Soluto\SolutoLauncherService.exe
O23 - Service: Soluto Remote Service (SolutoRemoteService) - GlavSoft LLC. - C:\Program Files\Soluto\SolutoRemoteService.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WinRST - Unknown owner - C:\Program Files (x86)\WinRST\WinRST.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13717 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Windows\system32\rundll32.exe" "c:\progra~2\gssupp~1\AssistantSvc.dll",service
"C:\Windows\system32\rundll32.exe" "c:\progra~2\gssupp~1\AssistantSvc.dll",service
atieclxx
C:\Windows\system32\IProsetMonitor.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"c:\program files\soluto\soluto.exe" /userinit
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritService.exe
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\Program Files (x86)\Pirrit\AutoUpdater.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Soluto\SolutoLauncherService.exe"
"C:\Program Files\Soluto\SolutoService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files (x86)\WinRST\WinRST.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\4.3.0.20\LightShot.exe" Flags: uninsdeletevalue
"C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\MSI\Live Update 5\LU5.exe" /reminder
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Users\Zobasek\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe"
C:/Users/Zobasek/AppData/Local/PirritSuggestor\PirritDesktop.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4532.0.1885798101\1717699921" --disable-image-transport-surface --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,13,23 --gpu-vendor-id=0x1002 --gpu-device-id=0x6819 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.150.100.1000 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.1.1988515872\651866594" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.2.1952961230\929416822" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.3.394991575\141702991" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.5.435800874\124174255" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.6.1112117663\30542056" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.8.1739451615\1760301017" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.9.629189518\2059993149" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.10.1916534850\2051274131" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4532.11.1124756726\1974358627" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.12.977781162\1425333761" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.13.2009756175\142812059" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.14.947293406\1865194383" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.16.402056173\2084095247" /prefetch:673131151
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.23.848381688\510510546" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.24.1750893412\1194943156" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.25.726489054\729472501" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.29.1866836711\561420407" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_30/UMA-Uniformity-Trial-10-Percent/group_03/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="4532.31.1290511439\719561685" /prefetch:673131151
"C:\Users\Zobasek\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore1cef200c01a3b38.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-969319244-3774007177-1369147609-1000Core1cef0ac9fd05ed3.job
C:\Windows\tasks\GS.Enabler-S-926685765.job
C:\Windows\tasks\MSIAfterburner.job
C:\Windows\tasks\RunOW.job
C:\Windows\tasks\update-S-1-5-21-969319244-3774007177-1369147609-1000.job
C:\Windows\tasks\update-sys.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Zobasek\AppData\Roaming\Mozilla\Firefox\Profiles\w4d8af2j.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.70 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.7]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.2]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.70 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\Zobasek\AppData\Roaming\Mozilla\Firefox\Profiles\w4d8af2j.default\extensions\
0402d750-8010-4204-b167-01e83cb6f12d@694f8c69-18e7-4a97-8e6d-448c10f4a0ff.com
https-everywhere@eff.org
staged
C:\Users\Zobasek\AppData\Roaming\Mozilla\Firefox\Profiles\w4d8af2j.default\searchplugins\
MyStart Search.xml
SweetIM Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901134}]
FTdownloader V7.0 - C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-bho64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-07-12 6308736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BC9F3B56-8A2D-42E9-74C0-C0A733EAA3B4}]
RemoveTheAdApp - C:\ProgramData\RemoveTheAdApp\vjXH2.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EAF13DCD-7B84-F2E0-B32E-ED3DB2525EC6}]
greatsaver - C:\Program Files (x86)\greatsaver\Y6X.x64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2012-11-06 183112]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BAFFAC6-C9DC-02B1-059E-5ACFA5309B01}]
continuetosayvie - C:\ProgramData\continuetosayvie\51814e8e0dc24.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2013-05-08 587104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-07-12 4532096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d40c654d-7c51-4eb3-95b2-1e23905c2a2d}]
IEExtension.Extension - C:\Windows\system32\mscoree.dll [2010-11-05 444752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7473b6bd-4691-4744-a82b-7854eb3d70b6} - uTorrentControl_v2 Toolbar - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll [2012-11-06 183112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-04-24 12480616]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EA Core"=C:\Program Files (x86)\Electronic Arts\EADM\Core.exe -silent []
"RGSC"=C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2008-11-14 305064]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"LightShot"=C:\Users\Zobasek\AppData\Local\Skillbrains\lightshot\LightShot.exe [2013-05-27 226592]
"SpeedUpMyComputer"=C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as []
"Google Update"=C:\Users\Zobasek\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-13 116648]
"Overwolf"=C:\Program Files (x86)\Overwolf\Overwolf.exe -silent []
"Battle.net"=C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe [2014-02-12 2561072]
"uTorrent"=C:\Users\Zobasek\AppData\Roaming\uTorrent\uTorrent.exe [2014-02-10 905296]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Live Update 5"=C:\Program Files (x86)\MSI\Live Update 5\LU5.exe [2011-11-22 1935888]
"amd_dc_opt"=C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe [2013-02-15 601976]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-12-19 642808]
"Driver Genius"= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
C:\Users\Zobasek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Registrace .lnk - C:\Users\Zobasek\Downloads\NHL 09\Support\EAregister.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~3\Wincert\WIN64C~1.DLL C:\PROGRA~2\GSSUPP~1\ASSIST~2.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec64.dll
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.txt - open - "C:\Program Files (x86)\PSPad editor\PSPad.exe" "%1"
======List of files/folders created in the last 2 months======
2014-03-07 14:27:47 ----D---- C:\Program Files\trend micro
2014-03-07 14:27:46 ----D---- C:\rsit
2014-03-05 16:53:10 ----D---- C:\ProgramData\CODEX
2014-03-05 16:39:34 ----D---- C:\Program Files (x86)\The Walking Dead Season 2 EP 2
2014-03-03 07:30:04 ----D---- C:\Users\Zobasek\AppData\Roaming\FlvtoConverter
2014-03-03 07:29:18 ----D---- C:\Program Files (x86)\WinRST
2014-03-03 07:29:11 ----D---- C:\Users\Zobasek\AppData\Roaming\Pirrit
2014-03-03 07:29:09 ----D---- C:\Program Files (x86)\Pirrit
2014-02-26 14:09:05 ----D---- C:\Windows\Migration
2014-02-26 14:04:52 ----D---- C:\82613d55c1f366f8655d5a
2014-02-23 17:16:42 ----RA---- C:\Windows\SYSWOW64\tmpEE68.tmp
2014-02-23 17:16:23 ----D---- C:\Program Files (x86)\GameShadow
2014-02-23 17:11:12 ----D---- C:\Program Files (x86)\Eidos
2014-02-19 15:59:28 ----D---- C:\hry
2014-02-18 17:43:54 ----D---- C:\Program Files (x86)\EA Sports
2014-02-18 17:35:48 ----D---- C:\Users\Zobasek\AppData\Roaming\Leadertech
2014-02-17 21:12:51 ----D---- C:\Users\Zobasek\AppData\Roaming\Malwarebytes
2014-02-17 21:12:39 ----D---- C:\ProgramData\Malwarebytes
2014-02-17 21:12:38 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-17 21:12:38 ----A---- C:\Windows\system32\drivers\mbam.sys
2014-02-17 18:42:55 ----RSH---- C:\Users\Zobasek\AppData\Roaming\zlib1.dll
2014-02-17 18:42:51 ----RSH---- C:\Users\Zobasek\AppData\Roaming\pthreadVC2.dll
2014-02-17 18:42:50 ----RSH---- C:\Users\Zobasek\AppData\Roaming\pthreadGC2.dll
2014-02-17 18:42:23 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcr100d.dll
2014-02-17 18:42:18 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcr100.dll
2014-02-17 18:42:14 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcp100d.dll
2014-02-17 18:42:12 ----RSH---- C:\Users\Zobasek\AppData\Roaming\msvcp100.dll
2014-02-17 18:42:09 ----RSH---- C:\Users\Zobasek\AppData\Roaming\cudart32_55.dll
2014-02-17 18:42:05 ----RSH---- C:\Users\Zobasek\AppData\Roaming\cudart32_50_35.dll
2014-02-14 03:01:42 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-02-14 03:01:42 ----A---- C:\Windows\system32\vbscript.dll
2014-02-14 03:00:48 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-02-14 03:00:48 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-02-14 03:00:48 ----A---- C:\Windows\system32\msrating.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\ieui.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\iernonce.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-02-14 03:00:47 ----A---- C:\Windows\system32\ie4uinit.exe
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-02-14 03:00:46 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\msfeeds.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\jsproxy.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\ieUnatt.exe
2014-02-14 03:00:46 ----A---- C:\Windows\system32\iesetup.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-02-14 03:00:46 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-02-14 03:00:45 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-02-14 03:00:45 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-02-14 03:00:45 ----A---- C:\Windows\system32\mshtml.dll
2014-02-14 03:00:45 ----A---- C:\Windows\system32\jscript9diag.dll
2014-02-14 03:00:45 ----A---- C:\Windows\system32\ieapfltr.dll
2014-02-14 03:00:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-02-14 03:00:44 ----A---- C:\Windows\system32\iertutil.dll
2014-02-14 03:00:43 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-02-14 03:00:43 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-02-14 03:00:43 ----A---- C:\Windows\system32\wininet.dll
2014-02-14 03:00:43 ----A---- C:\Windows\system32\urlmon.dll
2014-02-14 03:00:42 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-02-14 03:00:42 ----A---- C:\Windows\system32\ieframe.dll
2014-02-14 03:00:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-02-14 03:00:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-02-14 03:00:41 ----A---- C:\Windows\system32\jscript9.dll
2014-02-13 16:02:51 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-02-13 16:02:51 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-02-13 16:02:51 ----A---- C:\Windows\system32\msxml3r.dll
2014-02-13 16:02:51 ----A---- C:\Windows\system32\msxml3.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-02-13 16:02:47 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc_isv.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\secproc.dll
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\RMActivate.exe
2014-02-13 16:02:47 ----A---- C:\Windows\system32\msdrm.dll
2014-02-13 16:02:43 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-02-13 16:02:43 ----A---- C:\Windows\system32\d3d10warp.dll
2014-02-13 16:02:43 ----A---- C:\Windows\system32\d2d1.dll
2014-02-13 16:02:42 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-02-08 14:37:44 ----A---- C:\Windows\system32\drivers\TotRec8.sys
2014-02-05 21:45:25 ----D---- C:\Games
2014-02-04 15:33:05 ----D---- C:\Windows\SYSWOW64\jmdp
2014-02-04 15:33:05 ----D---- C:\Windows\system32\ljkb
2014-01-31 03:02:38 ----D---- C:\ProgramData\RemoveTheAdApp
2014-01-31 03:02:35 ----D---- C:\ProgramData\akbbjifnggmcnfpbphhmcfljaadhkooa
2014-01-29 15:15:07 ----D---- C:\Users\Zobasek\AppData\Roaming\SPORE
2014-01-20 00:42:26 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-01-20 00:42:23 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-01-20 00:42:23 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-01-20 00:42:23 ----A---- C:\Windows\SYSWOW64\java.exe
2014-01-16 22:49:55 ----D---- C:\Program Files (x86)\Mobogenie
2014-01-16 22:32:36 ----D---- C:\Program Files (x86)\Dishonored
2014-01-15 14:45:44 ----A---- C:\Windows\system32\win32k.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-01-15 14:45:44 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-01-15 14:45:43 ----A---- C:\Windows\system32\drivers\netio.sys
2014-01-12 01:51:55 ----D---- C:\ProgramData\SoftWarehouse
2014-01-12 01:51:47 ----D---- C:\Program Files (x86)\GS Supporter
2014-01-12 01:51:39 ----D---- C:\ProgramData\e7d26fbd8110977c
2014-01-08 11:40:52 ----D---- C:\Program Files (x86)\WTFast
2014-01-08 11:40:52 ----A---- C:\Windows\SYSWOW64\SPORDER.DLL
======List of files/folders modified in the last 2 months======
2014-03-07 14:27:52 ----D---- C:\Users\Zobasek\AppData\Roaming\uTorrent
2014-03-07 14:27:48 ----D---- C:\Windows\Temp
2014-03-07 14:27:47 ----RD---- C:\Program Files
2014-03-07 14:13:42 ----D---- C:\Windows\system32\config
2014-03-07 06:43:36 ----D---- C:\ProgramData\PMB Files
2014-03-07 06:41:38 ----D---- C:\Program Files (x86)\Steam
2014-03-06 15:39:22 ----D---- C:\Program Files (x86)\Battle.net
2014-03-05 16:53:10 ----HD---- C:\ProgramData
2014-03-05 16:39:34 ----RD---- C:\Program Files (x86)
2014-03-05 15:15:20 ----D---- C:\Windows\inf
2014-03-05 11:47:49 ----D---- C:\Windows\system32\drivers
2014-03-04 15:35:49 ----SD---- C:\System Volume Information
2014-03-03 22:26:04 ----SHD---- C:\Windows\Installer
2014-03-03 22:26:03 ----D---- C:\ProgramData\continuetosayvie
2014-03-03 22:26:03 ----D---- C:\Program Files\WinRAR
2014-03-03 22:26:03 ----D---- C:\Program Files (x86)\ESET Smart Security 6 Licencia Navdy
2014-03-03 19:45:31 ----D---- C:\Users\Zobasek\AppData\Roaming\Skype
2014-03-03 15:43:03 ----D---- C:\Windows\SYSWOW64\WNLT
2014-03-03 15:43:02 ----D---- C:\Program Files (x86)\SweetIM
2014-03-03 15:43:00 ----D---- C:\Program Files (x86)\Movies Toolbar
2014-03-03 15:42:58 ----D---- C:\ProgramData\InstallMate
2014-03-03 15:42:58 ----D---- C:\ProgramData\BetterSoft
2014-03-03 15:42:52 ----D---- C:\Windows\Tasks
2014-03-03 15:42:52 ----D---- C:\ProgramData\Wincert
2014-02-28 20:21:22 ----D---- C:\Windows\Microsoft.NET
2014-02-28 19:46:45 ----SD---- C:\Config.Msi
2014-02-28 08:53:24 ----D---- C:\Windows\SysWOW64
2014-02-28 08:53:24 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-02-28 08:53:09 ----D---- C:\Windows\System32
2014-02-28 08:53:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-02-26 15:54:49 ----D---- C:\Users\Zobasek\AppData\Roaming\.minecraft
2014-02-26 14:09:53 ----D---- C:\Windows\SYSWOW64\en-US
2014-02-26 14:09:53 ----D---- C:\Windows\system32\en-US
2014-02-26 14:09:05 ----SD---- C:\ProgramData\Microsoft
2014-02-26 14:09:05 ----D---- C:\Windows
2014-02-26 14:04:36 ----D---- C:\Windows\system32\catroot2
2014-02-25 18:36:30 ----D---- C:\Users\Zobasek\AppData\Roaming\Audacity
2014-02-24 19:53:28 ----D---- C:\Windows\system32\NDF
2014-02-20 19:33:37 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-02-19 16:10:06 ----RSD---- C:\Windows\assembly
2014-02-17 03:00:44 ----D---- C:\Windows\system32\MRT
2014-02-17 03:00:42 ----A---- C:\Windows\system32\MRT.exe
2014-02-15 14:19:55 ----D---- C:\Users\Zobasek\AppData\Roaming\TotalRecorder
2014-02-14 21:44:51 ----D---- C:\Users\Zobasek\AppData\Roaming\TeamViewer
2014-02-14 21:44:24 ----RSD---- C:\Windows\Fonts
2014-02-14 21:44:16 ----D---- C:\Program Files (x86)\TeamViewer
2014-02-14 03:27:17 ----D---- C:\Windows\winsxs
2014-02-14 03:25:22 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-02-14 03:25:22 ----D---- C:\Windows\system32\cs-CZ
2014-02-14 03:25:21 ----D---- C:\Program Files\Internet Explorer
2014-02-14 03:25:21 ----D---- C:\Program Files (x86)\Internet Explorer
2014-02-14 03:05:42 ----D---- C:\Windows\system32\catroot
2014-02-11 18:37:46 ----D---- C:\Windows\system32\drivers\UMDF
2014-02-11 18:35:47 ----D---- C:\Windows\system32\DriverStore
2014-02-04 15:32:42 ----D---- C:\Windows\SYSWOW64\ARFC
2014-02-04 10:28:20 ----A---- C:\Windows\system32\dmwu.exe
2014-02-04 10:23:42 ----A---- C:\Windows\system32\ImHttpComm.dll
2014-02-03 16:11:59 ----D---- C:\ProgramData\Origin
2014-02-03 16:09:27 ----D---- C:\Program Files (x86)\Origin
2014-02-02 21:23:30 ----D---- C:\Windows\Prefetch
2014-01-31 03:02:37 ----HD---- C:\Windows\system32\GroupPolicy
2014-01-31 03:02:37 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-01-29 15:09:30 ----D---- C:\Program Files (x86)\Electronic Arts
2014-01-29 15:07:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-01-28 23:41:44 ----D---- C:\Program Files (x86)\ArmA 2
2014-01-26 12:48:08 ----D---- C:\Users\Zobasek\AppData\Roaming\Mozilla
2014-01-20 00:42:41 ----D---- C:\ProgramData\Oracle
2014-01-20 00:42:23 ----D---- C:\Program Files (x86)\Java
2014-01-18 12:06:03 ----D---- C:\Program Files (x86)\Saints Row IV
2014-01-18 12:05:19 ----D---- C:\Program Files (x86)\MSI Afterburner
2014-01-18 12:03:17 ----D---- C:\Windows\SYSWOW64\directx
2014-01-18 12:03:12 ----HD---- C:\Windows\msdownld.tmp
2014-01-18 05:36:03 ----D---- C:\Program Files (x86)\Hearthstone
2014-01-14 16:40:58 ----D---- C:\Program Files (x86)\Assassins Creed 4 Black Flag
2014-01-12 01:51:37 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MxEFUF;Matrox Extio Upper Function Filter; C:\Windows\system32\DRIVERS\MxEFUF64.sys [2011-10-20 157696]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 Soluto;Soluto; C:\Windows\system32\DRIVERS\Soluto.sys [2013-07-10 54728]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-05-31 283200]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [2010-01-29 115600]
R2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2013-02-15 71032]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2010-11-20 146432]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-07-17 12514816]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-07-17 617472]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-11-06 96256]
R3 cpuz136;cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-04-24 4028520]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-10-16 791608]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-05-21 99800]
R3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [2010-05-10 33592]
R3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [2010-10-22 14136]
R3 RTLE8023x64;Realtek 10/100/1000 PCI-E NIC Family NDIS XP(x64) Driver; C:\Windows\system32\DRIVERS\Rtenic64.sys [2013-08-03 509144]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2012-10-18 44344]
R3 TotRec8;Total Recorder WDM audio filter driver; \??\C:\Windows\system32\drivers\TotRec8.sys [2013-10-16 125640]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme Edition\kerneld.x64 [2013-01-28 30624]
S3 ATICDSDr;ATICDSDr; \??\C:\Users\Zobasek\AppData\Local\Temp\ATICDSDr.sys []
S3 cpuz135;cpuz135; \??\C:\Users\Zobasek\AppData\Local\Temp\cpuz135\cpuz135_x64.sys []
S3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R); C:\Windows\system32\DRIVERS\e1y60x64.sys [2009-06-10 281088]
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [2010-03-31 26752]
S3 FEIExpress;Intel(R) 10/100 Network Connection Driver; C:\Windows\system32\DRIVERS\fei62x64.sys [2009-10-02 187392]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
S3 InputFilter_Hid_FlexDef2b;Siliten HID Devices(FlexDef2b) Driver Service; C:\Windows\system32\DRIVERS\InputFilter_FlexDef2b.sys [2010-06-18 17920]
S3 MSICDSetup;MSICDSetup; \??\D:\CDriver64.sys []
S3 netvsc;netvsc; C:\Windows\system32\drivers\netvsc60.sys [2010-11-20 168448]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-07-23 52736]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-12-27 805088]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 vcd10bus;Virtual CD v10 Bus Enumerator; C:\Windows\system32\DRIVERS\vcd10bus.sys [2008-06-17 40464]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUSB;Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-07-17 239616]
R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2013-02-15 384888]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 e9f32388;GS Supporter; C:\Windows\syswow64\rundll32.exe [2009-07-14 44544]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2012-09-06 170824]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 PirritDesktop;PirritDesktop; C:\Users\Zobasek\AppData\Local\PirritSuggestor\PirritService.exe [2014-02-20 52568]
R2 PirritUpdater;PirritUpdater; C:\Program Files (x86)\Pirrit\AutoUpdater.exe [2014-02-20 59904]
R2 SolutoLauncherService;Soluto Launcher Service; C:\Program Files\Soluto\SolutoLauncherService.exe [2013-07-10 182848]
R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2013-07-10 792128]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-02-05 4915040]
R2 WinRST;WinRST; C:\Program Files (x86)\WinRST\WinRST.exe [2014-02-26 59904]
R3 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2013-12-27 76888]
S2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2013-02-15 393080]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-01 116648]
S2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-07-12 3289472]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-20 257928]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2013-11-22 49152]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-01 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-02-06 111616]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SolutoRemoteService;Soluto Remote Service; C:\Program Files\Soluto\SolutoRemoteService.exe [2013-07-10 1942528]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-03-05 568512]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-02-16 1255736]
S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Samovolné vyskakování reklam v prohlížeči
Zdravim 
Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).


Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text
Kód: Vybrat vše
CREATERESTOREPOINT
netsvcs
drivers32
savembr:0
/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop
%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5
*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Samovolné vyskakování reklam v prohlížeči
Naposledy upravil(a) zobas dne 08 bře 2014 12:39, celkem upraveno 1 x.
Re: Samovolné vyskakování reklam v prohlížeči
EXTRAS:
OTL Extras logfile created on: 8.3.2014 11:49:06 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Zobasek\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16518)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,95 Gb Total Physical Memory | 1,79 Gb Available Physical Memory | 45,32% Memory free
7,90 Gb Paging File | 5,16 Gb Available in Paging File | 65,40% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,51 Gb Total Space | 165,90 Gb Free Space | 17,81% Space Free | Partition Type: NTFS
Drive D: | 1,85 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Drive E: | 1,75 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: ZOBAS | User Name: Zobasek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.hlp [@ = WinHelpCustomView.Scenario] -- C:\Windows\SysWow64\winhlp32.exe %1
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.hlp [@ = WinHelpCustomView.Scenario] -- C:\Windows\SysWow64\winhlp32.exe %1
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
[HKEY_USERS\.DEFAULT\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
[HKEY_USERS\S-1-5-18\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
[HKEY_USERS\S-1-5-21-969319244-3774007177-1369147609-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --playlist-enqueue "%1" ()
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --no-playlist-enqueue "%1" ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --playlist-enqueue "%1" ()
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --no-playlist-enqueue "%1" ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{09763D81-D60E-4FBD-BE38-F2751496CCCD}" = lport=58724 | protocol=6 | dir=in | name=pando media booster |
"{195FCDC4-A3E9-46BA-BD7E-0231254EE9B4}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{26625152-BB30-4435-9CEC-EEEE81D6A485}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{31D9BBED-F341-4DE1-B623-2983D812B22E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{38531196-C585-4846-BE26-567665B92E50}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{3D3E3E65-5718-407E-82F8-634398176C50}" = lport=139 | protocol=6 | dir=in | app=system |
"{43AC9897-7FA5-436F-83A1-F40EBB0F8B8B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{4D3A5285-0E40-462E-BC6D-63AE0895283B}" = lport=137 | protocol=17 | dir=in | app=system |
"{55D50BD4-4784-4252-9A75-2335184EA197}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{5EB2C32A-B6D6-49BD-84BB-7CE6A04287B8}" = lport=58724 | protocol=17 | dir=in | name=pando media booster |
"{62C33F9D-1E90-4D98-99FF-2AEE4799EBDB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6D2296B2-B1AB-4C9D-9E4F-FBD06D72735D}" = lport=58724 | protocol=6 | dir=in | name=pando media booster |
"{7FC43BD1-D2BD-47C4-86EC-5E705375C17F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{85C22D42-E918-48DE-84DF-A7FB56C0EF00}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{95D48E15-822E-4DF9-B56F-9B69F35E80B9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{9B938CDE-3478-4155-9370-2FFD3B7DF779}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{AED49550-2A10-428C-A1C9-DEE26EA8EBFA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{BA10B4FF-02A6-4393-818A-E6C3158BF3D1}" = lport=58724 | protocol=17 | dir=in | name=pando media booster |
"{C9802958-A888-47DC-89EC-F936102913EB}" = lport=138 | protocol=17 | dir=in | app=system |
"{CB67D3F8-7543-43F2-AC7D-0B7E2871C96C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{D482D3E8-6F95-4B92-87BD-6E9CAF92334D}" = lport=445 | protocol=6 | dir=in | app=system |
"{DEC42BBA-5234-461E-9487-56377B998A72}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F853E38D-1669-4B0F-84DC-E9A9F509302F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{024CB1F3-917D-4A7E-B63B-083476F38042}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{0617646B-5211-4019-8BC1-5C91446D7CF2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{082889CE-0948-48B5-9851-7127A7F6EA4E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\game_launcher.exe |
"{0881EB4D-D983-4E8C-9112-76EF5996386A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe |
"{091B549B-0FD1-43B4-8D44-F6A779699973}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{0968ABDC-F0C1-4D39-B021-B2400988E674}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe |
"{0A6BC7BB-5979-4C72-86B8-82123AF1D471}" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\roaming\utorrent\utorrent.exe |
"{0AC24158-BFA1-4CDD-8C18-28B837379A2E}" = dir=in | app=c:\program files\soluto\solutoconsole.exe |
"{0B9B6957-2617-4BC7-B2D9-DB6C9014D931}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\launcher.exe |
"{0DE15F25-2D27-410E-9074-6DC7F275DD96}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{111980E3-F8F4-48D0-A813-75BD120C8FEA}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe |
"{13F695FB-41AE-4F9F-9263-56D9F4D44274}" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\f1 2011\f1_2011.exe |
"{14A36465-20E5-4B4F-A7F9-89C69767DE3C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\launcher.exe |
"{18BC3CA7-EF29-4019-912D-FA5508CA5DB9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{1A24C99E-BB29-4519-99AD-F3366D5EC95D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2717\agent.exe |
"{1C21B529-E0DE-427E-BC64-F26E9241EDDB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{1EB16603-9439-48B9-AD5C-45E17329CAEF}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\simcity\simcity\simcity.exe |
"{1EEECEC7-314E-46EB-8911-BBFD342FE8A3}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
"{20B3132B-38D7-409E-BA8C-5BDAF24EF381}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{2376AC03-519B-4177-9111-858BC01B9A4B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{238BEC1F-CA81-4779-96E4-EF629443D32B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\pid\pid.exe |
"{243EDAE4-1534-4DC3-B256-B8EF98C91C71}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\simcity\simcity\simcity.exe |
"{28AAE212-632E-4E79-867E-AB8174A7F8AD}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{2ABB52BD-C7B6-48A3-8A4B-BC7807F6AB60}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{2AE9D88D-6892-4DD3-95FE-9924E15B64CE}" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\f1 2011\f1_2011.exe |
"{2D95DA47-4DF1-4F45-96E9-9742F5DB8F12}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
"{310AABDF-53F7-4D31-9A3C-97E425B9F582}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{31DB4B30-AA5B-4CAF-9FA1-6D3C850B6313}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2\justcause2.exe |
"{322FEF0F-3F33-45A4-9ED4-AAEC75EF6695}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{34E0455D-17AE-41F8-86DD-6227B91A110D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe |
"{379BF25A-CB87-4A56-9D0F-97914FC26DE8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{38DEEC70-5AC5-41D3-992A-1920EDF35441}" = dir=in | app=c:\program files\soluto\soluto.exe |
"{39534933-2A46-40E3-8AB1-3C9C084A8ACC}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{3A961346-86E2-44D4-98F0-5C0A4514A36F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{3B0A688C-BCD4-4BF5-89C4-CDF512C26D92}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{3E712788-34B5-4076-BC92-EDA10672F613}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{42AE0BBD-F24D-4AE6-BCEC-56E6F3E52971}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2426\agent.exe |
"{4316F358-7C38-40BA-916D-1FC4018C4671}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{43EABD58-244C-4060-B361-E63E2342C75C}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{46357954-A902-4EBA-891E-52E87D1FC6A7}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\need for speed the run\need for speed the run.exe |
"{47758B53-B477-4FDB-9356-F9E76F57418C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{47E4E30C-88B0-4D70-AE1C-4324A3296578}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{47E91D16-D1F2-4C3D-9C04-4E276F02B144}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe |
"{48DDB1A6-C3A6-4218-B72A-619703E2131B}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{497F9CBA-E739-4B33-8942-8BB7D633D0DF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{4C56D506-1638-4CA2-9489-3646CFB504DA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe |
"{4D59BD5A-E1D4-4FC1-A196-8AFDABBC9EEA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{5093615F-549B-4721-AA41-1585528F5810}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{50DAD287-258D-4A68-8283-B6A831D00EFC}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{512B6814-6CBE-4AAB-93DA-B5A99D6B5780}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{53FD73E5-EC89-4B54-8032-D5B719D1782B}" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{54DE4631-25EB-4219-B882-77EC0DB1D702}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{595A83B1-CCF1-42A2-BD6A-2B91F6B8ED28}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2717\agent.exe |
"{59881A1D-FC9C-47DB-BE57-FB4B9AAFEE0D}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\need for speed the run\need for speed the run.exe |
"{5B389ED8-0120-484B-923F-24EBD3EB3D04}" = protocol=17 | dir=in | app=c:\hry\fifa 14\game\fifa14.exe |
"{5B5CD7CF-9243-4465-BA99-DE4690A002F6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2\justcause2.exe |
"{5B8899D1-0E95-427D-B770-8355731B3886}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{5BB682CA-FABA-4FC8-BD22-5A7A02F0E1C8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{5FF29FED-D562-457F-B2EC-1C4FEAA1A704}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe |
"{63890C2A-E1D4-48D2-B03A-86F6973056F9}" = protocol=17 | dir=in | app=c:\windows\syswow64\arfc\wrtc.exe |
"{64AEC286-C88F-4EC8-9A6B-35FC0ECAD49A}" = protocol=6 | dir=in | app=c:\windows\syswow64\arfc\wrtc.exe |
"{65556EFD-21D7-43BB-B89D-7153E5D839EB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{656F14C4-EAC8-40E9-848F-9FCCA8C55E0F}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe |
"{659BA64C-4CB1-4BDC-B3BD-2A383118AA92}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe |
"{66D2E0FC-3458-4CE3-AC1D-AE753E718540}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{67FF60A3-D9BC-4750-A03C-4FE13969B119}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{6C4A3008-B2F6-4C25-AAC6-A895936A8F11}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the binding of isaac\isaac.exe |
"{6C4BF55D-144E-4ACB-8750-766AE704588E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\borderlands2.exe |
"{6C4E338D-5FC1-4145-ABC2-2C1145AE13B2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2581\agent.exe |
"{6C710D60-4DB4-466F-8958-FD8A46BBAC09}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{724B81FE-1B12-4CA3-96F5-9DA1D6E3AA7F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{72C162AD-76DB-4D2A-A641-507C804A515E}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{758780C8-AD97-4A58-8758-ACA8AF1A19FC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{75CB4E5C-6ADF-47B7-B20C-37C1004B2482}" = dir=in | app=c:\program files\soluto\solutoremotedirect.exe |
"{78042367-7EA4-4625-A973-117C77DEB3A8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe |
"{7893DA1F-7210-46D9-9A31-70E20DB256EA}" = dir=in | app=c:\program files\soluto\solutoservice.exe |
"{78946783-1A3A-445C-AC72-77A4BA8F31D5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{789860F1-0C7F-4B0C-B3E8-98F5A1BBF19D}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{7A20709E-12CC-4181-8885-662086BEE560}" = protocol=17 | dir=in | app=c:\windows\system32\dmwu.exe |
"{7B710075-7FDC-421A-ACD0-BA0ABBE79A89}" = protocol=6 | dir=in | app=c:\hry\fifa 14\game\fifa14.exe |
"{7E3D2B6B-9B48-4A15-8BF9-EB743F6BD529}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{7F3808BB-0E59-4642-9F6B-7AEF39E85241}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{809447B5-6F1B-46A0-971F-FF7C73ABCEB6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{8339B04F-2D9C-4CF7-A858-37752C197486}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
"{8524EEBF-52A9-4F9A-94E0-E9CE8BF32E80}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{85CD69B9-6590-448B-BFC4-9F835D4F8856}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{86A91C8F-EF16-400F-B384-2FF7BF037993}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{87E855C2-38BB-48BD-AFEF-BBF6FFF4D81F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{883BAAAE-2CB1-4200-AAE1-9093ABF4A5B1}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{890FE893-F3E7-4AAF-85A8-52F781EA3C1C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 3 alpha lite\arma3demo.exe |
"{8ADA9BCC-7E61-4FDE-B570-AFA1EBD119EE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{8B3E7158-5D85-48E9-8C77-230554A9174F}" = dir=in | app=c:\program files\soluto\solutoupdateservice.exe |
"{8DB86020-7935-4E87-A089-43EAE167DBD3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{903473FE-A08C-4505-9251-3C333A6F2B58}" = protocol=6 | dir=in | app=c:\users\zobasek\downloads\solutoinstaller-g79zp04tb85f_u34649231.exe |
"{93DBF23B-619B-4472-9632-1D4B84A5C776}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird.exe |
"{9764F22D-1B06-4D77-A6AC-0B47585157B7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{985E976C-1BBB-4809-BD27-23D0E7B719CF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird.exe |
"{997DE80D-1E66-4C71-AF09-9253A2C1F121}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{9E37A781-9B85-47D2-AEDC-00B762D0042B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{9E6E1DEF-09CE-474E-8382-7A4B94EF850A}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{9E8684D9-E8F9-487B-8A0E-D80126851204}" = protocol=6 | dir=in | app=c:\windows\system32\dmwu.exe |
"{9F76DD9B-8268-4BBA-93F1-4B9CC3EBBFA6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\awesomenauts\awesomenautslauncher.exe |
"{A10EE800-B565-4922-A647-4AE8108F9E59}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A25419CB-916C-4AB6-A011-0947DC15D390}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{AC3E9738-CBF0-42FD-8B91-637A06150DF6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2426\agent.exe |
"{B16FDB4F-36A3-4AA6-8828-77040FA5A16C}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{B35D1AF7-9249-4255-82F1-F57604E44509}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{B3C6DBB7-E3D4-4424-AC4F-3A78587C2D2B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{B707334C-892A-4491-98B1-E1A5BB81F96E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{B7C9225A-51C4-4055-8D08-99A4E11FBF9E}" = protocol=17 | dir=in | app=c:\users\zobasek\downloads\solutoinstaller-g79zp04tb85f_u34649231.exe |
"{BD27872F-1CD6-4616-AF53-46A1C9502B17}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{BE967F85-CBC3-4DBA-AA62-0C6B5CCF80CD}" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\roaming\utorrent\utorrent.exe |
"{C19B8A1B-42EE-4FAE-B6B9-BF2BD30E47E9}" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{C68154C5-5AD8-4F11-904D-138BDBBF3091}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{C8EA10CF-D3FD-403E-8235-FEC762230C12}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the binding of isaac\isaac.exe |
"{C9555952-73D5-4841-BF77-B7DC285B6DD0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{CBDC678B-A587-4774-8719-476C35E58C09}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe |
"{CC70D5DC-2B33-4037-91BA-E7269AFBC0AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{CDAAEE18-86A9-4A77-A137-7BA93D05189B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\awesomenauts\awesomenautslauncher.exe |
"{D0CAE5D5-97BC-4C8B-A227-2CEB364A96CF}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe |
"{D2589F42-89F4-4271-844C-AB9C9DA7CD7A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{D28A50B8-4E34-4FFC-B451-6BF3E6C951A1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{D3A08A1A-5555-43DC-94CC-A7AEC6B6F39C}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{D3E9A7A6-F235-4116-8486-61DBFFA8A4B7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\pid\pid.exe |
"{D8AB9466-7E78-4B19-AC6A-76D20069593D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2581\agent.exe |
"{D9468E06-245F-408E-882C-A6EA49369F91}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2514\agent.exe |
"{DE42F69D-5074-4F0A-A351-6BDED6F0C869}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
"{E2DFC7C8-CB36-4268-9EFD-9E13DF421D8D}" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\roaming\dropbox\bin\dropbox.exe |
"{E4417B3D-69F6-4716-9E6E-6F7AED241BB8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{E4639465-102D-47EA-8C88-3DE50C9D145F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\game_launcher.exe |
"{E55DE057-97A4-452F-89AF-881CA83BD688}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{E60717C1-10F1-4FB5-9A4B-FC5F42D2E20E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe |
"{E749EDC7-6E70-4AA4-A5F6-57FD257BDD77}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe |
"{E77BCF41-4132-4598-9908-3BE94D480BBE}" = dir=in | app=c:\program files\soluto\solutocleanup.exe |
"{EA3AF142-5FB4-4F45-985D-3E390CCB11A8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{EAAA0FE4-3702-4EBA-80B4-4D950481690F}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{ED49B7C8-57EA-4BA4-9702-6DFED31B9035}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\borderlands2.exe |
"{F0801518-48F9-4577-A4A2-B0C982F4DF3C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 3 alpha lite\arma3demo.exe |
"{F1462E55-17CC-4EA5-AA67-9F415F2190CD}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{F1D804CE-D21D-49AB-A6E8-4D5D2508B202}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe |
"{F26F7FF1-73CD-4FB5-9501-6E3E03CEBBFC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{F3CF97EB-1CA8-4782-B682-C24D61E0B6C8}" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\roaming\dropbox\bin\dropbox.exe |
"{F40D2D28-104A-4384-BDFC-55323752FE37}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{F478589A-9591-4684-AB06-B4E19409B380}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe |
"{F7DAC198-D560-4005-AE6F-E44E214784AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{F8387B7A-65D1-4270-A734-AD9683763B0D}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{F967688C-9D01-4445-AA7A-505DB10453A1}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2514\agent.exe |
"{FA55DE32-4C52-45B7-88F7-0EA6077CC536}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{FB11AB96-8356-42B8-A59D-20C25C4C5DD2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{FB432208-1F25-41A9-8CDB-AEAE7A22144C}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{FF840A07-168B-4B7B-9751-C01044182DEB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"TCP Query User{0CCA13D8-6375-4770-8A1F-E161C18A134D}C:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin |
"TCP Query User{0E6FC0CF-21C3-4518-B081-F0BAF8CFB1EA}C:\program files (x86)\valve\hl.exe" = protocol=6 | dir=in | app=c:\program files (x86)\valve\hl.exe |
"TCP Query User{1913BE68-D32A-420C-8943-13AB20659510}C:\hry - songy\far cry 3\bin\farcry3_d3d11.exe" = protocol=6 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3_d3d11.exe |
"TCP Query User{2DA9123B-66E7-4AEC-953F-83B765F829DD}C:\program files (x86)\css\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\css\counter-strike source\hl2.exe |
"TCP Query User{2F05A9DB-5FAA-4F5E-A7FA-C70345FF6FA3}D:\easysetupassistant\wr841n\easysetupassistant.exe" = protocol=6 | dir=in | app=d:\easysetupassistant\wr841n\easysetupassistant.exe |
"TCP Query User{389D85D0-388A-48FB-A782-18E0495C9764}C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"TCP Query User{39E797DA-C150-4B01-B2DD-77EC22E4592A}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe |
"TCP Query User{52AA5196-0508-4AFC-A97C-12DF8012CAF7}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |
"TCP Query User{586F4C8A-33AF-4286-A6BA-28B2F1248D0F}C:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe" = protocol=6 | dir=in | app=c:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe |
"TCP Query User{5BC1EC1C-15BF-46E9-8CB7-95248A102EAB}C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"TCP Query User{5DAE930A-9695-4B7F-B182-D36F95CAC1B4}C:\program files (x86)\quadcorem2\pack\core.bin" = protocol=6 | dir=in | app=c:\program files (x86)\quadcorem2\pack\core.bin |
"TCP Query User{6A5A222A-E434-4301-81F8-54749B772E16}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"TCP Query User{6C16711C-DE94-4339-B266-6E3FB01D272F}C:\program files (x86)\assassins creed iii\ac3sp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\assassins creed iii\ac3sp.exe |
"TCP Query User{75E7E8B0-A702-4688-A15A-6B2CBA15584B}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe |
"TCP Query User{828C65E8-1DAE-48B5-BD1B-C624C0064979}C:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe |
"TCP Query User{838A60B1-11A2-4771-998E-C7DD2568E44A}C:\hry - songy\simcity\start.exe" = protocol=6 | dir=in | app=c:\hry - songy\simcity\start.exe |
"TCP Query User{88FC29FF-CA61-4A4C-94E5-6EAF03A281C8}C:\hry - songy\far cry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3.exe |
"TCP Query User{AC158CE4-839A-453A-9204-593F5EDCDAB2}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{CD029DFB-5EDF-4C0F-902A-32CFFC6A92D4}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |
"TCP Query User{CD3E3980-C47B-4223-B94F-A234612263D4}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{D973B451-461C-4C8E-8C79-9A16EB4BAF8E}C:\hry - songy\far cry 3\bin\fc3editor.exe" = protocol=6 | dir=in | app=c:\hry - songy\far cry 3\bin\fc3editor.exe |
"TCP Query User{DC8561AD-8C4C-410C-9B3E-59DCA0227DB6}C:\program files (x86)\origin games\medal of honor\binaries\moh.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\medal of honor\binaries\moh.exe |
"TCP Query User{E15CC48D-350C-4B71-A8B2-CBD941B2620A}C:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe" = protocol=6 | dir=in | app=c:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe |
"TCP Query User{EF5035D8-B838-4022-B8CD-8BEAA9B9EF5F}C:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe |
"TCP Query User{F5866396-A575-4B80-ABA3-0288F9DBFA08}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe" = protocol=6 | dir=in | app=c:\program files (x86)\dishonored\binaries\win32\dishonored.exe |
"UDP Query User{00585DAB-6CD7-4552-8B9F-3130E253F13E}D:\easysetupassistant\wr841n\easysetupassistant.exe" = protocol=17 | dir=in | app=d:\easysetupassistant\wr841n\easysetupassistant.exe |
"UDP Query User{08A1672D-55ED-453D-8430-C373A68E03FA}C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"UDP Query User{0EC09D8F-8709-45FB-8AAE-379FCF542149}C:\program files (x86)\origin games\medal of honor\binaries\moh.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\medal of honor\binaries\moh.exe |
"UDP Query User{15317001-6F76-4CC2-9A42-6D443FF3DD63}C:\hry - songy\far cry 3\bin\fc3editor.exe" = protocol=17 | dir=in | app=c:\hry - songy\far cry 3\bin\fc3editor.exe |
"UDP Query User{23F238CE-2E15-4C9A-8B16-780167D9D46E}C:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe" = protocol=17 | dir=in | app=c:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe |
"UDP Query User{29303358-0C1F-4B3B-AA1E-2F092E99EAFD}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe |
"UDP Query User{2F49FB49-0137-48EF-A1FF-06D9B34DFCEB}C:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe" = protocol=17 | dir=in | app=c:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe |
"UDP Query User{40AFDB3F-2F13-4441-AF09-4A3984D3F70E}C:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe |
"UDP Query User{59F24839-8E30-4103-AC48-6E464B5B5A4E}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe |
"UDP Query User{5F5DB8A9-933B-47D2-BE60-860CDE09E19A}C:\program files (x86)\quadcorem2\pack\core.bin" = protocol=17 | dir=in | app=c:\program files (x86)\quadcorem2\pack\core.bin |
"UDP Query User{5F9D2836-C684-481C-B936-AFE29B127CE7}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{6E30D4DB-BB65-47EF-91A4-BB323A0B99AA}C:\program files (x86)\valve\hl.exe" = protocol=17 | dir=in | app=c:\program files (x86)\valve\hl.exe |
"UDP Query User{84F30005-89BB-40D4-A6E6-EBD03866C7FC}C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"UDP Query User{8E57F5F6-CAB4-45A9-88F0-A431DA534812}C:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe |
"UDP Query User{96549182-0E6F-4CD0-98FF-04656095B067}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{9B738241-277F-44CE-A7FD-C8296209502E}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |
"UDP Query User{A57C7AFB-7B26-4543-AF2D-4A514D988609}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |
"UDP Query User{A6280EA7-9541-4D9C-8EAE-9E9E1705F6F0}C:\hry - songy\far cry 3\bin\farcry3_d3d11.exe" = protocol=17 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3_d3d11.exe |
"UDP Query User{BAD31E09-644C-4FE4-90B3-731ADD28CBD5}C:\hry - songy\far cry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3.exe |
"UDP Query User{DA89F7D0-8205-4A53-A0A3-F88D7A5E1CB7}C:\hry - songy\simcity\start.exe" = protocol=17 | dir=in | app=c:\hry - songy\simcity\start.exe |
"UDP Query User{E3F8843C-B122-43BC-924D-362AD22314B8}C:\program files (x86)\assassins creed iii\ac3sp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\assassins creed iii\ac3sp.exe |
"UDP Query User{ED9D6301-26EA-49B3-AC18-CE1BAECD4202}C:\program files (x86)\css\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\css\counter-strike source\hl2.exe |
"UDP Query User{F42871C6-E0AD-416E-AFCC-5ECBA42549A9}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"UDP Query User{F4E0C930-FEBD-4AC5-9C7F-91C7B3DB2192}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe" = protocol=17 | dir=in | app=c:\program files (x86)\dishonored\binaries\win32\dishonored.exe |
"UDP Query User{F8FEF517-EABE-4D74-891E-6764085240EB}C:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{314DDDC0-E935-11E0-8F9F-F04DA23A5C58}" = Vegas Pro 11.0 (64-bit)
"{33C19CDE-E935-11E0-A0DA-F04DA23A5C58}" = MSVCRT Redists
"{3C06A39F-B090-4116-B531-62E0B1BAE9C0}" = Soluto
"{4975DE61-6BF6-B9BC-1FDE-C04C5EC78E4C}" = AMD Media Foundation Decoders
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{50813B8C-FCBB-3C61-8039-EAAA93029066}" = Microsoft .NET Framework 4.5.1 (CSY)
"{5E03A267-415E-5383-FA8F-3CE4145663B9}" = AMD Catalyst Install Manager
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89EE4A30-080F-2C95-6F78-C98D18FBD74D}" = AMD Accelerated Video Transcoding
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029" = Microsoft .NET Framework 4.5.1 (čeština)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{9CF11D16-ECEB-90A5-A028-CA9E068D848B}" = ccc-utility64
"{A1188CD2-9C9F-11E2-B88F-F04DA23A5C58}" = Vegas Pro 12.0 (64-bit)
"{A528BDDE-9C9F-11E2-9F0C-F04DA23A5C58}" = MSVCRT Redists
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{D54ADF6B-2164-4394-AF70-2778422E9DD8}" = Intel(R) Network Connections 17.4.95.0
"{DFDADCB2-8C17-E480-A8D5-724CEA1F0676}" = AMD Drag and Drop Transcoding
"OptimizerPro" = OptimizerPro
"PROSetDX" = Intel(R) Network Connections 17.4.95.0
"SecretSauce" = SecretSauce
"Sublime Text 2_is1" = Sublime Text 2.0.2
"WinRAR archiver" = WinRAR
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1" = Live Update 5
"{017F8447-2A1D-0DDB-B5D7-CA2BFACE2886}" = CCC Help French
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{054E9A1C-3EA2-C657-E787-FD8DCF5C3D3B}" = CCC Help Czech
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0A5B39D2-7ED6-4779-BCC9-37F381139DB3}" = Adobe AIR
"{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1" = MSI Kombustor 2.5.0
"{0EDC9BA0-016E-406a-86DA-04FC1BE00C21}" = Need for Speed™ The Run
"{101F30DF-3204-473B-A0DD-037A53983DEA}" = QuadcoreM2
"{13B792AA-C078-43A4-8A3A-8B12D629940D}" = Counter-Strike 1.6
"{141FBF87-4FB4-41E1-80B4-E1389268D541}" = GameShadow
"{1DE2BD51-0300-772D-5E18-F337D95D5687}" = CCC Help German
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20E23A40-38E5-4DD6-B738-BC8097AE66B6}_is1" = FTL version 1.03.3
"{224E8FEB-5C1F-077F-6FC5-602AC1AE644D}" = CCC Help Danish
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 51
"{275E9C49-C72F-D754-DEB7-77F10A9C00D8}" = CCC Help Japanese
"{291B3A3B-F808-45B8-8113-DF232FCB6C82}" = Microsoft .NET Compact Framework 3.5
"{2A83AD05-56E6-3FBD-8752-B4143162EF59}" = Google Talk Plugin
"{30049739-BE95-6591-B504-E6D7057D49CC}" = CCC Help Spanish
"{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1" = lightshot-4.3.0.20
"{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
"{3F1EB155-F96E-EB7B-2EF2-7375490E0FA9}" = CCC Help English
"{415030B8-3E8B-462A-8C03-41D95AA3AB3B}" = Medal of Honor (TM)
"{434D0FA1-3E0C-4D03-A5D4-5E1000008100}" = F1 2011
"{46ED2B64-85C7-4E1F-920C-A555B21F2E4C}" = NVIDIA PhysX
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B023D7B-9E67-795D-FB31-B5E1F6DCA451}" = CCC Help Italian
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.11
"{50542AEE-76BD-4BCD-A890-E2FF4D4E051A}" = Camtasia Studio 8
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{55F6C486-8C75-2A72-DAFE-CE78A624C9F7}" = CCC Help Russian
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{5AD96F94-8A55-FD67-162F-7319028AFFFD}_is1" = ESET Smart Security 6 Licencia Navdy version for Windows
"{5AF23993-7152-1620-E43F-1B4542FB4F84}" = CCC Help Thai
"{5BCD9B46-63E5-4079-8677-1963D5B06922}_is1" = FIFA 13 verze 1.0
"{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
"{5E21B617-F52E-BB10-92F9-C8AB2C799A8A}" = Adobe Download Assistant
"{5F189DF5-2D05-472B-9091-84D9848AE48B}{e9f32388}" = GS Supporter 1.80
"{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{63326924-3CAF-C858-3A8F-8598C87019D7}" = Catalyst Control Center
"{63822E89-11AA-F8EC-D433-F72A85799EC0}" = CCC Help Greek
"{652B48CA-165B-4671-9415-2B477B20CE82}_is1" = Emergency 4
"{65BE85A8-13BB-4B4A-B1AF-EC6054292C00}_is1" = The Walking Dead Epizody 1-5 verze 1.0
"{66361420-4905-AEB8-17AE-172FDD164A7E}" = CCC Help Polish
"{6889EE56-1816-4E89-94DF-9F56E7804039}_is1" = Counter-Strike 1.6 Non-Steam patch v36
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{769F2A4B-84A3-9486-ADD2-9E5AB4B4E1E3}" = Catalyst Control Center InstallProxy
"{79BF4901-1EC4-4726-B3C2-A7859706C6E7}" = League of Legends
"{827B97A9-B347-4110-9F89-37AF2B758F94}" = NHL™ 09
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8773DD1C-5FB2-95B5-5A93-0EFEAC900A4D}" = CCC Help Norwegian
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8CCBB0BF-9CC1-1A65-BB93-56012A460EE6}" = CCC Help Portuguese
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9AF7D6F5-50A5-432C-9F7B-83BCE03B11A0}" = SpinTires Tech Demo (June 060613)
"{9AFFF2F6-527F-4B76-821D-839298C070F9}" = Commandos Strike Force
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A0A3CE05-96CB-52E9-434E-074F3BB7807E}" = CCC Help Turkish
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A407FC22-36BF-4C82-A516-59D94BC505A9}" = System Requirements Lab Detection
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A724605D-B399-4304-B8C7-33B3EF7D4677}" = Bully Scholarship Edition
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9C64319-932F-D02B-B14C-FFFC3EC49E77}" = CCC Help Chinese Standard
"{AA7A2800-1E75-4240-855B-03AFF8E5171E}" = FIFA 14
"{AB67580-257C-45FF-B8F4-C8C30682091A}_is1" = SIW version 2011.10.29
"{AEDBD563-24BB-4EE3-8366-A654DAC2D988}" = Mirror's Edge™
"{B3653588-3AC0-4A1D-950F-D96531E84374}" = DayZ Commander
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B810D852-DFD6-DISOH-89A5-CC4D47756DAF}_is1" = Dishonored version 5.1
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C09DB932-7619-7B56-30E3-C0454811D6D7}" = CCC Help Korean
"{C22A4697-BD77-ACB1-744F-1FD0A0BFF798}" = CCC Help Swedish
"{C3592426-531E-4110-911D-BFECE2CE284C}" = osu!
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CD9D0827-A6D6-4E2C-B31E-23F01577E27B}" = BlueStacks Notification Center
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.9 Game
"{D4B457B2-260F-C561-CA87-703BD3B724CA}" = Catalyst Control Center Graphics Previews Common
"{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh
"{D6CDB506-297D-AE70-0EF6-DE5185F961BE}" = CCC Help Chinese Traditional
"{DD85D6BF-4787-4A93-99A5-3F0CF0AE8834}" = Internet Explorer Toolbar 4.8 by SweetPacks
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E5F05232-96B6-4552-A480-785A60A94B21}" = System Requirements Lab CYRI
"{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
"{ECFD508E-68A2-91B2-46DD-1D03D783D94B}" = Catalyst Control Center Localization All
"{EDE361D5-35A5-DA7D-3462-C3DABD24029B}" = CCC Help Hungarian
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1E7DD6A-AE2D-D706-BEB3-937F76CA6AE9}" = CCC Help Finnish
"{F47455A0-B827-11E2-870C-984BE15F174E}" = Evernote v. 4.6.5
"{F56F54DD-BCB2-1221-2CB7-E983A5CF9D15}" = CCC Help Dutch
"{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}" = SimCity™
"{F8A47958-47CC-4B57-AE7D-7DDC0A86BEF5}" = XSplit Broadcaster
"«3D Číńňđóęňîđ 2.2. Äîěŕří˙˙ âĺđńč˙»_is1" = «3D Číńňđóęňîđ 2.2.0 Äîěŕří˙˙ âĺđńč˙»
"1ClickDownload" = FTDownloader
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 12.0
"AIDA64 Extreme Edition_is1" = AIDA64 Extreme Edition v2.80
"Applian FLV and Media Player" = Applian FLV and Media Player 3.1.1.12
"ArnA 2: Combined Operations" = ArnA 2: Combined Operations
"ASIO4ALL" = ASIO4ALL
"Assassins Creed 4 Black Flag_is1" = Assassins Creed 4 Black Flag
"aTube Catcher" = aTube Catcher
"Audacity_is1" = Audacity 2.0.3
"Bandicam" = Bandicam
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"Batman Arkham Origins_is1" = Batman Arkham Origins, âĺđńč˙ 1.0.0.0
"Battle.net" = Battle.net
"Battlelog Web Plugins" = Battlelog Web Plugins
"BattlEye for A2" = BattlEye Uninstall
"BattlEye for OA" = BattlEye for OA Uninstall
"bi_uninstaller" = Bundled software uninstaller
"BlueStacks App Player" = BlueStacks App Player
"com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
"DAEMON Tools Lite" = DAEMON Tools Lite
"Dead Island Riptide_is1" = Dead Island Riptide 1.4.0
"Deckadance" = Deckadance
"Dishonored 1.00" = Dishonored 1.00
"Driver Genius Professional Edition_is1" = Driver Genius Professional Edition
"ESN Sonar-0.70.4" = ESN Sonar
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50
"Far Cry 3_is1" = Far Cry 3 v1.01
"FIFA 14_is1" = FIFA 14 1.2
"FL Studio 10" = FL Studio 10
"Floorball League_is1" = Floorball League 1.0
"Flvto Youtube Downloader" = Flvto Youtube Downloader
"Fraps" = Fraps (remove only)
"FreeArc" = FreeArc 0.666
"FreeFixer1.07" = FreeFixer
"GFWL_{434D0FA1-3E0C-4D03-A5D4-5E1000008100}" = F1 2011
"GOGPACKREUS_is1" = Reus
"Google Chrome" = Google Chrome
"Gunpoint Exclusive Edition 1.0" = Gunpoint Exclusive Edition 1.0
"Hearthstone" = Hearthstone
"Heroes of Might and Magic V - Collectors Edition3.1" = Heroes of Might and Magic V - Collectors Edition
"Hitman Absolution_is1" = Hitman Absolution
"IL Download Manager" = IL Download Manager
"InstallShield_{A724605D-B399-4304-B8C7-33B3EF7D4677}" = Bully Scholarship Edition
"KLiteCodecPack_is1" = K-Lite Codec Pack 9.9.5 (Full)
"League of Legends 3.0.1" = League of Legends
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Mark of the Ninja_is1" = Mark of the Ninja
"Metin2_is1" = Metin2
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Mozilla Firefox 22.0 (x86 cs)" = Mozilla Firefox 22.0 (x86 cs)
"Need for Speed Hot Pursuit_R.G. Mechanics_is1" = Need for Speed Hot Pursuit
"Open Broadcaster Software" = Open Broadcaster Software
"OpenAL" = OpenAL
"Opera 12.16.1860" = Opera 12.16
"Orcs Must Die 2_is1" = Orcs Must Die 2
"Origin" = Origin
"Perspective" = Perspective 1.0
"PSPad editor_is1" = PSPad editor
"PunkBusterSvc" = PunkBuster Services
"QuadcoreM2 1.12.2012" = QuadcoreM2
"R2FtZURldlR5Y29vbnYxMzI=_is1" = Game Dev Tycoon v1.3.2 (c) Greenheart Games version 1
"Rockstar Games Social Club" = Rockstar Games Social Club
"somotomoviestoolbar1CR" = Movies Toolbar for Chrome (Dist. by Somoto Ltd.)
"SP_4e24eecb" = Search Assistant WebSearch 1.74
"SP_e14dcdfa" = ContinueToSave 1.74
"Steam App 10" = Counter-Strike
"Steam App 11020" = TrackMania Nations Forever
"Steam App 113200" = The Binding of Isaac
"Steam App 1250" = Killing Floor
"Steam App 204300" = Awesomenauts
"Steam App 218740" = Pid
"Steam App 219540" = Arma 2: Operation Arrowhead Beta
"Steam App 224540" = Ace of Spades
"Steam App 228800" = Arma 3 Alpha Lite
"Steam App 231430" = Company of Heroes 2 – OPEN BETA
"Steam App 259080" = Just Cause 2: Multiplayer Mod
"Steam App 33910" = Arma 2
"Steam App 33930" = Arma 2: Operation Arrowhead
"Steam App 35420" = Killing Floor Mod: Defence Alliance 2
"Steam App 42710" = Call of Duty: Black Ops - Multiplayer
"Steam App 49520" = Borderlands 2
"Steam App 50130" = Mafia II
"Steam App 550" = Left 4 Dead 2
"Steam App 55230" = Saints Row: The Third
"Steam App 570" = Dota 2
"Steam App 730" = Counter-Strike: Global Offensive
"Steam App 80" = Counter-Strike: Condition Zero
"Steam App 8190" = Just Cause 2
"SWAT 4 1.1" = SWAT 4 1.1
"SweetIM Bundle by SweetPacks" = SweetIM Bundle by SweetPacks
"TeamViewer 9" = TeamViewer 9
"The Amazing Spider-Man_is1" = The Amazing Spider-Man
"The Walking Dead Season 2 EP 2_is1" = The Walking Dead Season 2 EP 2
"TkFSVVRPU0hJUFBVREVOVWx0aW1hdGVOaW5qYVNUT1JNM0Z1~D4302771_is1" = NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst
"Tomb Raider 2013_is1" = Tomb Raider 2013
"TotalRecorder" = Total Recorder 8.5 Standard Edition
"UltraISO_is1" = UltraISO Premium V9.36
"Uplay" = Uplay
"urna css_is1" = Counter-strike source v18
"uTorrentControl_v2 Toolbar" = uTorrentControl_v2 Toolbar
"V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1" = WRC 4 FIA World Rally Championship
"VGhlV29sZkFtb25nVXM=_is1" = The Wolf Among Us
"VGhlV2Fsa2luZ0RlYWRTZWFzb24y_is1" = The Walking Dead: Season 2
"VLC media player" = VLC media player 2.0.7
"Warcraft III" = Warcraft III
"winscp3_is1" = WinSCP 5.1.4
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-969319244-3774007177-1369147609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"BeamNG-Techdemo-0.3" = BeamNG-Techdemo-0.3 (remove only)
"Dropbox" = Dropbox
"FLV Player" = FLV Player
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"UnityWebPlayer" = Unity Web Player
"uTorrent" = µTorrent
========== Last 20 Event Log Errors ==========
[ ACEEventLog Events ]
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
< End of report >
OTL Extras logfile created on: 8.3.2014 11:49:06 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Zobasek\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16518)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,95 Gb Total Physical Memory | 1,79 Gb Available Physical Memory | 45,32% Memory free
7,90 Gb Paging File | 5,16 Gb Available in Paging File | 65,40% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,51 Gb Total Space | 165,90 Gb Free Space | 17,81% Space Free | Partition Type: NTFS
Drive D: | 1,85 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Drive E: | 1,75 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: ZOBAS | User Name: Zobasek | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.hlp [@ = WinHelpCustomView.Scenario] -- C:\Windows\SysWow64\winhlp32.exe %1
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.hlp [@ = WinHelpCustomView.Scenario] -- C:\Windows\SysWow64\winhlp32.exe %1
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
[HKEY_USERS\.DEFAULT\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
[HKEY_USERS\S-1-5-18\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
[HKEY_USERS\S-1-5-21-969319244-3774007177-1369147609-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --playlist-enqueue "%1" ()
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --no-playlist-enqueue "%1" ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --playlist-enqueue "%1" ()
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithApplianMP] -- "C:\Program Files (x86)\Applian Technologies\Applian FLV and Media Player\amp.exe" -I skins2 --started-from-file --no-playlist-enqueue "%1" ()
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{09763D81-D60E-4FBD-BE38-F2751496CCCD}" = lport=58724 | protocol=6 | dir=in | name=pando media booster |
"{195FCDC4-A3E9-46BA-BD7E-0231254EE9B4}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{26625152-BB30-4435-9CEC-EEEE81D6A485}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{31D9BBED-F341-4DE1-B623-2983D812B22E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{38531196-C585-4846-BE26-567665B92E50}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{3D3E3E65-5718-407E-82F8-634398176C50}" = lport=139 | protocol=6 | dir=in | app=system |
"{43AC9897-7FA5-436F-83A1-F40EBB0F8B8B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{4D3A5285-0E40-462E-BC6D-63AE0895283B}" = lport=137 | protocol=17 | dir=in | app=system |
"{55D50BD4-4784-4252-9A75-2335184EA197}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{5EB2C32A-B6D6-49BD-84BB-7CE6A04287B8}" = lport=58724 | protocol=17 | dir=in | name=pando media booster |
"{62C33F9D-1E90-4D98-99FF-2AEE4799EBDB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6D2296B2-B1AB-4C9D-9E4F-FBD06D72735D}" = lport=58724 | protocol=6 | dir=in | name=pando media booster |
"{7FC43BD1-D2BD-47C4-86EC-5E705375C17F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{85C22D42-E918-48DE-84DF-A7FB56C0EF00}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{95D48E15-822E-4DF9-B56F-9B69F35E80B9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{9B938CDE-3478-4155-9370-2FFD3B7DF779}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{AED49550-2A10-428C-A1C9-DEE26EA8EBFA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{BA10B4FF-02A6-4393-818A-E6C3158BF3D1}" = lport=58724 | protocol=17 | dir=in | name=pando media booster |
"{C9802958-A888-47DC-89EC-F936102913EB}" = lport=138 | protocol=17 | dir=in | app=system |
"{CB67D3F8-7543-43F2-AC7D-0B7E2871C96C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{D482D3E8-6F95-4B92-87BD-6E9CAF92334D}" = lport=445 | protocol=6 | dir=in | app=system |
"{DEC42BBA-5234-461E-9487-56377B998A72}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F853E38D-1669-4B0F-84DC-E9A9F509302F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{024CB1F3-917D-4A7E-B63B-083476F38042}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{0617646B-5211-4019-8BC1-5C91446D7CF2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{082889CE-0948-48B5-9851-7127A7F6EA4E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\game_launcher.exe |
"{0881EB4D-D983-4E8C-9112-76EF5996386A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe |
"{091B549B-0FD1-43B4-8D44-F6A779699973}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{0968ABDC-F0C1-4D39-B021-B2400988E674}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe |
"{0A6BC7BB-5979-4C72-86B8-82123AF1D471}" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\roaming\utorrent\utorrent.exe |
"{0AC24158-BFA1-4CDD-8C18-28B837379A2E}" = dir=in | app=c:\program files\soluto\solutoconsole.exe |
"{0B9B6957-2617-4BC7-B2D9-DB6C9014D931}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\launcher.exe |
"{0DE15F25-2D27-410E-9074-6DC7F275DD96}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{111980E3-F8F4-48D0-A813-75BD120C8FEA}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe |
"{13F695FB-41AE-4F9F-9263-56D9F4D44274}" = protocol=6 | dir=in | app=c:\program files (x86)\codemasters\f1 2011\f1_2011.exe |
"{14A36465-20E5-4B4F-A7F9-89C69767DE3C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\launcher.exe |
"{18BC3CA7-EF29-4019-912D-FA5508CA5DB9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{1A24C99E-BB29-4519-99AD-F3366D5EC95D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2717\agent.exe |
"{1C21B529-E0DE-427E-BC64-F26E9241EDDB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{1EB16603-9439-48B9-AD5C-45E17329CAEF}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\simcity\simcity\simcity.exe |
"{1EEECEC7-314E-46EB-8911-BBFD342FE8A3}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
"{20B3132B-38D7-409E-BA8C-5BDAF24EF381}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{2376AC03-519B-4177-9111-858BC01B9A4B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{238BEC1F-CA81-4779-96E4-EF629443D32B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\pid\pid.exe |
"{243EDAE4-1534-4DC3-B256-B8EF98C91C71}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\simcity\simcity\simcity.exe |
"{28AAE212-632E-4E79-867E-AB8174A7F8AD}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{2ABB52BD-C7B6-48A3-8A4B-BC7807F6AB60}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{2AE9D88D-6892-4DD3-95FE-9924E15B64CE}" = protocol=17 | dir=in | app=c:\program files (x86)\codemasters\f1 2011\f1_2011.exe |
"{2D95DA47-4DF1-4F45-96E9-9742F5DB8F12}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe |
"{310AABDF-53F7-4D31-9A3C-97E425B9F582}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{31DB4B30-AA5B-4CAF-9FA1-6D3C850B6313}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2\justcause2.exe |
"{322FEF0F-3F33-45A4-9ED4-AAEC75EF6695}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{34E0455D-17AE-41F8-86DD-6227B91A110D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe |
"{379BF25A-CB87-4A56-9D0F-97914FC26DE8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{38DEEC70-5AC5-41D3-992A-1920EDF35441}" = dir=in | app=c:\program files\soluto\soluto.exe |
"{39534933-2A46-40E3-8AB1-3C9C084A8ACC}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{3A961346-86E2-44D4-98F0-5C0A4514A36F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{3B0A688C-BCD4-4BF5-89C4-CDF512C26D92}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{3E712788-34B5-4076-BC92-EDA10672F613}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{42AE0BBD-F24D-4AE6-BCEC-56E6F3E52971}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2426\agent.exe |
"{4316F358-7C38-40BA-916D-1FC4018C4671}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{43EABD58-244C-4060-B361-E63E2342C75C}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{46357954-A902-4EBA-891E-52E87D1FC6A7}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\need for speed the run\need for speed the run.exe |
"{47758B53-B477-4FDB-9356-F9E76F57418C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{47E4E30C-88B0-4D70-AE1C-4324A3296578}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{47E91D16-D1F2-4C3D-9C04-4E276F02B144}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe |
"{48DDB1A6-C3A6-4218-B72A-619703E2131B}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{497F9CBA-E739-4B33-8942-8BB7D633D0DF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{4C56D506-1638-4CA2-9489-3646CFB504DA}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe |
"{4D59BD5A-E1D4-4FC1-A196-8AFDABBC9EEA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{5093615F-549B-4721-AA41-1585528F5810}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{50DAD287-258D-4A68-8283-B6A831D00EFC}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"{512B6814-6CBE-4AAB-93DA-B5A99D6B5780}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{53FD73E5-EC89-4B54-8032-D5B719D1782B}" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{54DE4631-25EB-4219-B882-77EC0DB1D702}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{595A83B1-CCF1-42A2-BD6A-2B91F6B8ED28}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2717\agent.exe |
"{59881A1D-FC9C-47DB-BE57-FB4B9AAFEE0D}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\need for speed the run\need for speed the run.exe |
"{5B389ED8-0120-484B-923F-24EBD3EB3D04}" = protocol=17 | dir=in | app=c:\hry\fifa 14\game\fifa14.exe |
"{5B5CD7CF-9243-4465-BA99-DE4690A002F6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2\justcause2.exe |
"{5B8899D1-0E95-427D-B770-8355731B3886}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{5BB682CA-FABA-4FC8-BD22-5A7A02F0E1C8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{5FF29FED-D562-457F-B2EC-1C4FEAA1A704}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe |
"{63890C2A-E1D4-48D2-B03A-86F6973056F9}" = protocol=17 | dir=in | app=c:\windows\syswow64\arfc\wrtc.exe |
"{64AEC286-C88F-4EC8-9A6B-35FC0ECAD49A}" = protocol=6 | dir=in | app=c:\windows\syswow64\arfc\wrtc.exe |
"{65556EFD-21D7-43BB-B89D-7153E5D839EB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{656F14C4-EAC8-40E9-848F-9FCCA8C55E0F}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe |
"{659BA64C-4CB1-4BDC-B3BD-2A383118AA92}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe |
"{66D2E0FC-3458-4CE3-AC1D-AE753E718540}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{67FF60A3-D9BC-4750-A03C-4FE13969B119}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{6C4A3008-B2F6-4C25-AAC6-A895936A8F11}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the binding of isaac\isaac.exe |
"{6C4BF55D-144E-4ACB-8750-766AE704588E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\borderlands2.exe |
"{6C4E338D-5FC1-4145-ABC2-2C1145AE13B2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2581\agent.exe |
"{6C710D60-4DB4-466F-8958-FD8A46BBAC09}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{724B81FE-1B12-4CA3-96F5-9DA1D6E3AA7F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{72C162AD-76DB-4D2A-A641-507C804A515E}" = protocol=6 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{758780C8-AD97-4A58-8758-ACA8AF1A19FC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{75CB4E5C-6ADF-47B7-B20C-37C1004B2482}" = dir=in | app=c:\program files\soluto\solutoremotedirect.exe |
"{78042367-7EA4-4625-A973-117C77DEB3A8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe |
"{7893DA1F-7210-46D9-9A31-70E20DB256EA}" = dir=in | app=c:\program files\soluto\solutoservice.exe |
"{78946783-1A3A-445C-AC72-77A4BA8F31D5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforever.exe |
"{789860F1-0C7F-4B0C-B3E8-98F5A1BBF19D}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{7A20709E-12CC-4181-8885-662086BEE560}" = protocol=17 | dir=in | app=c:\windows\system32\dmwu.exe |
"{7B710075-7FDC-421A-ACD0-BA0ABBE79A89}" = protocol=6 | dir=in | app=c:\hry\fifa 14\game\fifa14.exe |
"{7E3D2B6B-9B48-4A15-8BF9-EB743F6BD529}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\trackmania nations forever\tmforeverlauncher.exe |
"{7F3808BB-0E59-4642-9F6B-7AEF39E85241}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{809447B5-6F1B-46A0-971F-FF7C73ABCEB6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{8339B04F-2D9C-4CF7-A858-37752C197486}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
"{8524EEBF-52A9-4F9A-94E0-E9CE8BF32E80}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{85CD69B9-6590-448B-BFC4-9F835D4F8856}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{86A91C8F-EF16-400F-B384-2FF7BF037993}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{87E855C2-38BB-48BD-AFEF-BBF6FFF4D81F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{883BAAAE-2CB1-4200-AAE1-9093ABF4A5B1}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{890FE893-F3E7-4AAF-85A8-52F781EA3C1C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 3 alpha lite\arma3demo.exe |
"{8ADA9BCC-7E61-4FDE-B570-AFA1EBD119EE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{8B3E7158-5D85-48E9-8C77-230554A9174F}" = dir=in | app=c:\program files\soluto\solutoupdateservice.exe |
"{8DB86020-7935-4E87-A089-43EAE167DBD3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{903473FE-A08C-4505-9251-3C333A6F2B58}" = protocol=6 | dir=in | app=c:\users\zobasek\downloads\solutoinstaller-g79zp04tb85f_u34649231.exe |
"{93DBF23B-619B-4472-9632-1D4B84A5C776}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird.exe |
"{9764F22D-1B06-4D77-A6AC-0B47585157B7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{985E976C-1BBB-4809-BD27-23D0E7B719CF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird.exe |
"{997DE80D-1E66-4C71-AF09-9253A2C1F121}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\mirrors edge\binaries\mirrorsedge.exe |
"{9E37A781-9B85-47D2-AEDC-00B762D0042B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{9E6E1DEF-09CE-474E-8382-7A4B94EF850A}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\rockstar games social club\rgsclauncher.exe |
"{9E8684D9-E8F9-487B-8A0E-D80126851204}" = protocol=6 | dir=in | app=c:\windows\system32\dmwu.exe |
"{9F76DD9B-8268-4BBA-93F1-4B9CC3EBBFA6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\awesomenauts\awesomenautslauncher.exe |
"{A10EE800-B565-4922-A647-4AE8108F9E59}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A25419CB-916C-4AB6-A011-0947DC15D390}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{AC3E9738-CBF0-42FD-8B91-637A06150DF6}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2426\agent.exe |
"{B16FDB4F-36A3-4AA6-8828-77040FA5A16C}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{B35D1AF7-9249-4255-82F1-F57604E44509}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\just cause 2 - multiplayer mod\jcmplauncher.exe |
"{B3C6DBB7-E3D4-4424-AC4F-3A78587C2D2B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{B707334C-892A-4491-98B1-E1A5BB81F96E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{B7C9225A-51C4-4055-8D08-99A4E11FBF9E}" = protocol=17 | dir=in | app=c:\users\zobasek\downloads\solutoinstaller-g79zp04tb85f_u34649231.exe |
"{BD27872F-1CD6-4616-AF53-46A1C9502B17}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{BE967F85-CBC3-4DBA-AA62-0C6B5CCF80CD}" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\roaming\utorrent\utorrent.exe |
"{C19B8A1B-42EE-4FAE-B6B9-BF2BD30E47E9}" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\local\google\google talk plugin\googletalkplugin.exe |
"{C68154C5-5AD8-4F11-904D-138BDBBF3091}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{C8EA10CF-D3FD-403E-8235-FEC762230C12}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\the binding of isaac\isaac.exe |
"{C9555952-73D5-4841-BF77-B7DC285B6DD0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops\blackopsmp.exe |
"{CBDC678B-A587-4774-8719-476C35E58C09}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\half-life\hl.exe |
"{CC70D5DC-2B33-4037-91BA-E7269AFBC0AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{CDAAEE18-86A9-4A77-A137-7BA93D05189B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\awesomenauts\awesomenautslauncher.exe |
"{D0CAE5D5-97BC-4C8B-A227-2CEB364A96CF}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe |
"{D2589F42-89F4-4271-844C-AB9C9DA7CD7A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{D28A50B8-4E34-4FFC-B451-6BF3E6C951A1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{D3A08A1A-5555-43DC-94CC-A7AEC6B6F39C}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{D3E9A7A6-F235-4116-8486-61DBFFA8A4B7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\pid\pid.exe |
"{D8AB9466-7E78-4B19-AC6A-76D20069593D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2581\agent.exe |
"{D9468E06-245F-408E-882C-A6EA49369F91}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2514\agent.exe |
"{DE42F69D-5074-4F0A-A351-6BDED6F0C869}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe |
"{E2DFC7C8-CB36-4268-9EFD-9E13DF421D8D}" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\roaming\dropbox\bin\dropbox.exe |
"{E4417B3D-69F6-4716-9E6E-6F7AED241BB8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2\arma2.exe |
"{E4639465-102D-47EA-8C88-3DE50C9D145F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\game_launcher.exe |
"{E55DE057-97A4-452F-89AF-881CA83BD688}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{E60717C1-10F1-4FB5-9A4B-FC5F42D2E20E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2689\agent.exe |
"{E749EDC7-6E70-4AA4-A5F6-57FD257BDD77}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aceofspades\aos.exe |
"{E77BCF41-4132-4598-9908-3BE94D480BBE}" = dir=in | app=c:\program files\soluto\solutocleanup.exe |
"{EA3AF142-5FB4-4F45-985D-3E390CCB11A8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{EAAA0FE4-3702-4EBA-80B4-4D950481690F}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{ED49B7C8-57EA-4BA4-9702-6DFED31B9035}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\borderlands 2\binaries\win32\borderlands2.exe |
"{F0801518-48F9-4577-A4A2-B0C982F4DF3C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 3 alpha lite\arma3demo.exe |
"{F1462E55-17CC-4EA5-AA67-9F415F2190CD}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{F1D804CE-D21D-49AB-A6E8-4D5D2508B202}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe |
"{F26F7FF1-73CD-4FB5-9501-6E3E03CEBBFC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{F3CF97EB-1CA8-4782-B682-C24D61E0B6C8}" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\roaming\dropbox\bin\dropbox.exe |
"{F40D2D28-104A-4384-BDFC-55323752FE37}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{F478589A-9591-4684-AB06-B4E19409B380}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe |
"{F7DAC198-D560-4005-AE6F-E44E214784AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{F8387B7A-65D1-4270-A734-AD9683763B0D}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{F967688C-9D01-4445-AA7A-505DB10453A1}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2514\agent.exe |
"{FA55DE32-4C52-45B7-88F7-0EA6077CC536}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{FB11AB96-8356-42B8-A59D-20C25C4C5DD2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{FB432208-1F25-41A9-8CDB-AEAE7A22144C}" = protocol=17 | dir=in | app=c:\program files (x86)\rockstar games\grand theft auto iv\launchgtaiv.exe |
"{FF840A07-168B-4B7B-9751-C01044182DEB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"TCP Query User{0CCA13D8-6375-4770-8A1F-E161C18A134D}C:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin" = protocol=6 | dir=in | app=c:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin |
"TCP Query User{0E6FC0CF-21C3-4518-B081-F0BAF8CFB1EA}C:\program files (x86)\valve\hl.exe" = protocol=6 | dir=in | app=c:\program files (x86)\valve\hl.exe |
"TCP Query User{1913BE68-D32A-420C-8943-13AB20659510}C:\hry - songy\far cry 3\bin\farcry3_d3d11.exe" = protocol=6 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3_d3d11.exe |
"TCP Query User{2DA9123B-66E7-4AEC-953F-83B765F829DD}C:\program files (x86)\css\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\css\counter-strike source\hl2.exe |
"TCP Query User{2F05A9DB-5FAA-4F5E-A7FA-C70345FF6FA3}D:\easysetupassistant\wr841n\easysetupassistant.exe" = protocol=6 | dir=in | app=d:\easysetupassistant\wr841n\easysetupassistant.exe |
"TCP Query User{389D85D0-388A-48FB-A782-18E0495C9764}C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"TCP Query User{39E797DA-C150-4B01-B2DD-77EC22E4592A}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe |
"TCP Query User{52AA5196-0508-4AFC-A97C-12DF8012CAF7}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |
"TCP Query User{586F4C8A-33AF-4286-A6BA-28B2F1248D0F}C:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe" = protocol=6 | dir=in | app=c:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe |
"TCP Query User{5BC1EC1C-15BF-46E9-8CB7-95248A102EAB}C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"TCP Query User{5DAE930A-9695-4B7F-B182-D36F95CAC1B4}C:\program files (x86)\quadcorem2\pack\core.bin" = protocol=6 | dir=in | app=c:\program files (x86)\quadcorem2\pack\core.bin |
"TCP Query User{6A5A222A-E434-4301-81F8-54749B772E16}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"TCP Query User{6C16711C-DE94-4339-B266-6E3FB01D272F}C:\program files (x86)\assassins creed iii\ac3sp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\assassins creed iii\ac3sp.exe |
"TCP Query User{75E7E8B0-A702-4688-A15A-6B2CBA15584B}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe |
"TCP Query User{828C65E8-1DAE-48B5-BD1B-C624C0064979}C:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe |
"TCP Query User{838A60B1-11A2-4771-998E-C7DD2568E44A}C:\hry - songy\simcity\start.exe" = protocol=6 | dir=in | app=c:\hry - songy\simcity\start.exe |
"TCP Query User{88FC29FF-CA61-4A4C-94E5-6EAF03A281C8}C:\hry - songy\far cry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3.exe |
"TCP Query User{AC158CE4-839A-453A-9204-593F5EDCDAB2}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"TCP Query User{CD029DFB-5EDF-4C0F-902A-32CFFC6A92D4}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |
"TCP Query User{CD3E3980-C47B-4223-B94F-A234612263D4}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{D973B451-461C-4C8E-8C79-9A16EB4BAF8E}C:\hry - songy\far cry 3\bin\fc3editor.exe" = protocol=6 | dir=in | app=c:\hry - songy\far cry 3\bin\fc3editor.exe |
"TCP Query User{DC8561AD-8C4C-410C-9B3E-59DCA0227DB6}C:\program files (x86)\origin games\medal of honor\binaries\moh.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\medal of honor\binaries\moh.exe |
"TCP Query User{E15CC48D-350C-4B71-A8B2-CBD941B2620A}C:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe" = protocol=6 | dir=in | app=c:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe |
"TCP Query User{EF5035D8-B838-4022-B8CD-8BEAA9B9EF5F}C:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe |
"TCP Query User{F5866396-A575-4B80-ABA3-0288F9DBFA08}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe" = protocol=6 | dir=in | app=c:\program files (x86)\dishonored\binaries\win32\dishonored.exe |
"UDP Query User{00585DAB-6CD7-4552-8B9F-3130E253F13E}D:\easysetupassistant\wr841n\easysetupassistant.exe" = protocol=17 | dir=in | app=d:\easysetupassistant\wr841n\easysetupassistant.exe |
"UDP Query User{08A1672D-55ED-453D-8430-C373A68E03FA}C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe |
"UDP Query User{0EC09D8F-8709-45FB-8AAE-379FCF542149}C:\program files (x86)\origin games\medal of honor\binaries\moh.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\medal of honor\binaries\moh.exe |
"UDP Query User{15317001-6F76-4CC2-9A42-6D443FF3DD63}C:\hry - songy\far cry 3\bin\fc3editor.exe" = protocol=17 | dir=in | app=c:\hry - songy\far cry 3\bin\fc3editor.exe |
"UDP Query User{23F238CE-2E15-4C9A-8B16-780167D9D46E}C:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe" = protocol=17 | dir=in | app=c:\program files (x86)\bethesda softworks\dishonored\binaries\win32\dishonored.exe |
"UDP Query User{29303358-0C1F-4B3B-AA1E-2F092E99EAFD}C:\program files (x86)\fifa 13\game\fifa13.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fifa 13\game\fifa13.exe |
"UDP Query User{2F49FB49-0137-48EF-A1FF-06D9B34DFCEB}C:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe" = protocol=17 | dir=in | app=c:\hry - songy\ubisoft\assassin's creed brotherhood\acbsp.exe |
"UDP Query User{40AFDB3F-2F13-4441-AF09-4A3984D3F70E}C:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\zobas3\team fortress 2\hl2.exe |
"UDP Query User{59F24839-8E30-4103-AC48-6E464B5B5A4E}C:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowhead\expansion\beta\arma2oa.exe |
"UDP Query User{5F5DB8A9-933B-47D2-BE60-860CDE09E19A}C:\program files (x86)\quadcorem2\pack\core.bin" = protocol=17 | dir=in | app=c:\program files (x86)\quadcorem2\pack\core.bin |
"UDP Query User{5F9D2836-C684-481C-B936-AFE29B127CE7}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"UDP Query User{6E30D4DB-BB65-47EF-91A4-BB323A0B99AA}C:\program files (x86)\valve\hl.exe" = protocol=17 | dir=in | app=c:\program files (x86)\valve\hl.exe |
"UDP Query User{84F30005-89BB-40D4-A6E6-EBD03866C7FC}C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe |
"UDP Query User{8E57F5F6-CAB4-45A9-88F0-A431DA534812}C:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\r.g. mechanics\need for speed hot pursuit\nfs11.exe |
"UDP Query User{96549182-0E6F-4CD0-98FF-04656095B067}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{9B738241-277F-44CE-A7FD-C8296209502E}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |
"UDP Query User{A57C7AFB-7B26-4543-AF2D-4A514D988609}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |
"UDP Query User{A6280EA7-9541-4D9C-8EAE-9E9E1705F6F0}C:\hry - songy\far cry 3\bin\farcry3_d3d11.exe" = protocol=17 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3_d3d11.exe |
"UDP Query User{BAD31E09-644C-4FE4-90B3-731ADD28CBD5}C:\hry - songy\far cry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=c:\hry - songy\far cry 3\bin\farcry3.exe |
"UDP Query User{DA89F7D0-8205-4A53-A0A3-F88D7A5E1CB7}C:\hry - songy\simcity\start.exe" = protocol=17 | dir=in | app=c:\hry - songy\simcity\start.exe |
"UDP Query User{E3F8843C-B122-43BC-924D-362AD22314B8}C:\program files (x86)\assassins creed iii\ac3sp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\assassins creed iii\ac3sp.exe |
"UDP Query User{ED9D6301-26EA-49B3-AC18-CE1BAECD4202}C:\program files (x86)\css\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\css\counter-strike source\hl2.exe |
"UDP Query User{F42871C6-E0AD-416E-AFCC-5ECBA42549A9}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"UDP Query User{F4E0C930-FEBD-4AC5-9C7F-91C7B3DB2192}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe" = protocol=17 | dir=in | app=c:\program files (x86)\dishonored\binaries\win32\dishonored.exe |
"UDP Query User{F8FEF517-EABE-4D74-891E-6764085240EB}C:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin" = protocol=17 | dir=in | app=c:\users\zobasek\appdata\local\temp\7zo1c82.tmp\lw.bin |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{314DDDC0-E935-11E0-8F9F-F04DA23A5C58}" = Vegas Pro 11.0 (64-bit)
"{33C19CDE-E935-11E0-A0DA-F04DA23A5C58}" = MSVCRT Redists
"{3C06A39F-B090-4116-B531-62E0B1BAE9C0}" = Soluto
"{4975DE61-6BF6-B9BC-1FDE-C04C5EC78E4C}" = AMD Media Foundation Decoders
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{50813B8C-FCBB-3C61-8039-EAAA93029066}" = Microsoft .NET Framework 4.5.1 (CSY)
"{5E03A267-415E-5383-FA8F-3CE4145663B9}" = AMD Catalyst Install Manager
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89EE4A30-080F-2C95-6F78-C98D18FBD74D}" = AMD Accelerated Video Transcoding
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029" = Microsoft .NET Framework 4.5.1 (čeština)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{9CF11D16-ECEB-90A5-A028-CA9E068D848B}" = ccc-utility64
"{A1188CD2-9C9F-11E2-B88F-F04DA23A5C58}" = Vegas Pro 12.0 (64-bit)
"{A528BDDE-9C9F-11E2-9F0C-F04DA23A5C58}" = MSVCRT Redists
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{D54ADF6B-2164-4394-AF70-2778422E9DD8}" = Intel(R) Network Connections 17.4.95.0
"{DFDADCB2-8C17-E480-A8D5-724CEA1F0676}" = AMD Drag and Drop Transcoding
"OptimizerPro" = OptimizerPro
"PROSetDX" = Intel(R) Network Connections 17.4.95.0
"SecretSauce" = SecretSauce
"Sublime Text 2_is1" = Sublime Text 2.0.2
"WinRAR archiver" = WinRAR
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1" = Live Update 5
"{017F8447-2A1D-0DDB-B5D7-CA2BFACE2886}" = CCC Help French
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{054E9A1C-3EA2-C657-E787-FD8DCF5C3D3B}" = CCC Help Czech
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0A5B39D2-7ED6-4779-BCC9-37F381139DB3}" = Adobe AIR
"{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1" = MSI Kombustor 2.5.0
"{0EDC9BA0-016E-406a-86DA-04FC1BE00C21}" = Need for Speed™ The Run
"{101F30DF-3204-473B-A0DD-037A53983DEA}" = QuadcoreM2
"{13B792AA-C078-43A4-8A3A-8B12D629940D}" = Counter-Strike 1.6
"{141FBF87-4FB4-41E1-80B4-E1389268D541}" = GameShadow
"{1DE2BD51-0300-772D-5E18-F337D95D5687}" = CCC Help German
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20E23A40-38E5-4DD6-B738-BC8097AE66B6}_is1" = FTL version 1.03.3
"{224E8FEB-5C1F-077F-6FC5-602AC1AE644D}" = CCC Help Danish
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 51
"{275E9C49-C72F-D754-DEB7-77F10A9C00D8}" = CCC Help Japanese
"{291B3A3B-F808-45B8-8113-DF232FCB6C82}" = Microsoft .NET Compact Framework 3.5
"{2A83AD05-56E6-3FBD-8752-B4143162EF59}" = Google Talk Plugin
"{30049739-BE95-6591-B504-E6D7057D49CC}" = CCC Help Spanish
"{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1" = lightshot-4.3.0.20
"{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
"{3F1EB155-F96E-EB7B-2EF2-7375490E0FA9}" = CCC Help English
"{415030B8-3E8B-462A-8C03-41D95AA3AB3B}" = Medal of Honor (TM)
"{434D0FA1-3E0C-4D03-A5D4-5E1000008100}" = F1 2011
"{46ED2B64-85C7-4E1F-920C-A555B21F2E4C}" = NVIDIA PhysX
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B023D7B-9E67-795D-FB31-B5E1F6DCA451}" = CCC Help Italian
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.11
"{50542AEE-76BD-4BCD-A890-E2FF4D4E051A}" = Camtasia Studio 8
"{5454083B-1308-4485-BF17-1110000D8301}" = Grand Theft Auto IV
"{55F6C486-8C75-2A72-DAFE-CE78A624C9F7}" = CCC Help Russian
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{5AD96F94-8A55-FD67-162F-7319028AFFFD}_is1" = ESET Smart Security 6 Licencia Navdy version for Windows
"{5AF23993-7152-1620-E43F-1B4542FB4F84}" = CCC Help Thai
"{5BCD9B46-63E5-4079-8677-1963D5B06922}_is1" = FIFA 13 verze 1.0
"{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
"{5E21B617-F52E-BB10-92F9-C8AB2C799A8A}" = Adobe Download Assistant
"{5F189DF5-2D05-472B-9091-84D9848AE48B}{e9f32388}" = GS Supporter 1.80
"{6033673D-2530-4587-8AD0-EB059FC263F9}" = Crysis® 2
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{63326924-3CAF-C858-3A8F-8598C87019D7}" = Catalyst Control Center
"{63822E89-11AA-F8EC-D433-F72A85799EC0}" = CCC Help Greek
"{652B48CA-165B-4671-9415-2B477B20CE82}_is1" = Emergency 4
"{65BE85A8-13BB-4B4A-B1AF-EC6054292C00}_is1" = The Walking Dead Epizody 1-5 verze 1.0
"{66361420-4905-AEB8-17AE-172FDD164A7E}" = CCC Help Polish
"{6889EE56-1816-4E89-94DF-9F56E7804039}_is1" = Counter-Strike 1.6 Non-Steam patch v36
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}" = Adobe Photoshop CS6
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{769F2A4B-84A3-9486-ADD2-9E5AB4B4E1E3}" = Catalyst Control Center InstallProxy
"{79BF4901-1EC4-4726-B3C2-A7859706C6E7}" = League of Legends
"{827B97A9-B347-4110-9F89-37AF2B758F94}" = NHL™ 09
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8773DD1C-5FB2-95B5-5A93-0EFEAC900A4D}" = CCC Help Norwegian
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8CCBB0BF-9CC1-1A65-BB93-56012A460EE6}" = CCC Help Portuguese
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9AF7D6F5-50A5-432C-9F7B-83BCE03B11A0}" = SpinTires Tech Demo (June 060613)
"{9AFFF2F6-527F-4B76-821D-839298C070F9}" = Commandos Strike Force
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A0A3CE05-96CB-52E9-434E-074F3BB7807E}" = CCC Help Turkish
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A407FC22-36BF-4C82-A516-59D94BC505A9}" = System Requirements Lab Detection
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A724605D-B399-4304-B8C7-33B3EF7D4677}" = Bully Scholarship Edition
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9C64319-932F-D02B-B14C-FFFC3EC49E77}" = CCC Help Chinese Standard
"{AA7A2800-1E75-4240-855B-03AFF8E5171E}" = FIFA 14
"{AB67580-257C-45FF-B8F4-C8C30682091A}_is1" = SIW version 2011.10.29
"{AEDBD563-24BB-4EE3-8366-A654DAC2D988}" = Mirror's Edge™
"{B3653588-3AC0-4A1D-950F-D96531E84374}" = DayZ Commander
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B810D852-DFD6-DISOH-89A5-CC4D47756DAF}_is1" = Dishonored version 5.1
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C09DB932-7619-7B56-30E3-C0454811D6D7}" = CCC Help Korean
"{C22A4697-BD77-ACB1-744F-1FD0A0BFF798}" = CCC Help Swedish
"{C3592426-531E-4110-911D-BFECE2CE284C}" = osu!
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CD9D0827-A6D6-4E2C-B31E-23F01577E27B}" = BlueStacks Notification Center
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.4.9 Game
"{D4B457B2-260F-C561-CA87-703BD3B724CA}" = Catalyst Control Center Graphics Previews Common
"{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh
"{D6CDB506-297D-AE70-0EF6-DE5185F961BE}" = CCC Help Chinese Traditional
"{DD85D6BF-4787-4A93-99A5-3F0CF0AE8834}" = Internet Explorer Toolbar 4.8 by SweetPacks
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E5F05232-96B6-4552-A480-785A60A94B21}" = System Requirements Lab CYRI
"{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
"{ECFD508E-68A2-91B2-46DD-1D03D783D94B}" = Catalyst Control Center Localization All
"{EDE361D5-35A5-DA7D-3462-C3DABD24029B}" = CCC Help Hungarian
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1E7DD6A-AE2D-D706-BEB3-937F76CA6AE9}" = CCC Help Finnish
"{F47455A0-B827-11E2-870C-984BE15F174E}" = Evernote v. 4.6.5
"{F56F54DD-BCB2-1221-2CB7-E983A5CF9D15}" = CCC Help Dutch
"{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}" = SimCity™
"{F8A47958-47CC-4B57-AE7D-7DDC0A86BEF5}" = XSplit Broadcaster
"«3D Číńňđóęňîđ 2.2. Äîěŕří˙˙ âĺđńč˙»_is1" = «3D Číńňđóęňîđ 2.2.0 Äîěŕří˙˙ âĺđńč˙»
"1ClickDownload" = FTDownloader
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 12.0
"AIDA64 Extreme Edition_is1" = AIDA64 Extreme Edition v2.80
"Applian FLV and Media Player" = Applian FLV and Media Player 3.1.1.12
"ArnA 2: Combined Operations" = ArnA 2: Combined Operations
"ASIO4ALL" = ASIO4ALL
"Assassins Creed 4 Black Flag_is1" = Assassins Creed 4 Black Flag
"aTube Catcher" = aTube Catcher
"Audacity_is1" = Audacity 2.0.3
"Bandicam" = Bandicam
"BandiMPEG1" = Bandisoft MPEG-1 Decoder
"Batman Arkham Origins_is1" = Batman Arkham Origins, âĺđńč˙ 1.0.0.0
"Battle.net" = Battle.net
"Battlelog Web Plugins" = Battlelog Web Plugins
"BattlEye for A2" = BattlEye Uninstall
"BattlEye for OA" = BattlEye for OA Uninstall
"bi_uninstaller" = Bundled software uninstaller
"BlueStacks App Player" = BlueStacks App Player
"com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
"DAEMON Tools Lite" = DAEMON Tools Lite
"Dead Island Riptide_is1" = Dead Island Riptide 1.4.0
"Deckadance" = Deckadance
"Dishonored 1.00" = Dishonored 1.00
"Driver Genius Professional Edition_is1" = Driver Genius Professional Edition
"ESN Sonar-0.70.4" = ESN Sonar
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50
"Far Cry 3_is1" = Far Cry 3 v1.01
"FIFA 14_is1" = FIFA 14 1.2
"FL Studio 10" = FL Studio 10
"Floorball League_is1" = Floorball League 1.0
"Flvto Youtube Downloader" = Flvto Youtube Downloader
"Fraps" = Fraps (remove only)
"FreeArc" = FreeArc 0.666
"FreeFixer1.07" = FreeFixer
"GFWL_{434D0FA1-3E0C-4D03-A5D4-5E1000008100}" = F1 2011
"GOGPACKREUS_is1" = Reus
"Google Chrome" = Google Chrome
"Gunpoint Exclusive Edition 1.0" = Gunpoint Exclusive Edition 1.0
"Hearthstone" = Hearthstone
"Heroes of Might and Magic V - Collectors Edition3.1" = Heroes of Might and Magic V - Collectors Edition
"Hitman Absolution_is1" = Hitman Absolution
"IL Download Manager" = IL Download Manager
"InstallShield_{A724605D-B399-4304-B8C7-33B3EF7D4677}" = Bully Scholarship Edition
"KLiteCodecPack_is1" = K-Lite Codec Pack 9.9.5 (Full)
"League of Legends 3.0.1" = League of Legends
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Mark of the Ninja_is1" = Mark of the Ninja
"Metin2_is1" = Metin2
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Mozilla Firefox 22.0 (x86 cs)" = Mozilla Firefox 22.0 (x86 cs)
"Need for Speed Hot Pursuit_R.G. Mechanics_is1" = Need for Speed Hot Pursuit
"Open Broadcaster Software" = Open Broadcaster Software
"OpenAL" = OpenAL
"Opera 12.16.1860" = Opera 12.16
"Orcs Must Die 2_is1" = Orcs Must Die 2
"Origin" = Origin
"Perspective" = Perspective 1.0
"PSPad editor_is1" = PSPad editor
"PunkBusterSvc" = PunkBuster Services
"QuadcoreM2 1.12.2012" = QuadcoreM2
"R2FtZURldlR5Y29vbnYxMzI=_is1" = Game Dev Tycoon v1.3.2 (c) Greenheart Games version 1
"Rockstar Games Social Club" = Rockstar Games Social Club
"somotomoviestoolbar1CR" = Movies Toolbar for Chrome (Dist. by Somoto Ltd.)
"SP_4e24eecb" = Search Assistant WebSearch 1.74
"SP_e14dcdfa" = ContinueToSave 1.74
"Steam App 10" = Counter-Strike
"Steam App 11020" = TrackMania Nations Forever
"Steam App 113200" = The Binding of Isaac
"Steam App 1250" = Killing Floor
"Steam App 204300" = Awesomenauts
"Steam App 218740" = Pid
"Steam App 219540" = Arma 2: Operation Arrowhead Beta
"Steam App 224540" = Ace of Spades
"Steam App 228800" = Arma 3 Alpha Lite
"Steam App 231430" = Company of Heroes 2 – OPEN BETA
"Steam App 259080" = Just Cause 2: Multiplayer Mod
"Steam App 33910" = Arma 2
"Steam App 33930" = Arma 2: Operation Arrowhead
"Steam App 35420" = Killing Floor Mod: Defence Alliance 2
"Steam App 42710" = Call of Duty: Black Ops - Multiplayer
"Steam App 49520" = Borderlands 2
"Steam App 50130" = Mafia II
"Steam App 550" = Left 4 Dead 2
"Steam App 55230" = Saints Row: The Third
"Steam App 570" = Dota 2
"Steam App 730" = Counter-Strike: Global Offensive
"Steam App 80" = Counter-Strike: Condition Zero
"Steam App 8190" = Just Cause 2
"SWAT 4 1.1" = SWAT 4 1.1
"SweetIM Bundle by SweetPacks" = SweetIM Bundle by SweetPacks
"TeamViewer 9" = TeamViewer 9
"The Amazing Spider-Man_is1" = The Amazing Spider-Man
"The Walking Dead Season 2 EP 2_is1" = The Walking Dead Season 2 EP 2
"TkFSVVRPU0hJUFBVREVOVWx0aW1hdGVOaW5qYVNUT1JNM0Z1~D4302771_is1" = NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst
"Tomb Raider 2013_is1" = Tomb Raider 2013
"TotalRecorder" = Total Recorder 8.5 Standard Edition
"UltraISO_is1" = UltraISO Premium V9.36
"Uplay" = Uplay
"urna css_is1" = Counter-strike source v18
"uTorrentControl_v2 Toolbar" = uTorrentControl_v2 Toolbar
"V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1" = WRC 4 FIA World Rally Championship
"VGhlV29sZkFtb25nVXM=_is1" = The Wolf Among Us
"VGhlV2Fsa2luZ0RlYWRTZWFzb24y_is1" = The Walking Dead: Season 2
"VLC media player" = VLC media player 2.0.7
"Warcraft III" = Warcraft III
"winscp3_is1" = WinSCP 5.1.4
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-969319244-3774007177-1369147609-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"BeamNG-Techdemo-0.3" = BeamNG-Techdemo-0.3 (remove only)
"Dropbox" = Dropbox
"FLV Player" = FLV Player
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"UnityWebPlayer" = Unity Web Player
"uTorrent" = µTorrent
========== Last 20 Event Log Errors ==========
[ ACEEventLog Events ]
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
OTL encountered an error while reading this event log. It may be corrupt.
< End of report >
Re: Samovolné vyskakování reklam v prohlížeči



Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Samovolné vyskakování reklam v prohlížeči



www.malwarebytes.org
Verze: v2014.03.08.07
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16518
Zobasek :: ZOBAS [administrátor]
10.3.2014 17:42:29
MBAM-log-2014-03-10 (20-54-49).txt
Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 842189
Uplynulý čas: 2 hodin, 20 minut, 31 sekund
Nalezené procesy v paměti: 3
C:\Program Files (x86)\SecretSauce\updateSecretSauce.exe (PUP.Optional.SecretSauce.A) -> 2004 -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\utilSecretSauce.exe (PUP.Optional.SecretSauce.A) -> 2072 -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\FilesFrog Update Checker\update_checker.exe (PUP.Optional.FilesFrog.A) -> 2924 -> Nebyla provedena žádná instrukce.
Nalezené moduly v paměti: 1
C:\Program Files (x86)\SecretSauce\bin\SecretSauce.BrowserFilter.Helper.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
Nalezené klíče v registru: 74
HKLM\SYSTEM\CurrentControlSet\Services\Update SecretSauce (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
HKLM\SYSTEM\CurrentControlSet\Services\Util SecretSauce (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{EAF13DCD-7B84-F2E0-B32E-ED3DB2525EC6} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EAF13DCD-7B84-F2E0-B32E-ED3DB2525EC6} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{EAF13DCD-7B84-F2E0-B32E-ED3DB2525EC6} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EAF13DCD-7B84-F2E0-B32E-ED3DB2525EC6} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EAF13DCD-7B84-F2E0-B32E-ED3DB2525EC6} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{11111111-1111-1111-1111-110411901134} (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{44444444-4444-4444-4444-440444904434} (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{55555555-5555-5555-5555-550455905534} (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0049034.BHO.1 (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411901134} (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110411901134} (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411901134} (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{157F390A-EBE0-52DD-7CF8-F913D2833306} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{157F390A-EBE0-52DD-7CF8-F913D2833306} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{157F390A-EBE0-52DD-7CF8-F913D2833306} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{BC9F3B56-8A2D-42E9-74C0-C0A733EAA3B4} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BC9F3B56-8A2D-42E9-74C0-C0A733EAA3B4} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{BC9F3B56-8A2D-42E9-74C0-C0A733EAA3B4} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{BC9F3B56-8A2D-42E9-74C0-C0A733EAA3B4} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BC9F3B56-8A2D-42E9-74C0-C0A733EAA3B4} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{EEE6C358-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\SWEETIE.IEToolbar.1 (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\SWEETIE.IEToolbar (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\Toolbar3.SWEETIE.1 (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\Toolbar3.SWEETIE (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252} (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3444c3c5-6c56-4a16-a453-832b05bf6ea4} (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1} (PUP.Optional.Conduit) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
HKCR\SweetIM_URLSearchHook.ToolbarURLSearchHook.1 (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
HKCR\SweetIM_URLSearchHook.ToolbarURLSearchHook (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C1C6816E-CBB3-A748-85F9-A8B47B68985B} (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9D9BEFAE-9499-F52B-6CC4-94818CCC2AB5} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0E2E068B-E266-EAA6-DED1-C74744249D22} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD} (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-926685765 (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0049034.BHO (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0049034.Sandbox (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCR\CrossriderApp0049034.Sandbox.1 (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} (PUP.Optional.WebSearchInfo) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\WNLT (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\1ClickDownload (PUP.Optional.1ClickDownload.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\somotomoviestoolbar1 (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\AppDataLow\SProtector (PUP.Optional.SProtector.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\AppDataLow\Software\Crossrider (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\BI (PUP.Optional.FilesFrog.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\InstalledBrowserExtensions\installdaddy (PUP.Optional.CrossRider.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\SOMOTO\SDP (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\SAFETYNUT (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.
HKLM\Software\FTdownloader V7.0 (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WNLT (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FTdownloader V7.0 (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BC42E498-941B-E4CC-D280-011229CE3AA1} (PUP.Optional.SearchNewTab.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{BC42E498-941B-E4CC-D280-011229CE3AA1} (PUP.Optional.SearchNewTab.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{BC42E498-941B-E4CC-D280-011229CE3AA1} (PUP.Optional.SearchNewTab.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{BC42E498-941B-E4CC-D280-011229CE3AA1} (PUP.Optional.SearchNewTab.A) -> Nebyla provedena žádná instrukce.
Nalezené hodnoty v registru: 14
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|SDP (PUP.Optional.FilesFrog.A) -> Data: C:\Users\Zobasek\AppData\Local\FilesFrog Update Checker\update_checker.exe /auto -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NextLive (PUP.Optional.NextLive.A) -> Data: C:\Windows\SysWOW64\rundll32.exe "C:\Users\Zobasek\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser|{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Data: 썛愘ᇜ犜ጀ유䞘 -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Data: -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\PROGRAM FILES (X86)\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGHELPERAPP.EXE (PUP.Optional.SweetIM) -> Data: 1 -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\PROGRAM FILES (X86)\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGTOOLBARPROXY.DLL (PUP.Optional.SweetIM) -> Data: 1 -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MSStp (Trojan.Agent.VBS) -> Data: C:\Windows\system32\msstp.vbe -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NtVdmSrv (Malware.Trace) -> Data: C:\Windows\inf\ntvdm.vbe -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\WNLT|URL (PUP.Optional.InstallBrain.A) -> Data: SWEETIM -> Nebyla provedena žádná instrukce.
HKCU\Software\BI|ui_path_filesfrog (PUP.Optional.FilesFrog.A) -> Data: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker -> Nebyla provedena žádná instrukce.
HKCU\Software\Somoto\SDP|affid (PUP.Optional.Somoto.A) -> Data: network_smb_share4rt -> Nebyla provedena žádná instrukce.
HKCU\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Data: {D8B66035-E5C0-11E2-AACC-F8D111051A1C} -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\SafetyNut|browser (PUP.Optional.SafetyNut.A) -> Data: cr -> Nebyla provedena žádná instrukce.
HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Data: {D8B66035-E5C0-11E2-AACC-F8D111051A1C} -> Nebyla provedena žádná instrukce.
Nalezené datové položky v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (PUP.Optional.Datamngr.A) -> Špatný: (c:\progra~3\wincert\win32c~1.dll) Dobrý: () -> Nebyla provedena žádná instrukce.
Nalezené složky: 30
C:\Program Files (x86)\greatsaver (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SafetyNut (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\plugins (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\x86 (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SearchNewTab (PUP.Optional.SearchNewTab) -> Nebyla provedena žádná instrukce.
C:\ProgramData\BetterSoft\OptimizerPro (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\OptimizerPro (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker (PUP.Optional.FilesFrog.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Movies Toolbar\SafetyNut (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Movies Toolbar\SafetyNut\SRTOOL~1 (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Movies Toolbar\SafetyNut\SRTOOL~1\GC (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\Uninstall (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\Uninstall (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\newnext.me (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\newnext.me\cache (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\greatsaver (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\bitstreams (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpebffoameokfhnaaedmefjncfboino (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpebffoameokfhnaaedmefjncfboino\1.0.0_0 (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0 (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 158
C:\Program Files (x86)\SecretSauce\updateSecretSauce.exe (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\utilSecretSauce.exe (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\FilesFrog Update Checker\update_checker.exe (PUP.Optional.FilesFrog.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\greatsaver\Y6X.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-bho.dll (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\FFun2SavE\XN9.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\RemoveTheAdApp\vjXH2.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (PUP.Optional.SweetPacks) -> Nebyla provedena žádná instrukce.
C:\$Recycle.Bin\S-1-5-21-969319244-3774007177-1369147609-1000\$R5X9VFU.exe (PUP.Optional.Installex) -> Nebyla provedena žádná instrukce.
C:\Hry - songy\Hry\Euro Truck Simulator Full Game\DTLite4413-0173.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\AMTLib.dll (PUP.RiskwareTool.CK) -> Nebyla provedena žádná instrukce.
C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\amtlib.dll (PUP.RiskwareTool.CK) -> Nebyla provedena žádná instrukce.
C:\Program Files\WinRAR\keygen.exe (PUP.RiskwareTool.CK) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Activision\The Amazing Spider-Man\skidrow.dll (Trojan.Midhos) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Conduit\Community Alerts\Alert.dll (PUP.Optional.Conduit) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\ESET Smart Security 6 Licencia Navdy\Eset smart security 6 licence navždy\ESET PureFix v2.02 (TimC0de)\ESET PureFix v2.02 (TimC0de).exe (RiskWare.Tool.CK) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-bg.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-bho64.dll (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-buttonutil.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-buttonutil64.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-chromeinstaller.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-codedownloader.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-enabler.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-firefoxinstaller.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-updater.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\utils.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\greatsaver\Y6X.x64.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Packer.ModifiedUPX) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Rockstar Games\GTAčko\LaunchGTAIV.exe (Packer.ModifiedUPX) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\ClearHist.exe (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgcommon.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgconfig.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mghooking.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mglogger.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\ProgramData\continuetosayvie\uninstall.exe (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\FFun2SavE\XN9.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\FFun2SavE\XN9.x64.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\greatsaver\FShA.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\RemoveTheAdApp\vjXH2.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\RemoveTheAdApp\vjXH2.x64.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SearchNewTab\uninstall.exe (PUP.Optional.SilentInstall.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SoftWarehouse\GS.Enabler\GS.Enabler.exe (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\Application Data\Bundled software uninstaller\biclient (1).exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\Application Data\Bundled software uninstaller\biclient.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\AppsHat Mobile Apps\Uninstall.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\FilesFrog Update Checker\uninstall.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\genienext\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TWUK239F\Flvto_Converter_7428[1].exe (PUP.Optional.InstallMonetizer.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\Temp\FLVPlayerSetup.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\Temp\FLVPlayerUpdate_downloader_by_FLVPlayerUpdate.exe (PUP.Optional.Somoto) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Local\Temp\kdkb.exe (Trojan.Downloader) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\nvtray.exe (PUP.Optional.BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\Downloads\DLL-FiLes_com_Fixer_2_9_72_2589_full_!!.exe (PUP.Optional.OneClickDownloader.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\Downloads\GoogleChromeUpdater.exe (Trojan.Downloader) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\Downloads\s7Zip__3832_il76 (1).exe (PUP.Optional.Amonetize) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\Downloads\s7Zip__3832_il76.exe (PUP.Optional.Amonetize) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\Downloads\tb_InnoGames_International_brch.exe (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\mnchqffk.exe (Trojan.BitMiner) -> Nebyla provedena žádná instrukce.
C:\Windows\Installer\29895ab.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\Windows\Setup\SCRIPTS\Windows7Loader.exe (Trojan.Agent.W) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\msstp.vbe (Trojan.Agent.VBS) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\msstp.vbe (Trojan.Agent.VBS) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\nvtray.exe (Trojan.Agent) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\FTdownloader V7.0-chromeinstaller-dev.job (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\FTdownloader V7.0-codedownloader.job (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\FTdownloader V7.0-enabler.job (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\FTdownloader V7.0-firefoxinstaller.job (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\FTdownloader V7.0-updater.job (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\greatsaver\Y6X.tlb (PUP.Optional.GreatSaver.A) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\ntvdm.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\ntvdm.inf (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\ProgramData\Wincert\win32cert.dll (PUP.Optional.Datamngr.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\Wincert\win64cert.dll (PUP.Optional.Datamngr.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\Wincert\win32prop.dll (PUP.Optional.Datamngr.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\Wincert\win64prop.dll (PUP.Optional.Datamngr.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SafetyNut\coordinator.cfg (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SafetyNut\general.cfg (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SafetyNut\S-1-5-21-969319244-3774007177-1369147609-1000.cfg (PUP.Optional.SafetyNut.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\SecretSauce.ico (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\SecretSauceUninstall.exe (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\sqlite3.exe (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\7za.exe (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\SecretSauce.BrowserFilter.Helper.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\SecretSauce.BrowserFilter.Helper.dll.old.54a829de-6065-4c55-9aad-1fc693e6e9f8 (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\SecretSauceBrowserFilter.exe (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\sqlite3.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.BrowserFilter.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.FFUpdate.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.GCUpdate.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.IEUpdate.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SecretSauce\bin\x86\nfapiCSharp.dll (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SearchNewTab\51814eabcb17a.tlb (PUP.Optional.SearchNewTab) -> Nebyla provedena žádná instrukce.
C:\ProgramData\SearchNewTab\settings.ini (PUP.Optional.SearchNewTab) -> Nebyla provedena žádná instrukce.
C:\ProgramData\BetterSoft\OptimizerPro\3036567561.ini (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\OptimizerPro\Custom.dll (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\OptimizerPro\Setup.exe (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\OptimizerPro\Setup.ico (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\OptimizerPro\TsuDll.dll (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\OptimizerPro\_Setup.dll (PUP.Optional.OptimizerPro.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Check for Updates.lnk (PUP.Optional.FilesFrog.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Uninstall.lnk (PUP.Optional.FilesFrog.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Movies Toolbar\SafetyNut\favicon.ico (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Movies Toolbar\SafetyNut\Uninstall.exe (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Movies Toolbar\SafetyNut\SRTOOL~1\GC\install.ico (PUP.Optional.MoviesToolBar.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcm90.dll (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcp90.dll (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcr90.dll (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier.js (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\onstart.js (PUP.Optional.SweetIM.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\Config.bin (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\HSChromeRegSetup.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\SKSetup.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\uninstaller.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\WSSetup.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\Uninstall\msvcp100.dll (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\Uninstall\msvcr100.dll (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\Uninstall\uninstaller.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\WNLT\Installation\Uninstall\UninstallerLauncher.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\Config.bin (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\HSChromeRegSetup.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\SKSetup.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\uninstaller.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\WSSetup.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\Uninstall\msvcp100.dll (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\Uninstall\msvcr100.dll (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\Uninstall\uninstaller.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\WNLT\Installation\Uninstall\UninstallerLauncher.exe (PUP.Optional.InstallBrain.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\newnext.me\nengine.cookie (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zobasek\AppData\Roaming\newnext.me\cache\spark.bin (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\diablo130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\diakgcn121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\libcurl-4.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\libeay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\libidn-11.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\librtmp.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\libssh2.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\phatk121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\poclbm130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\scrypt130511.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\ssleay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\zlib1.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mnchqffk\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpebffoameokfhnaaedmefjncfboino\1.0.0_0\background.js (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpebffoameokfhnaaedmefjncfboino\1.0.0_0\content.js (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpebffoameokfhnaaedmefjncfboino\1.0.0_0\icon.png (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpebffoameokfhnaaedmefjncfboino\1.0.0_0\manifest.json (PUP.Optional.SecretSauce.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-buttonutil.dll (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-buttonutil64.dll (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0-helper.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\FTdownloader V7.0.ico (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\FTdownloader V7.0\Uninstall.exe (PUP.Optional.FTdownloader.A) -> Nebyla provedena žádná instrukce.
(konec)
Re: Samovolné vyskakování reklam v prohlížeči
A cetl jste pravidla fora?zobas píše:![]()
Verze systému je od známého přes neorigo CD.

Hovori jasne http://forum.viry.cz/viewtopic.php?f=12&t=115512
Pomáhat NELZE:
2) Pokud stroj uživatele prokazatelně obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.

Jinak samozrejme podle logu bylo jasne, ze to neni koser, protoze ten crack tam sviti jak majak, krom jinych, mene napadnych stop.
Ale schvalne jsem vas nechal udelat ten test, abyste videl, jak to mate zaprasene

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Samovolné vyskakování reklam v prohlížeči
V tom případě děkuji, ale vlastně neděkuji.
Raději reinstaluji windows, než se tu s tím babrat a prosit o pomoc.
Raději reinstaluji windows, než se tu s tím babrat a prosit o pomoc.
Re: Samovolné vyskakování reklam v prohlížeči
OK 



Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).