Prosím o kontrolu - zamrzá internet
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Prosím o kontrolu - zamrzá internet
Zdravím,
prosím o kontrolu počítače. V pondělí na něm byl otevřen podvodný email, který vyzývá k úhradě pohledávky. Od té doby nefunguje internet přes Internet explorer ani přes Google chrome. Načte se pouze homepage a pak jakoby internet zamrzne. Nedá se kliknout na žádný odkaz, ani přihlásit do emailu.
Pro urychlení přikládám logy z RSIT a Adwcleaneru.
Logfile of random's system information tool 1.08 (written by random/random)
Run by ivana.novakova at 2014-07-03 08:35:48
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 218 GB (76%) free of 288 GB
Total RAM: 1967 MB (25% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:36:03, on 3.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
C:\windows\SysWOW64\taskmgr.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\trend micro\ivana.novakova.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [HPPQVideo] "C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe" -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM2320_MFP_Series -f PQOptimizerVideo.xml -o remindLater
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Firebird] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe -a
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [AdobeChk] C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com//activex/ractrl.cab?lmi=1058
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = stakoplast.local
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HASP License Manager (hasplms) - Unknown owner - C:\windows\system32\hasplms.exe (file missing)
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15335 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\windows\system32\Hpservice.exe
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 28845504
\??\C:\windows\system32\conhost.exe "-304170760-10344127741679342038-9341443961651766819750051381264220625-2092765746
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
crypserv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\hasplms.exe -run
"C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
C:\windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\AVG\AVG10\avgam.exe"
"C:\Program Files (x86)\AVG\AVG10\avgnsa.exe"
C:\Program Files (x86)\AVG\AVG10\avgcsrvx.exe /pipeName=91f1e479-b88a-4812-82fb-1f3c1c047a18 /coreSdkOptions=0 /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\windows\system\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
WLIDSvcM.exe 3500
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe" "HP Color LaserJet CM2320 MFP Series Fax"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\AVG\AVG10\avgtray.exe"
"C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe" -a
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
taskmgr
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>1515118733</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=93e36248-3262-4f2a-89cf-a23085e77e2f /coreSdkOptions=30 /logConfFile="C:\ProgramData\AVG10\temp\a034aa13-3151-4a20-babc-227016c0ea32-f74-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
{E6C3D38D-5F09-4CAD-AADA-A6A89EB06294}
{F53C613B-D8BB-418F-AF9D-AB85FB1482D5}
{054F3744-6876-4AB0-A4F4-DCC7071A2B70}
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3412 CREDAT:734214 /prefetch:2
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
C:\windows\system32\sppsvc.exe
C:\windows\servicing\TrustedInstaller.exe
"C:\windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\ivana.novakova\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll [2011-09-09 3561824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssie.dll [2011-09-09 2276704]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2013-04-08 654384]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
"HP Color LaserJet CM2320 MFP Series Fax"=C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [2009-09-22 3700736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"AdobeChk"=C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe [2014-07-03 111104]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-05 98304]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-19 518656]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2012-08-01 2345592]
"HPPQVideo"=C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [2007-05-07 106496]
"ToolBoxFX"=C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [2009-10-22 53248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Firebird"=C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2008-06-13 2723840]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"disablecad"=1
"dontdisplaylockeduserid"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-07-03 08:35:50 ----D---- C:\Program Files\trend micro
2014-07-03 08:35:48 ----D---- C:\rsit
2014-06-30 14:34:02 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-11 08:29:05 ----A---- C:\windows\SYSWOW64\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\drivers\tcpip.sys
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\urlmon.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollector.exe
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\msfeeds.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\dxtmsft.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iesetup.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iertutil.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\ie4uinit.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\jsproxy.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\iernonce.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\mshtmled.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieui.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieframe.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\dxtrans.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\vbscript.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9diag.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieUnatt.exe
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieapfltr.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\wininet.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28:54 ----A---- C:\windows\system32\msrating.dll
2014-06-11 08:28:53 ----A---- C:\windows\system32\mshtml.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aepdu.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aeinv.dll
======List of files/folders modified in the last 1 months======
2014-07-03 08:35:50 ----RD---- C:\Program Files
2014-07-03 08:33:07 ----D---- C:\windows\system32\config
2014-07-03 08:27:14 ----HD---- C:\windows\Temp
2014-07-03 08:26:58 ----D---- C:\windows\system32\drivers\AVG
2014-07-03 08:22:57 ----D---- C:\windows\inf
2014-07-01 16:45:49 ----D---- C:\windows\system32\Tasks
2014-07-01 16:42:33 ----D---- C:\windows\System32
2014-07-01 16:42:33 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-07-01 16:37:09 ----A---- C:\windows\SYSWOW64\log.txt
2014-07-01 16:37:06 ----D---- C:\Windows
2014-07-01 16:31:53 ----D---- C:\ProgramData\LogMeIn
2014-07-01 16:31:53 ----D---- C:\Program Files (x86)\PDFCreator
2014-07-01 16:31:34 ----D---- C:\windows\Panther
2014-07-01 16:31:31 ----D---- C:\windows\Logs
2014-07-01 16:31:31 ----D---- C:\windows\debug
2014-07-01 11:24:50 ----D---- C:\windows\Tasks
2014-07-01 11:24:50 ----D---- C:\windows\SysWOW64
2014-07-01 11:24:50 ----D---- C:\windows\system32\wfp
2014-07-01 11:24:50 ----D---- C:\windows\system32\wbem
2014-07-01 11:24:50 ----D---- C:\windows\system32\DriverStore
2014-07-01 11:24:50 ----D---- C:\windows\system32\drivers
2014-07-01 11:24:50 ----D---- C:\windows\system32\catroot2
2014-07-01 11:24:48 ----SHD---- C:\windows\Installer
2014-07-01 11:24:48 ----D---- C:\windows\system32\CodeIntegrity
2014-07-01 11:24:48 ----D---- C:\windows\security
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-01 11:24:47 ----D---- C:\ProgramData\AVG10
2014-07-01 11:24:44 ----D---- C:\windows\registration
2014-07-01 09:36:57 ----SHD---- C:\System Volume Information
2014-07-01 09:12:55 ----D---- C:\windows\Prefetch
2014-07-01 09:08:41 ----HD---- C:\Config.Msi
2014-07-01 08:46:32 ----D---- C:\ProgramData\MFAData
2014-06-30 15:10:40 ----D---- C:\amd64
2014-06-30 08:39:46 ----D---- C:\ProgramData\PDFC
2014-06-20 14:42:14 ----D---- C:\tt
2014-06-17 14:04:52 ----RD---- C:\Program Files (x86)
2014-06-13 09:11:58 ----D---- C:\windows\rescache
2014-06-13 08:27:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-06-13 08:24:42 ----D---- C:\windows\winsxs
2014-06-13 08:20:49 ----D---- C:\windows\SYSWOW64\en-US
2014-06-13 08:20:49 ----D---- C:\windows\system32\en-US
2014-06-13 08:20:49 ----D---- C:\Program Files\Internet Explorer
2014-06-13 08:20:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-12 08:25:49 ----D---- C:\windows\system32\MRT
2014-06-12 08:22:32 ----A---- C:\windows\system32\MRT.exe
2014-06-12 08:21:28 ----D---- C:\ProgramData\Microsoft Help
2014-06-12 08:19:19 ----SD---- C:\windows\system32\CompatTel
2014-06-11 08:27:42 ----D---- C:\windows\system32\catroot
2014-06-09 11:48:32 ----D---- C:\windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2012-11-12 312160]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 NetworkX;NetworkX; C:\windows\syswow64\ckldrv.sys []
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aksdf;aksdf; \??\C:\windows\system32\drivers\aksdf.sys [2011-11-24 78208]
R2 aksfridge;Sentinel Fridge; C:\windows\system32\DRIVERS\aksfridge.sys [2011-11-24 139592]
R2 hardlock;hardlock; \??\C:\windows\system32\drivers\hardlock.sys [2011-10-07 321536]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2010-08-05 6859776]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2010-08-05 264192]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2011-01-21 3063360]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 rtsuvc;HP Webcam [2 MP Fixed]; C:\windows\system32\DRIVERS\rtsuvc.sys [2009-12-22 89216]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 akshasp;SafeNet Inc. HASP Key; C:\windows\system32\DRIVERS\akshasp.sys [2011-02-09 53760]
S3 akshhl;SafeNet Inc. Sentinel HL Key; C:\windows\system32\DRIVERS\akshhl.sys [2011-09-08 57088]
S3 aksusb;SafeNet Inc. USB Key; C:\windows\system32\DRIVERS\aksusb.sys [2011-08-09 21120]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\windows\system32\drivers\btwampfl.sys [2010-06-10 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-06-10 102952]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2010-06-10 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-06-10 39464]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-06-10 21544]
S3 lmimirr;lmimirr; C:\windows\system32\DRIVERS\lmimirr.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2010-08-05 203264]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-09 952096]
R2 Crypkey License;Crypkey License; C:\windows\system32\crypserv.exe [2008-05-08 122880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 hasplms;HASP License Manager; C:\windows\system32\hasplms.exe [2011-12-02 4913608]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-07-01 121344]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-01 136192]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-06-25 92216]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-06-16 5037888]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2009-12-14 2019120]
R3 hpqcxs08;hpqcxs08; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2010-06-25 665656]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-13 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-05-30 111616]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-02-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
====================================================
====================================================
====================================================
# AdwCleaner v3.214 - Report created 03/07/2014 at 08:45:59
# Updated 29/06/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : ivana.novakova - NOVAKOVA-HP
# Running from : C:\Users\ivana.novakova\Desktop\adwcleaner_3.214.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\ivana.novakova\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\Software\DeviceVM
Key Deleted : [x64] HKLM\SOFTWARE\DeviceVM
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Extension] : jmfkcklnlgedgbglfkkgedjfmejoahla
*************************
AdwCleaner[R0].txt - [2273 octets] - [03/07/2014 08:43:55]
AdwCleaner[S0].txt - [2214 octets] - [03/07/2014 08:45:59]
########## EOF - J:\AdwCleaner\AdwCleaner[S0].txt - [2274 octets] ##########
prosím o kontrolu počítače. V pondělí na něm byl otevřen podvodný email, který vyzývá k úhradě pohledávky. Od té doby nefunguje internet přes Internet explorer ani přes Google chrome. Načte se pouze homepage a pak jakoby internet zamrzne. Nedá se kliknout na žádný odkaz, ani přihlásit do emailu.
Pro urychlení přikládám logy z RSIT a Adwcleaneru.
Logfile of random's system information tool 1.08 (written by random/random)
Run by ivana.novakova at 2014-07-03 08:35:48
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 218 GB (76%) free of 288 GB
Total RAM: 1967 MB (25% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:36:03, on 3.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
C:\windows\SysWOW64\taskmgr.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\trend micro\ivana.novakova.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [HPPQVideo] "C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe" -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM2320_MFP_Series -f PQOptimizerVideo.xml -o remindLater
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Firebird] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe -a
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [AdobeChk] C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com//activex/ractrl.cab?lmi=1058
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = stakoplast.local
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HASP License Manager (hasplms) - Unknown owner - C:\windows\system32\hasplms.exe (file missing)
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15335 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\windows\system32\Hpservice.exe
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 28845504
\??\C:\windows\system32\conhost.exe "-304170760-10344127741679342038-9341443961651766819750051381264220625-2092765746
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
crypserv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\hasplms.exe -run
"C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
C:\windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\AVG\AVG10\avgam.exe"
"C:\Program Files (x86)\AVG\AVG10\avgnsa.exe"
C:\Program Files (x86)\AVG\AVG10\avgcsrvx.exe /pipeName=91f1e479-b88a-4812-82fb-1f3c1c047a18 /coreSdkOptions=0 /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\windows\system\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
WLIDSvcM.exe 3500
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe" "HP Color LaserJet CM2320 MFP Series Fax"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\AVG\AVG10\avgtray.exe"
"C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe" -a
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
taskmgr
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>1515118733</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=93e36248-3262-4f2a-89cf-a23085e77e2f /coreSdkOptions=30 /logConfFile="C:\ProgramData\AVG10\temp\a034aa13-3151-4a20-babc-227016c0ea32-f74-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
{E6C3D38D-5F09-4CAD-AADA-A6A89EB06294}
{F53C613B-D8BB-418F-AF9D-AB85FB1482D5}
{054F3744-6876-4AB0-A4F4-DCC7071A2B70}
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3412 CREDAT:734214 /prefetch:2
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
C:\windows\system32\sppsvc.exe
C:\windows\servicing\TrustedInstaller.exe
"C:\windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\ivana.novakova\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll [2011-09-09 3561824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssie.dll [2011-09-09 2276704]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2013-04-08 654384]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
"HP Color LaserJet CM2320 MFP Series Fax"=C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [2009-09-22 3700736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"AdobeChk"=C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe [2014-07-03 111104]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-05 98304]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-19 518656]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2012-08-01 2345592]
"HPPQVideo"=C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [2007-05-07 106496]
"ToolBoxFX"=C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [2009-10-22 53248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Firebird"=C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2008-06-13 2723840]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"disablecad"=1
"dontdisplaylockeduserid"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-07-03 08:35:50 ----D---- C:\Program Files\trend micro
2014-07-03 08:35:48 ----D---- C:\rsit
2014-06-30 14:34:02 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-11 08:29:05 ----A---- C:\windows\SYSWOW64\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\drivers\tcpip.sys
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\urlmon.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollector.exe
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\msfeeds.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\dxtmsft.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iesetup.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iertutil.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\ie4uinit.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\jsproxy.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\iernonce.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\mshtmled.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieui.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieframe.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\dxtrans.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\vbscript.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9diag.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieUnatt.exe
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieapfltr.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\wininet.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28:54 ----A---- C:\windows\system32\msrating.dll
2014-06-11 08:28:53 ----A---- C:\windows\system32\mshtml.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aepdu.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aeinv.dll
======List of files/folders modified in the last 1 months======
2014-07-03 08:35:50 ----RD---- C:\Program Files
2014-07-03 08:33:07 ----D---- C:\windows\system32\config
2014-07-03 08:27:14 ----HD---- C:\windows\Temp
2014-07-03 08:26:58 ----D---- C:\windows\system32\drivers\AVG
2014-07-03 08:22:57 ----D---- C:\windows\inf
2014-07-01 16:45:49 ----D---- C:\windows\system32\Tasks
2014-07-01 16:42:33 ----D---- C:\windows\System32
2014-07-01 16:42:33 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-07-01 16:37:09 ----A---- C:\windows\SYSWOW64\log.txt
2014-07-01 16:37:06 ----D---- C:\Windows
2014-07-01 16:31:53 ----D---- C:\ProgramData\LogMeIn
2014-07-01 16:31:53 ----D---- C:\Program Files (x86)\PDFCreator
2014-07-01 16:31:34 ----D---- C:\windows\Panther
2014-07-01 16:31:31 ----D---- C:\windows\Logs
2014-07-01 16:31:31 ----D---- C:\windows\debug
2014-07-01 11:24:50 ----D---- C:\windows\Tasks
2014-07-01 11:24:50 ----D---- C:\windows\SysWOW64
2014-07-01 11:24:50 ----D---- C:\windows\system32\wfp
2014-07-01 11:24:50 ----D---- C:\windows\system32\wbem
2014-07-01 11:24:50 ----D---- C:\windows\system32\DriverStore
2014-07-01 11:24:50 ----D---- C:\windows\system32\drivers
2014-07-01 11:24:50 ----D---- C:\windows\system32\catroot2
2014-07-01 11:24:48 ----SHD---- C:\windows\Installer
2014-07-01 11:24:48 ----D---- C:\windows\system32\CodeIntegrity
2014-07-01 11:24:48 ----D---- C:\windows\security
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-01 11:24:47 ----D---- C:\ProgramData\AVG10
2014-07-01 11:24:44 ----D---- C:\windows\registration
2014-07-01 09:36:57 ----SHD---- C:\System Volume Information
2014-07-01 09:12:55 ----D---- C:\windows\Prefetch
2014-07-01 09:08:41 ----HD---- C:\Config.Msi
2014-07-01 08:46:32 ----D---- C:\ProgramData\MFAData
2014-06-30 15:10:40 ----D---- C:\amd64
2014-06-30 08:39:46 ----D---- C:\ProgramData\PDFC
2014-06-20 14:42:14 ----D---- C:\tt
2014-06-17 14:04:52 ----RD---- C:\Program Files (x86)
2014-06-13 09:11:58 ----D---- C:\windows\rescache
2014-06-13 08:27:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-06-13 08:24:42 ----D---- C:\windows\winsxs
2014-06-13 08:20:49 ----D---- C:\windows\SYSWOW64\en-US
2014-06-13 08:20:49 ----D---- C:\windows\system32\en-US
2014-06-13 08:20:49 ----D---- C:\Program Files\Internet Explorer
2014-06-13 08:20:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-12 08:25:49 ----D---- C:\windows\system32\MRT
2014-06-12 08:22:32 ----A---- C:\windows\system32\MRT.exe
2014-06-12 08:21:28 ----D---- C:\ProgramData\Microsoft Help
2014-06-12 08:19:19 ----SD---- C:\windows\system32\CompatTel
2014-06-11 08:27:42 ----D---- C:\windows\system32\catroot
2014-06-09 11:48:32 ----D---- C:\windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2012-11-12 312160]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 NetworkX;NetworkX; C:\windows\syswow64\ckldrv.sys []
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aksdf;aksdf; \??\C:\windows\system32\drivers\aksdf.sys [2011-11-24 78208]
R2 aksfridge;Sentinel Fridge; C:\windows\system32\DRIVERS\aksfridge.sys [2011-11-24 139592]
R2 hardlock;hardlock; \??\C:\windows\system32\drivers\hardlock.sys [2011-10-07 321536]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2010-08-05 6859776]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2010-08-05 264192]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2011-01-21 3063360]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 rtsuvc;HP Webcam [2 MP Fixed]; C:\windows\system32\DRIVERS\rtsuvc.sys [2009-12-22 89216]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 akshasp;SafeNet Inc. HASP Key; C:\windows\system32\DRIVERS\akshasp.sys [2011-02-09 53760]
S3 akshhl;SafeNet Inc. Sentinel HL Key; C:\windows\system32\DRIVERS\akshhl.sys [2011-09-08 57088]
S3 aksusb;SafeNet Inc. USB Key; C:\windows\system32\DRIVERS\aksusb.sys [2011-08-09 21120]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\windows\system32\drivers\btwampfl.sys [2010-06-10 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-06-10 102952]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2010-06-10 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-06-10 39464]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-06-10 21544]
S3 lmimirr;lmimirr; C:\windows\system32\DRIVERS\lmimirr.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2010-08-05 203264]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-09 952096]
R2 Crypkey License;Crypkey License; C:\windows\system32\crypserv.exe [2008-05-08 122880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 hasplms;HASP License Manager; C:\windows\system32\hasplms.exe [2011-12-02 4913608]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-07-01 121344]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-01 136192]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-06-25 92216]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-06-16 5037888]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2009-12-14 2019120]
R3 hpqcxs08;hpqcxs08; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2010-06-25 665656]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-13 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-05-30 111616]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-02-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
====================================================
====================================================
====================================================
# AdwCleaner v3.214 - Report created 03/07/2014 at 08:45:59
# Updated 29/06/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : ivana.novakova - NOVAKOVA-HP
# Running from : C:\Users\ivana.novakova\Desktop\adwcleaner_3.214.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\ivana.novakova\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\Software\DeviceVM
Key Deleted : [x64] HKLM\SOFTWARE\DeviceVM
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Extension] : jmfkcklnlgedgbglfkkgedjfmejoahla
*************************
AdwCleaner[R0].txt - [2273 octets] - [03/07/2014 08:43:55]
AdwCleaner[S0].txt - [2214 octets] - [03/07/2014 08:45:59]
########## EOF - J:\AdwCleaner\AdwCleaner[S0].txt - [2274 octets] ##########
Re: Prosím o kontrolu - zamrzá internet
Tak po vyčištění Adwcleanerem začal internet opět fungovat. I tak prosím o kontrolu, pro jistotu. Přikládám nový log z RSIT.
Děkuji.
=====================================================
=====================================================
Logfile of random's system information tool 1.08 (written by random/random)
Run by ivana.novakova at 2014-07-03 10:26:40
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 218 GB (76%) free of 288 GB
Total RAM: 1967 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:26:50, on 3.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
C:\windows\SysWOW64\RunDll32.exe
C:\windows\SysWOW64\taskmgr.exe
C:\Program Files\trend micro\ivana.novakova.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [HPPQVideo] "C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe" -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM2320_MFP_Series -f PQOptimizerVideo.xml -o remindLater
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Firebird] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe -a
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [AdobeChk] C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com//activex/ractrl.cab?lmi=1058
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = stakoplast.local
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HASP License Manager (hasplms) - Unknown owner - C:\windows\system32\hasplms.exe (file missing)
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14952 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
atieclxx
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 28476112
\??\C:\windows\system32\conhost.exe "-1808136080-1478274443364838401-74952986-2056775667-16826244611245098826-1567789729
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
crypserv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\hasplms.exe -run
"C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe"
"C:\Program Files (x86)\AVG\AVG10\avgam.exe"
"C:\Program Files (x86)\AVG\AVG10\avgnsa.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
C:\windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\windows\System32\svchost.exe -k HPZ12
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Program Files (x86)\AVG\AVG10\avgcsrvx.exe /pipeName=c65f4065-ee4a-4c5b-af32-02728abc7749 /coreSdkOptions=0 /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\windows\system\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3396
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe" "HP Color LaserJet CM2320 MFP Series Fax"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
{6BAE1CED-373E-44BE-9462-19455F54096F}
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
{03509640-1858-4559-A7D4-5051ABD2DE76}
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
{D812E55C-AF64-4977-9C91-29B1C788A0D4}
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\AVG\AVG10\avgtray.exe"
"C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
"C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe" -a
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
taskmgr
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>801318269</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=a1f40462-2039-4137-8ec8-5f5a1ed19818 /coreSdkOptions=30 /logConfFile="C:\ProgramData\AVG10\temp\bb8c335e-dde8-441c-9203-00697ceb240d-1744-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1216150944-3253024930-2114404105-112210_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1216150944-3253024930-2114404105-112210 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\ivana.novakova\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
"HP Color LaserJet CM2320 MFP Series Fax"=C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [2009-09-22 3700736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"AdobeChk"=C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe [2014-07-03 111104]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-05 98304]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-19 518656]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2012-08-01 2345592]
"HPPQVideo"=C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [2007-05-07 106496]
"ToolBoxFX"=C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [2009-10-22 53248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Firebird"=C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2008-06-13 2723840]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"disablecad"=1
"dontdisplaylockeduserid"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-07-03 08:45:37 ----A---- C:\windows\SYSWOW64\sqlite3.dll
2014-07-03 08:35:50 ----D---- C:\Program Files\trend micro
2014-07-03 08:35:48 ----D---- C:\rsit
2014-06-30 14:34:02 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-11 08:29:05 ----A---- C:\windows\SYSWOW64\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\drivers\tcpip.sys
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\urlmon.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollector.exe
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\msfeeds.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\dxtmsft.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iesetup.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iertutil.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\ie4uinit.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\jsproxy.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\iernonce.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\mshtmled.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieui.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieframe.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\dxtrans.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\vbscript.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9diag.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieUnatt.exe
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieapfltr.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\wininet.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28:54 ----A---- C:\windows\system32\msrating.dll
2014-06-11 08:28:53 ----A---- C:\windows\system32\mshtml.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aepdu.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aeinv.dll
======List of files/folders modified in the last 1 months======
2014-07-03 09:03:46 ----D---- C:\windows\system32\config
2014-07-03 08:55:43 ----D---- C:\windows\System32
2014-07-03 08:55:43 ----D---- C:\windows\inf
2014-07-03 08:55:43 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-07-03 08:49:55 ----HD---- C:\windows\Temp
2014-07-03 08:48:21 ----A---- C:\windows\SYSWOW64\log.txt
2014-07-03 08:45:37 ----D---- C:\windows\SysWOW64
2014-07-03 08:35:50 ----RD---- C:\Program Files
2014-07-03 08:26:58 ----D---- C:\windows\system32\drivers\AVG
2014-07-01 16:45:49 ----D---- C:\windows\system32\Tasks
2014-07-01 16:37:06 ----D---- C:\Windows
2014-07-01 16:31:53 ----D---- C:\ProgramData\LogMeIn
2014-07-01 16:31:53 ----D---- C:\Program Files (x86)\PDFCreator
2014-07-01 16:31:34 ----D---- C:\windows\Panther
2014-07-01 16:31:31 ----D---- C:\windows\Logs
2014-07-01 16:31:31 ----D---- C:\windows\debug
2014-07-01 11:24:50 ----D---- C:\windows\Tasks
2014-07-01 11:24:50 ----D---- C:\windows\system32\wfp
2014-07-01 11:24:50 ----D---- C:\windows\system32\wbem
2014-07-01 11:24:50 ----D---- C:\windows\system32\DriverStore
2014-07-01 11:24:50 ----D---- C:\windows\system32\drivers
2014-07-01 11:24:50 ----D---- C:\windows\system32\catroot2
2014-07-01 11:24:48 ----SHD---- C:\windows\Installer
2014-07-01 11:24:48 ----D---- C:\windows\system32\CodeIntegrity
2014-07-01 11:24:48 ----D---- C:\windows\security
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-01 11:24:47 ----D---- C:\ProgramData\AVG10
2014-07-01 11:24:44 ----D---- C:\windows\registration
2014-07-01 09:36:57 ----SHD---- C:\System Volume Information
2014-07-01 09:12:55 ----D---- C:\windows\Prefetch
2014-07-01 09:08:41 ----HD---- C:\Config.Msi
2014-07-01 08:46:32 ----D---- C:\ProgramData\MFAData
2014-06-30 15:10:40 ----D---- C:\amd64
2014-06-30 08:39:46 ----D---- C:\ProgramData\PDFC
2014-06-20 14:42:14 ----D---- C:\tt
2014-06-17 14:04:52 ----RD---- C:\Program Files (x86)
2014-06-13 09:11:58 ----D---- C:\windows\rescache
2014-06-13 08:27:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-06-13 08:24:42 ----D---- C:\windows\winsxs
2014-06-13 08:20:49 ----D---- C:\windows\SYSWOW64\en-US
2014-06-13 08:20:49 ----D---- C:\windows\system32\en-US
2014-06-13 08:20:49 ----D---- C:\Program Files\Internet Explorer
2014-06-13 08:20:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-12 08:25:49 ----D---- C:\windows\system32\MRT
2014-06-12 08:22:32 ----A---- C:\windows\system32\MRT.exe
2014-06-12 08:21:28 ----D---- C:\ProgramData\Microsoft Help
2014-06-12 08:19:19 ----SD---- C:\windows\system32\CompatTel
2014-06-11 08:27:42 ----D---- C:\windows\system32\catroot
2014-06-09 11:48:32 ----D---- C:\windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2012-11-12 312160]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 NetworkX;NetworkX; C:\windows\syswow64\ckldrv.sys []
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aksdf;aksdf; \??\C:\windows\system32\drivers\aksdf.sys [2011-11-24 78208]
R2 aksfridge;Sentinel Fridge; C:\windows\system32\DRIVERS\aksfridge.sys [2011-11-24 139592]
R2 hardlock;hardlock; \??\C:\windows\system32\drivers\hardlock.sys [2011-10-07 321536]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2010-08-05 6859776]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2010-08-05 264192]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2011-01-21 3063360]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 rtsuvc;HP Webcam [2 MP Fixed]; C:\windows\system32\DRIVERS\rtsuvc.sys [2009-12-22 89216]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 akshasp;SafeNet Inc. HASP Key; C:\windows\system32\DRIVERS\akshasp.sys [2011-02-09 53760]
S3 akshhl;SafeNet Inc. Sentinel HL Key; C:\windows\system32\DRIVERS\akshhl.sys [2011-09-08 57088]
S3 aksusb;SafeNet Inc. USB Key; C:\windows\system32\DRIVERS\aksusb.sys [2011-08-09 21120]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\windows\system32\drivers\btwampfl.sys [2010-06-10 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-06-10 102952]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2010-06-10 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-06-10 39464]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-06-10 21544]
S3 lmimirr;lmimirr; C:\windows\system32\DRIVERS\lmimirr.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2010-08-05 203264]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-09 952096]
R2 Crypkey License;Crypkey License; C:\windows\system32\crypserv.exe [2008-05-08 122880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 hasplms;HASP License Manager; C:\windows\system32\hasplms.exe [2011-12-02 4913608]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-07-01 121344]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-01 136192]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-06-25 92216]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-06-16 5037888]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2009-12-14 2019120]
R3 hpqcxs08;hpqcxs08; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2010-06-25 665656]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-13 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-05-30 111616]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-02-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Děkuji.
=====================================================
=====================================================
Logfile of random's system information tool 1.08 (written by random/random)
Run by ivana.novakova at 2014-07-03 10:26:40
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 218 GB (76%) free of 288 GB
Total RAM: 1967 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:26:50, on 3.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
C:\windows\SysWOW64\RunDll32.exe
C:\windows\SysWOW64\taskmgr.exe
C:\Program Files\trend micro\ivana.novakova.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [HPPQVideo] "C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe" -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM2320_MFP_Series -f PQOptimizerVideo.xml -o remindLater
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Firebird] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe -a
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [AdobeChk] C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com//activex/ractrl.cab?lmi=1058
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = stakoplast.local
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HASP License Manager (hasplms) - Unknown owner - C:\windows\system32\hasplms.exe (file missing)
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14952 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
atieclxx
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 28476112
\??\C:\windows\system32\conhost.exe "-1808136080-1478274443364838401-74952986-2056775667-16826244611245098826-1567789729
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
crypserv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\hasplms.exe -run
"C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe"
"C:\Program Files (x86)\AVG\AVG10\avgam.exe"
"C:\Program Files (x86)\AVG\AVG10\avgnsa.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
C:\windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\windows\System32\svchost.exe -k HPZ12
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Program Files (x86)\AVG\AVG10\avgcsrvx.exe /pipeName=c65f4065-ee4a-4c5b-af32-02728abc7749 /coreSdkOptions=0 /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\windows\system\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3396
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe" "HP Color LaserJet CM2320 MFP Series Fax"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
{6BAE1CED-373E-44BE-9462-19455F54096F}
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
{03509640-1858-4559-A7D4-5051ABD2DE76}
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
{D812E55C-AF64-4977-9C91-29B1C788A0D4}
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\AVG\AVG10\avgtray.exe"
"C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
"C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe" -a
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
taskmgr
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>801318269</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=a1f40462-2039-4137-8ec8-5f5a1ed19818 /coreSdkOptions=30 /logConfFile="C:\ProgramData\AVG10\temp\bb8c335e-dde8-441c-9203-00697ceb240d-1744-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1216150944-3253024930-2114404105-112210_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1216150944-3253024930-2114404105-112210 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\ivana.novakova\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
"HP Color LaserJet CM2320 MFP Series Fax"=C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [2009-09-22 3700736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"AdobeChk"=C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe [2014-07-03 111104]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-05 98304]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-19 518656]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2012-08-01 2345592]
"HPPQVideo"=C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [2007-05-07 106496]
"ToolBoxFX"=C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [2009-10-22 53248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Firebird"=C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2008-06-13 2723840]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"disablecad"=1
"dontdisplaylockeduserid"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2014-07-03 08:45:37 ----A---- C:\windows\SYSWOW64\sqlite3.dll
2014-07-03 08:35:50 ----D---- C:\Program Files\trend micro
2014-07-03 08:35:48 ----D---- C:\rsit
2014-06-30 14:34:02 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-11 08:29:05 ----A---- C:\windows\SYSWOW64\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\drivers\tcpip.sys
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\urlmon.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollector.exe
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\msfeeds.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\dxtmsft.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iesetup.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iertutil.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\ie4uinit.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\jsproxy.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\iernonce.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\mshtmled.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieui.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieframe.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\dxtrans.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\vbscript.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9diag.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieUnatt.exe
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieapfltr.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\wininet.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28:54 ----A---- C:\windows\system32\msrating.dll
2014-06-11 08:28:53 ----A---- C:\windows\system32\mshtml.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aepdu.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aeinv.dll
======List of files/folders modified in the last 1 months======
2014-07-03 09:03:46 ----D---- C:\windows\system32\config
2014-07-03 08:55:43 ----D---- C:\windows\System32
2014-07-03 08:55:43 ----D---- C:\windows\inf
2014-07-03 08:55:43 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-07-03 08:49:55 ----HD---- C:\windows\Temp
2014-07-03 08:48:21 ----A---- C:\windows\SYSWOW64\log.txt
2014-07-03 08:45:37 ----D---- C:\windows\SysWOW64
2014-07-03 08:35:50 ----RD---- C:\Program Files
2014-07-03 08:26:58 ----D---- C:\windows\system32\drivers\AVG
2014-07-01 16:45:49 ----D---- C:\windows\system32\Tasks
2014-07-01 16:37:06 ----D---- C:\Windows
2014-07-01 16:31:53 ----D---- C:\ProgramData\LogMeIn
2014-07-01 16:31:53 ----D---- C:\Program Files (x86)\PDFCreator
2014-07-01 16:31:34 ----D---- C:\windows\Panther
2014-07-01 16:31:31 ----D---- C:\windows\Logs
2014-07-01 16:31:31 ----D---- C:\windows\debug
2014-07-01 11:24:50 ----D---- C:\windows\Tasks
2014-07-01 11:24:50 ----D---- C:\windows\system32\wfp
2014-07-01 11:24:50 ----D---- C:\windows\system32\wbem
2014-07-01 11:24:50 ----D---- C:\windows\system32\DriverStore
2014-07-01 11:24:50 ----D---- C:\windows\system32\drivers
2014-07-01 11:24:50 ----D---- C:\windows\system32\catroot2
2014-07-01 11:24:48 ----SHD---- C:\windows\Installer
2014-07-01 11:24:48 ----D---- C:\windows\system32\CodeIntegrity
2014-07-01 11:24:48 ----D---- C:\windows\security
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-01 11:24:47 ----D---- C:\ProgramData\AVG10
2014-07-01 11:24:44 ----D---- C:\windows\registration
2014-07-01 09:36:57 ----SHD---- C:\System Volume Information
2014-07-01 09:12:55 ----D---- C:\windows\Prefetch
2014-07-01 09:08:41 ----HD---- C:\Config.Msi
2014-07-01 08:46:32 ----D---- C:\ProgramData\MFAData
2014-06-30 15:10:40 ----D---- C:\amd64
2014-06-30 08:39:46 ----D---- C:\ProgramData\PDFC
2014-06-20 14:42:14 ----D---- C:\tt
2014-06-17 14:04:52 ----RD---- C:\Program Files (x86)
2014-06-13 09:11:58 ----D---- C:\windows\rescache
2014-06-13 08:27:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-06-13 08:24:42 ----D---- C:\windows\winsxs
2014-06-13 08:20:49 ----D---- C:\windows\SYSWOW64\en-US
2014-06-13 08:20:49 ----D---- C:\windows\system32\en-US
2014-06-13 08:20:49 ----D---- C:\Program Files\Internet Explorer
2014-06-13 08:20:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-12 08:25:49 ----D---- C:\windows\system32\MRT
2014-06-12 08:22:32 ----A---- C:\windows\system32\MRT.exe
2014-06-12 08:21:28 ----D---- C:\ProgramData\Microsoft Help
2014-06-12 08:19:19 ----SD---- C:\windows\system32\CompatTel
2014-06-11 08:27:42 ----D---- C:\windows\system32\catroot
2014-06-09 11:48:32 ----D---- C:\windows\system32\NDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2012-11-12 312160]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 NetworkX;NetworkX; C:\windows\syswow64\ckldrv.sys []
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aksdf;aksdf; \??\C:\windows\system32\drivers\aksdf.sys [2011-11-24 78208]
R2 aksfridge;Sentinel Fridge; C:\windows\system32\DRIVERS\aksfridge.sys [2011-11-24 139592]
R2 hardlock;hardlock; \??\C:\windows\system32\drivers\hardlock.sys [2011-10-07 321536]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2010-08-05 6859776]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2010-08-05 264192]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2011-01-21 3063360]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 rtsuvc;HP Webcam [2 MP Fixed]; C:\windows\system32\DRIVERS\rtsuvc.sys [2009-12-22 89216]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 akshasp;SafeNet Inc. HASP Key; C:\windows\system32\DRIVERS\akshasp.sys [2011-02-09 53760]
S3 akshhl;SafeNet Inc. Sentinel HL Key; C:\windows\system32\DRIVERS\akshhl.sys [2011-09-08 57088]
S3 aksusb;SafeNet Inc. USB Key; C:\windows\system32\DRIVERS\aksusb.sys [2011-08-09 21120]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\windows\system32\drivers\btwampfl.sys [2010-06-10 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-06-10 102952]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2010-06-10 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-06-10 39464]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-06-10 21544]
S3 lmimirr;lmimirr; C:\windows\system32\DRIVERS\lmimirr.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2010-08-05 203264]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-09 952096]
R2 Crypkey License;Crypkey License; C:\windows\system32\crypserv.exe [2008-05-08 122880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 hasplms;HASP License Manager; C:\windows\system32\hasplms.exe [2011-12-02 4913608]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-07-01 121344]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-01 136192]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-06-25 92216]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-06-16 5037888]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2009-12-14 2019120]
R3 hpqcxs08;hpqcxs08; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2010-06-25 665656]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-13 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-05-30 111616]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-02-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Prosím o kontrolu - zamrzá internet
Log z MBAM:
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 7.7.2014
Čas skenování: 10:11:19
Protokol: MBAM.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.07.07.01
Databáze rootkitů: v2014.07.03.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: ivana.novakova
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 572963
Uplynulý čas: 2 hod, 8 min, 18 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 2
Trojan.BHO, HKU\S-1-5-21-1216150944-3253024930-2114404105-1122-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MiSoft, , [109db7e50972ae8811d00a47ec174bb5],
Trojan.BHO, HKU\S-1-5-21-2164320783-1463944741-161528255-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MiSoft, , [08a5aeee3744d0663ca585cc679cfd03],
Hodnoty registru: 1
Spyware.Zbot.VXGen, HKU\S-1-5-21-1216150944-3253024930-2114404105-1122-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|AdobeChk, C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe, , [f1bc237924573303df56df91e9186b95]
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 141
Spyware.Zbot.VXGen, C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe, , [f1bc237924573303df56df91e9186b95],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$R1RFXX4.jpg, , [4865415b34475cda446bbdb53ac6b44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$R8DJ2J9.jpg, , [dfce3765710ad066c1ee8ae89e62867a],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RDKV9J8.JPG, , [b4f93b619cdf06307b36ee841ce4a45c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RHPNOBW.jpg, , [6c41e9b36219d6602b86f37f1de36a96],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RSVCKGU.jpg, , [34796c3087f474c2bef38de5e9172ad6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RU0MJ5U.jpg, , [5558029a017ada5c3d7290e202fe7c84],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RY04VEP.jpg, , [c2ebd2cae59673c3327f9cd6b0506c94],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RY0ZXFQ.JPG, , [aa03debeaccf270f674a1c56827e738d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Lost folder(s)\Folder 180553\378px-Lloyd's_building_from_Leadenhall_Street.jpg, , [6d405b4180fb73c33f700a68659bf907],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Lost folder(s)\Folder 180553\Vitra002a.jpg, , [4568edaf9cdfb383e5ccf77b4ab68a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\020[1].jpg, , [446914888deed660911e363c0df3916f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\185509[1].jpg, , [dcd17527067549ed664b6012e818c838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\575505[1].jpg, , [a4095f3d413ab086a00f1c56798746ba],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\7004227_11[1].jpg, , [68459dff54271a1ca50c5f1357a916ea],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\958229_166x124x75x1x0[1].jpg, , [436a108c91ea68cecce393dfdd2351af],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\closelabel[1].gif, , [fab3e7b55a2192a4affe31411fe104fc],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\fimg_seznam_czCA28L8OO.gif, , [07a6267677048babc5e83a38fd036898],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\fimg_seznam_czCANOOISV.gif, , [b1fcdcc0d8a3d95d02ab9ed468982cd4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\220px-History_Faculty_University_of_Cambridge[1].jpg, , [0ba2e7b5b6c53cfab3fc046e3dc3639d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\6_7c00000_7800000[1].gif, , [1e8fdfbd3645c274327bc0b2a45cc838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\959557_156x117x75[1].jpg, , [921bf9a3493201357f3099d952aec33d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\f50552e4ea74816d974b5586f33ba162[1].jpg, , [0ba25c40b0cbec4ad1deb4be12eeb14f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\images[10].jpg, , [406da6f6552637ff2e81a1d11ae6a25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\M0[1].jpg, , [4667217b314a39fd555c066cda26eb15],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4EF5CDXY\1107152943134040_1[1].jpg, , [139ac0dc77041d19228dbeb4d12f2bd5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\1606272765024040_33[1].jpg, , [812cabf13348280e4669aec479878c74],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\315793-nextstory1-u4i7m[1].jpg, , [baf305977b00171f7b36cea4e51b29d7],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\images[2].jpg, , [06a7514b621983b3e7c80a6806faac54],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\ImgW[2].jpg, , [58559c00b1ca4cea525d1b5728d8d32d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\soft_dreams_by_lieveheersbeestje-d2spjfl[1].jpg, , [307d1f7d49324de9c3ec165cc04060a0],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\52bbbd34b2b4397bf136575913310b1a[1].jpg, , [06a7a2fa68137fb7832ea2d03dc39769],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\2509703787224040_2[1].jpg, , [812c623a9dde1620c1eec5ad8f7158a8],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\316959-nextstory1-ti45g[1].jpg, , [44698616bebd87af6d44caa8847cc53b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\614651a00b4a295cfb18aced510afa89[1].gif, , [ffaed3c996e539fd436a7bf76d93f010],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7191423_2[1].jpg, , [ddd0c6d66c0f47ef97187ff332ceb44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7333855_2[1].jpg, , [07a6f0ac007be45288273f33669aa25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7407075_1[1].jpg, , [7c31fca0fb80b680159ab0c2659b619f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\Guangzhou-Opera-house-002-475x316[1].jpg, , [2489efad077485b1e7ca660c758b649c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\HLFcc_DSC_7752-kopie_a[1].jpg, , [1e8f5e3e2d4e88ae5b54333f946c946c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\logo[1].gif, , [f8b52c7018638da90ba298da90701ae6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\vilatugendhat[1].jpg, , [7d30dcc04c2f1f17a609bbb7c7390000],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\2607824124074040_11[1].jpg, , [a40967358dee7eb87c33d89a1ee20df3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\DBA44D27-F0C3-1372-D288E728B94C9A3E-114021-tb[1].jpg, , [04a94854c3b872c48728660cc53b7f81],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\imagesCALZ1LZW.jpg, , [cae32c70a0dbb581e3cc7002857b8e72],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\topL_fotogalerie[1].gif, , [119c2d6ff68503337934561c12eec33d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\14_79dc000_8200000[1].gif, , [3a73bae2067555e1b6f79fd3eb156d93],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\2006994683334040_6[1].jpg, , [feaf6a329fdcfb3be7c8c1b1669ad927],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\2806551638844040_12[1].jpg, , [eac30a92d9a251e55c535919f60a21df],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\49292_100001515198252_7461_q[1].jpg, , [505dfba13a4144f2377891e133cdbc44],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\7264870_1[1].jpg, , [911cf0ac8bf03bfb8f20fb771de3d729],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\images[6].jpg, , [dcd1d3c9fb80ec4a2d8292e0cd33936d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\14_7f00000_81b0000[1].gif, , [119c7e1ebdbe86b03c716c06966acc34],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\16_7a2e000_8214000[1].jpg, , [dad31884bac1bc7a496640323cc47a86],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\31GsbHEEyNL._SL190_CR0,0,190,246_[1].jpg, , [e9c4c6d680fbf046dcd32c46a95706fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\4F05C0D0-FDB2-2827-FB63DE30D3559454-116625-tb[1].jpg, , [49646e2e384354e2456c0d65956b9a66],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\telefon[2].jpg, , [0da0b1eb55265bdba906294940c02dd3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\10_7f00000_81c0000[1].gif, , [3677306caccfaa8c1499254dd62ab050],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\1305816396974040_21[1].jpg, , [f6b75c40364589ade5cc3f33f80812ee],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\16_7a29000_821b000[1].jpg, , [b3fa4f4d7b008ea8426d076ba35de818],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\573344_1066431603_502560804_q[1].jpg, , [65484557f28962d456594f23a85821df],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\7018853_2[1].jpg, , [02abdbc1bdbe6fc72689f2802fd16b95],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\creative[1].jpg, , [34797c20106b2d09f5bae2900df3b749],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\f80040fc9a59cc88aa915bef1b063cfe[1].gif, , [5c51a8f4601b80b63b7279f95da31de3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\20101203_bc60_burgermirror_yourcity_160x600[1].gif, , [5a53168691ea72c4dad3d0a247b90bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\2249[1].jpg, , [4667dbc1f8833600e8c7d59d3bc57e82],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\927594_13_0x73x75[1].jpg, , [337abbe13d3ed1659a15c7ab6f91a25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\fimg_seznam_czCA5AGYOZ.gif, , [317ca6f6c8b30e288627b2c0f30db24e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\mapa_new_mala[1].jpg, , [2687405c0972ad898629afc3916f1be5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\16_7ef5000_81b7000[1].gif, , [8a23c2da78034fe76548afc35ea27987],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\222087-free1-z1snf[1].jpg, , [65480d8fdaa160d6773a84eea759f010],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\455104[1].jpg, , [bbf22a72c6b5a1955a55bcb67b85ed13],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\a3c3742164dd0636debb413f871623f8[1].jpg, , [08a5b5e7daa14aec0ba43d3515eb8e72],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\fimg_seznam_czCAK9W1HJ.gif, , [dcd14953502b9b9b4865b3bf5ca47d83],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\fimg_seznam_czCAMELTNE.gif, , [4469396395e688ae674686ec50b0f30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\lehatka3[1].jpg, , [a20bfd9fec8f2313733c353de11faf51],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\2608128202604040_35[1].jpg, , [3c719c00fc7f89ade3ccdb971ee25ea2],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\670eefb33e264c71d1a54bc2b5881048[1].jpg, , [a10ccdcfaad14aec753ae48e15ebe41c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\open-uri20120119-15825-wqnjdf-0[1].jpg, , [86274953ef8c85b1a70895dd2ad6ec14],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\13_7ef0000_81d0000[1].gif, , [1e8f603c2c4f270f3e6f135fbb45dd23],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\fimg_seznam_czCA0YHS9Z.gif, , [3d70f6a66912a294ebc2beb434cc03fd],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\NJ144o3[1].jpg, , [96173b61e49793a3b3fc7ff3916fb14f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\18_7ef4800_81b9000[1].jpg, , [decfb1ebec8fe6509718e48e7b851ce4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\221820-nextstory1-273xs[1].jpg, , [515cc0dc700b23135e53086a16ea4fb1],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\250px-AUS_NSW_Opera_House_DSC05118[1].jpg, , [9f0eabf1a8d34bebad023b376997936d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\2607647644354040_12[1].jpg, , [6e3f0894106bdc5aae01482a788810f0],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\4f4c689da016710f64090000[1].jpg, , [6647712b96e574c2f5ba89e9dd239769],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\7297088_2[1].jpg, , [a6075f3d354664d2228de989ae52758b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\getimageCAXYV9NW.jpg, , [64494557e8936cca19966012e41c728e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\imagesCAJ7WO5O.jpg, , [b6f77c2086f5c96d357aa4ce29d7ac54],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\1b6cf1ea05539d197eceae94e77a84c6[1].gif, , [3e6f8319730803334b62bab8ee12d927],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\225687-nextstory1-w29xh[1].jpg, , [406d009c215ab2846f40acc604fc0df3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\562336_10150769835581763_7397061762_11399752_804402460_n[1].jpg, , [1f8e4e4e087373c3149be98902fe827e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\936691_166x124x75x1x0[1].jpg, , [3a730d8f6615e452a20d383a7888dc24],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\default[2].jpg, , [4c6193098af1ee48911e79f9f80806fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\fimg_seznam_czCAQM7MBX.gif, , [2687b4e80477fd39317cea8816eaeb15],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\fimg_seznam_czCAYT1SHV.gif, , [57566537f487ab8b317c046e768a3ec2],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\dsc00909_th[1].jpg, , [78356b31cbb0290d624d0171ee12926e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\imagesCABCZUYA.jpg, , [6c41c0dc2e4d54e24e61d49e06fa3bc5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\PC323i[1].jpg, , [d6d75e3e4e2d72c41d92244ec63ae51b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\135155[1].jpg, , [b6f7a0fc34470a2ca70874fe7a86b947],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\2509667807884040_1[1].jpg, , [1a931e7e82f9ef47c0efef83ab556d93],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\253899-nextstory1-xts7a[1].jpg, , [a10c2c70bcbffd39d8d7363c9b65f808],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\7405106_4[1].jpg, , [9e0f3f5d2259f640f6b98fe312ee0bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\957935_166x124x75x1x0[1].jpg, , [8b222a72582331055f50571be31d966a],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\b9b5093237[1].jpg, , [9617297315663006555af57d42befc04],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\crowneplazahotel[1].jpg, , [c6e7940896e586b0f5ba5d15a15f7987],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_czCAKFEM6D.gif, , [8726bbe186f51f174b62551d38c855ab],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_cz[6].gif, , [4766e5b723584aec7c31363cfb050bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_czCA0CNWU8.gif, , [d2db9309e99282b4109dd89aaf516898],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\311194-nextstory1-sm1ao[1].jpg, , [703d89133d3ee84ed0dfa7cb44bcca36],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\373036_413001925380768_1851761817_t[1].jpg, , [8e1fa5f7d2a9c175525d5121d12f4cb4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\7315602_2[1].jpg, , [8429aeeebbc05adc6e4192e058a8bb45],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\streamneutral[1].gif, , [0ba2b0ec4c2fd660208d5d15f50b06fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\317438-nextstory1-fvmbe[1].jpg, , [4865adef2f4c42f4e2cd02703ec2e818],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\7[1].jpg, , [bcf1a0fc7605ad89a110c6ac837d9967],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\36238[1].jpg, , [0e9f37650576072f515e9ad8e0208a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\6_7c00000_7800000[1].gif, , [9914108c196289adb2fb2a48ac5417e9],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\f50552e4ea74816d974b5586f33ba162[1].jpg, , [07a6d4c83c3ffd39ab04027035cb0bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4EF5CDXY\1107152943134040_1[1].jpg, , [208d4755a3d8023404ab264cb7494ab6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\1606272765024040_33[1].jpg, , [1697227a81fa4beb4b644f2324dc37c9],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\315793-nextstory1-u4i7m[1].jpg, , [8c218319394232042f82b3bf817f29d7],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\36287[1].jpg, , [2e7fd3c9bcbf92a4c8e73939a25e22de],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\cd70ad7bc3bd9ee5c2ac60ab01cb3980[1].jpg, , [28851c80f784e155911e472b06faa45c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\fimg_seznam_czCAUFAJS0.gif, , [654887153e3d979ff0bd333fbf41ad53],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\fimg_seznam_czCALU76CC.gif, , [812cb1eb0972c67009a46d055ba58a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\fimg_seznam_czCAXYWFBO.gif, , [b2fbe4b81e5dac8ab1fc522006fab44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\sestava(1)[1].jpg, , [4d600498f18a3ff76a4789e93bc552ae],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\35501[1].jpg, , [832a4a522a51a195cde2eb8713ed36ca],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4CGPLA\anim[1].gif, , [d5d82a727dfeaf87e2cb234f926e1fe1],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\udrzba[1].jpg, , [f0bdf2aadc9f3ff7f7b8b4be39c7f30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\316329-nextstory1-fbeds[1].jpg, , [505ddebe6d0ece688c236111a858c838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\rez_01[1].jpg, , [d3da3a622754b2845c5573ffe41cf30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\221820-nextstory1-273xs[1].jpg, , [3677c4d86f0c6bcbe4cd1a583cc432ce],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\4f4c689da016710f64090000[1].jpg, , [a20b801c7b001323f5ba98dacd337888],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\fimg_seznam_czCA7RLWB9.gif, , [7538a3f92457ed49a706274b26dafe02],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\36279[1].jpg, , [f8b5f2aaa1daf83ed3dcacc6758bee12],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\PC323i[1].jpg, , [8726b0ecccaf8ea83f70b9b920e08878],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\253899-nextstory1-xts7a[1].jpg, , [a607afed0b7090a68a25f47e25dbdf21],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\311194-nextstory1-sm1ao[1].jpg, , [c5e8a2faa0db59ddf6b984ee69977e82],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\page_g[1].jpg, , [cae33d5fb8c3d363951cf77bed13f50b],
Fyzické sektory: 0
(No malicious items detected)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 7.7.2014
Čas skenování: 10:11:19
Protokol: MBAM.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.07.07.01
Databáze rootkitů: v2014.07.03.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: ivana.novakova
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 572963
Uplynulý čas: 2 hod, 8 min, 18 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 2
Trojan.BHO, HKU\S-1-5-21-1216150944-3253024930-2114404105-1122-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MiSoft, , [109db7e50972ae8811d00a47ec174bb5],
Trojan.BHO, HKU\S-1-5-21-2164320783-1463944741-161528255-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MiSoft, , [08a5aeee3744d0663ca585cc679cfd03],
Hodnoty registru: 1
Spyware.Zbot.VXGen, HKU\S-1-5-21-1216150944-3253024930-2114404105-1122-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|AdobeChk, C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe, , [f1bc237924573303df56df91e9186b95]
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 141
Spyware.Zbot.VXGen, C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe, , [f1bc237924573303df56df91e9186b95],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$R1RFXX4.jpg, , [4865415b34475cda446bbdb53ac6b44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$R8DJ2J9.jpg, , [dfce3765710ad066c1ee8ae89e62867a],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RDKV9J8.JPG, , [b4f93b619cdf06307b36ee841ce4a45c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RHPNOBW.jpg, , [6c41e9b36219d6602b86f37f1de36a96],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RSVCKGU.jpg, , [34796c3087f474c2bef38de5e9172ad6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RU0MJ5U.jpg, , [5558029a017ada5c3d7290e202fe7c84],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RY04VEP.jpg, , [c2ebd2cae59673c3327f9cd6b0506c94],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RY0ZXFQ.JPG, , [aa03debeaccf270f674a1c56827e738d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Lost folder(s)\Folder 180553\378px-Lloyd's_building_from_Leadenhall_Street.jpg, , [6d405b4180fb73c33f700a68659bf907],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Lost folder(s)\Folder 180553\Vitra002a.jpg, , [4568edaf9cdfb383e5ccf77b4ab68a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\020[1].jpg, , [446914888deed660911e363c0df3916f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\185509[1].jpg, , [dcd17527067549ed664b6012e818c838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\575505[1].jpg, , [a4095f3d413ab086a00f1c56798746ba],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\7004227_11[1].jpg, , [68459dff54271a1ca50c5f1357a916ea],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\958229_166x124x75x1x0[1].jpg, , [436a108c91ea68cecce393dfdd2351af],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\closelabel[1].gif, , [fab3e7b55a2192a4affe31411fe104fc],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\fimg_seznam_czCA28L8OO.gif, , [07a6267677048babc5e83a38fd036898],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\fimg_seznam_czCANOOISV.gif, , [b1fcdcc0d8a3d95d02ab9ed468982cd4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\220px-History_Faculty_University_of_Cambridge[1].jpg, , [0ba2e7b5b6c53cfab3fc046e3dc3639d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\6_7c00000_7800000[1].gif, , [1e8fdfbd3645c274327bc0b2a45cc838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\959557_156x117x75[1].jpg, , [921bf9a3493201357f3099d952aec33d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\f50552e4ea74816d974b5586f33ba162[1].jpg, , [0ba25c40b0cbec4ad1deb4be12eeb14f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\images[10].jpg, , [406da6f6552637ff2e81a1d11ae6a25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\M0[1].jpg, , [4667217b314a39fd555c066cda26eb15],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4EF5CDXY\1107152943134040_1[1].jpg, , [139ac0dc77041d19228dbeb4d12f2bd5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\1606272765024040_33[1].jpg, , [812cabf13348280e4669aec479878c74],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\315793-nextstory1-u4i7m[1].jpg, , [baf305977b00171f7b36cea4e51b29d7],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\images[2].jpg, , [06a7514b621983b3e7c80a6806faac54],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\ImgW[2].jpg, , [58559c00b1ca4cea525d1b5728d8d32d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\soft_dreams_by_lieveheersbeestje-d2spjfl[1].jpg, , [307d1f7d49324de9c3ec165cc04060a0],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\52bbbd34b2b4397bf136575913310b1a[1].jpg, , [06a7a2fa68137fb7832ea2d03dc39769],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\2509703787224040_2[1].jpg, , [812c623a9dde1620c1eec5ad8f7158a8],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\316959-nextstory1-ti45g[1].jpg, , [44698616bebd87af6d44caa8847cc53b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\614651a00b4a295cfb18aced510afa89[1].gif, , [ffaed3c996e539fd436a7bf76d93f010],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7191423_2[1].jpg, , [ddd0c6d66c0f47ef97187ff332ceb44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7333855_2[1].jpg, , [07a6f0ac007be45288273f33669aa25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7407075_1[1].jpg, , [7c31fca0fb80b680159ab0c2659b619f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\Guangzhou-Opera-house-002-475x316[1].jpg, , [2489efad077485b1e7ca660c758b649c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\HLFcc_DSC_7752-kopie_a[1].jpg, , [1e8f5e3e2d4e88ae5b54333f946c946c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\logo[1].gif, , [f8b52c7018638da90ba298da90701ae6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\vilatugendhat[1].jpg, , [7d30dcc04c2f1f17a609bbb7c7390000],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\2607824124074040_11[1].jpg, , [a40967358dee7eb87c33d89a1ee20df3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\DBA44D27-F0C3-1372-D288E728B94C9A3E-114021-tb[1].jpg, , [04a94854c3b872c48728660cc53b7f81],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\imagesCALZ1LZW.jpg, , [cae32c70a0dbb581e3cc7002857b8e72],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\topL_fotogalerie[1].gif, , [119c2d6ff68503337934561c12eec33d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\14_79dc000_8200000[1].gif, , [3a73bae2067555e1b6f79fd3eb156d93],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\2006994683334040_6[1].jpg, , [feaf6a329fdcfb3be7c8c1b1669ad927],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\2806551638844040_12[1].jpg, , [eac30a92d9a251e55c535919f60a21df],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\49292_100001515198252_7461_q[1].jpg, , [505dfba13a4144f2377891e133cdbc44],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\7264870_1[1].jpg, , [911cf0ac8bf03bfb8f20fb771de3d729],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\images[6].jpg, , [dcd1d3c9fb80ec4a2d8292e0cd33936d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\14_7f00000_81b0000[1].gif, , [119c7e1ebdbe86b03c716c06966acc34],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\16_7a2e000_8214000[1].jpg, , [dad31884bac1bc7a496640323cc47a86],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\31GsbHEEyNL._SL190_CR0,0,190,246_[1].jpg, , [e9c4c6d680fbf046dcd32c46a95706fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\4F05C0D0-FDB2-2827-FB63DE30D3559454-116625-tb[1].jpg, , [49646e2e384354e2456c0d65956b9a66],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\telefon[2].jpg, , [0da0b1eb55265bdba906294940c02dd3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\10_7f00000_81c0000[1].gif, , [3677306caccfaa8c1499254dd62ab050],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\1305816396974040_21[1].jpg, , [f6b75c40364589ade5cc3f33f80812ee],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\16_7a29000_821b000[1].jpg, , [b3fa4f4d7b008ea8426d076ba35de818],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\573344_1066431603_502560804_q[1].jpg, , [65484557f28962d456594f23a85821df],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\7018853_2[1].jpg, , [02abdbc1bdbe6fc72689f2802fd16b95],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\creative[1].jpg, , [34797c20106b2d09f5bae2900df3b749],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\f80040fc9a59cc88aa915bef1b063cfe[1].gif, , [5c51a8f4601b80b63b7279f95da31de3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\20101203_bc60_burgermirror_yourcity_160x600[1].gif, , [5a53168691ea72c4dad3d0a247b90bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\2249[1].jpg, , [4667dbc1f8833600e8c7d59d3bc57e82],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\927594_13_0x73x75[1].jpg, , [337abbe13d3ed1659a15c7ab6f91a25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\fimg_seznam_czCA5AGYOZ.gif, , [317ca6f6c8b30e288627b2c0f30db24e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\mapa_new_mala[1].jpg, , [2687405c0972ad898629afc3916f1be5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\16_7ef5000_81b7000[1].gif, , [8a23c2da78034fe76548afc35ea27987],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\222087-free1-z1snf[1].jpg, , [65480d8fdaa160d6773a84eea759f010],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\455104[1].jpg, , [bbf22a72c6b5a1955a55bcb67b85ed13],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\a3c3742164dd0636debb413f871623f8[1].jpg, , [08a5b5e7daa14aec0ba43d3515eb8e72],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\fimg_seznam_czCAK9W1HJ.gif, , [dcd14953502b9b9b4865b3bf5ca47d83],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\fimg_seznam_czCAMELTNE.gif, , [4469396395e688ae674686ec50b0f30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\lehatka3[1].jpg, , [a20bfd9fec8f2313733c353de11faf51],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\2608128202604040_35[1].jpg, , [3c719c00fc7f89ade3ccdb971ee25ea2],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\670eefb33e264c71d1a54bc2b5881048[1].jpg, , [a10ccdcfaad14aec753ae48e15ebe41c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\open-uri20120119-15825-wqnjdf-0[1].jpg, , [86274953ef8c85b1a70895dd2ad6ec14],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\13_7ef0000_81d0000[1].gif, , [1e8f603c2c4f270f3e6f135fbb45dd23],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\fimg_seznam_czCA0YHS9Z.gif, , [3d70f6a66912a294ebc2beb434cc03fd],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\NJ144o3[1].jpg, , [96173b61e49793a3b3fc7ff3916fb14f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\18_7ef4800_81b9000[1].jpg, , [decfb1ebec8fe6509718e48e7b851ce4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\221820-nextstory1-273xs[1].jpg, , [515cc0dc700b23135e53086a16ea4fb1],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\250px-AUS_NSW_Opera_House_DSC05118[1].jpg, , [9f0eabf1a8d34bebad023b376997936d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\2607647644354040_12[1].jpg, , [6e3f0894106bdc5aae01482a788810f0],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\4f4c689da016710f64090000[1].jpg, , [6647712b96e574c2f5ba89e9dd239769],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\7297088_2[1].jpg, , [a6075f3d354664d2228de989ae52758b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\getimageCAXYV9NW.jpg, , [64494557e8936cca19966012e41c728e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\imagesCAJ7WO5O.jpg, , [b6f77c2086f5c96d357aa4ce29d7ac54],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\1b6cf1ea05539d197eceae94e77a84c6[1].gif, , [3e6f8319730803334b62bab8ee12d927],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\225687-nextstory1-w29xh[1].jpg, , [406d009c215ab2846f40acc604fc0df3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\562336_10150769835581763_7397061762_11399752_804402460_n[1].jpg, , [1f8e4e4e087373c3149be98902fe827e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\936691_166x124x75x1x0[1].jpg, , [3a730d8f6615e452a20d383a7888dc24],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\default[2].jpg, , [4c6193098af1ee48911e79f9f80806fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\fimg_seznam_czCAQM7MBX.gif, , [2687b4e80477fd39317cea8816eaeb15],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\fimg_seznam_czCAYT1SHV.gif, , [57566537f487ab8b317c046e768a3ec2],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\dsc00909_th[1].jpg, , [78356b31cbb0290d624d0171ee12926e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\imagesCABCZUYA.jpg, , [6c41c0dc2e4d54e24e61d49e06fa3bc5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\PC323i[1].jpg, , [d6d75e3e4e2d72c41d92244ec63ae51b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\135155[1].jpg, , [b6f7a0fc34470a2ca70874fe7a86b947],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\2509667807884040_1[1].jpg, , [1a931e7e82f9ef47c0efef83ab556d93],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\253899-nextstory1-xts7a[1].jpg, , [a10c2c70bcbffd39d8d7363c9b65f808],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\7405106_4[1].jpg, , [9e0f3f5d2259f640f6b98fe312ee0bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\957935_166x124x75x1x0[1].jpg, , [8b222a72582331055f50571be31d966a],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\b9b5093237[1].jpg, , [9617297315663006555af57d42befc04],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\crowneplazahotel[1].jpg, , [c6e7940896e586b0f5ba5d15a15f7987],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_czCAKFEM6D.gif, , [8726bbe186f51f174b62551d38c855ab],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_cz[6].gif, , [4766e5b723584aec7c31363cfb050bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_czCA0CNWU8.gif, , [d2db9309e99282b4109dd89aaf516898],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\311194-nextstory1-sm1ao[1].jpg, , [703d89133d3ee84ed0dfa7cb44bcca36],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\373036_413001925380768_1851761817_t[1].jpg, , [8e1fa5f7d2a9c175525d5121d12f4cb4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\7315602_2[1].jpg, , [8429aeeebbc05adc6e4192e058a8bb45],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\streamneutral[1].gif, , [0ba2b0ec4c2fd660208d5d15f50b06fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\317438-nextstory1-fvmbe[1].jpg, , [4865adef2f4c42f4e2cd02703ec2e818],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\7[1].jpg, , [bcf1a0fc7605ad89a110c6ac837d9967],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\36238[1].jpg, , [0e9f37650576072f515e9ad8e0208a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\6_7c00000_7800000[1].gif, , [9914108c196289adb2fb2a48ac5417e9],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\f50552e4ea74816d974b5586f33ba162[1].jpg, , [07a6d4c83c3ffd39ab04027035cb0bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4EF5CDXY\1107152943134040_1[1].jpg, , [208d4755a3d8023404ab264cb7494ab6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\1606272765024040_33[1].jpg, , [1697227a81fa4beb4b644f2324dc37c9],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\315793-nextstory1-u4i7m[1].jpg, , [8c218319394232042f82b3bf817f29d7],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\36287[1].jpg, , [2e7fd3c9bcbf92a4c8e73939a25e22de],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\cd70ad7bc3bd9ee5c2ac60ab01cb3980[1].jpg, , [28851c80f784e155911e472b06faa45c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\fimg_seznam_czCAUFAJS0.gif, , [654887153e3d979ff0bd333fbf41ad53],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\fimg_seznam_czCALU76CC.gif, , [812cb1eb0972c67009a46d055ba58a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\fimg_seznam_czCAXYWFBO.gif, , [b2fbe4b81e5dac8ab1fc522006fab44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\sestava(1)[1].jpg, , [4d600498f18a3ff76a4789e93bc552ae],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\35501[1].jpg, , [832a4a522a51a195cde2eb8713ed36ca],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4CGPLA\anim[1].gif, , [d5d82a727dfeaf87e2cb234f926e1fe1],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\udrzba[1].jpg, , [f0bdf2aadc9f3ff7f7b8b4be39c7f30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\316329-nextstory1-fbeds[1].jpg, , [505ddebe6d0ece688c236111a858c838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\rez_01[1].jpg, , [d3da3a622754b2845c5573ffe41cf30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\221820-nextstory1-273xs[1].jpg, , [3677c4d86f0c6bcbe4cd1a583cc432ce],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\4f4c689da016710f64090000[1].jpg, , [a20b801c7b001323f5ba98dacd337888],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\fimg_seznam_czCA7RLWB9.gif, , [7538a3f92457ed49a706274b26dafe02],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\36279[1].jpg, , [f8b5f2aaa1daf83ed3dcacc6758bee12],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\PC323i[1].jpg, , [8726b0ecccaf8ea83f70b9b920e08878],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\253899-nextstory1-xts7a[1].jpg, , [a607afed0b7090a68a25f47e25dbdf21],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\311194-nextstory1-sm1ao[1].jpg, , [c5e8a2faa0db59ddf6b984ee69977e82],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\page_g[1].jpg, , [cae33d5fb8c3d363951cf77bed13f50b],
Fyzické sektory: 0
(No malicious items detected)
(end)
Re: Prosím o kontrolu - zamrzá internet
Nalezy MBAMu smazte
Re: Prosím o kontrolu - zamrzá internet
Smazáno. Zkusím MBAM spustit pro jistotu ještě jednou.
Re: Prosím o kontrolu - zamrzá internet
Ou Kej, vysledek opet prosim sem
Re: Prosím o kontrolu - zamrzá internet
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 9.7.2014
Čas skenování: 8:33:35
Protokol: log.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.07.09.02
Databáze rootkitů: v2014.07.07.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: ivana.novakova
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 567676
Uplynulý čas: 1 hod, 53 min, 3 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 0
(No malicious items detected)
Hodnoty registru: 0
(No malicious items detected)
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 0
(No malicious items detected)
Fyzické sektory: 0
(No malicious items detected)
(end)
www.malwarebytes.org
Datum skenování: 9.7.2014
Čas skenování: 8:33:35
Protokol: log.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.07.09.02
Databáze rootkitů: v2014.07.07.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: ivana.novakova
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 567676
Uplynulý čas: 1 hod, 53 min, 3 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 0
(No malicious items detected)
Hodnoty registru: 0
(No malicious items detected)
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 0
(No malicious items detected)
Fyzické sektory: 0
(No malicious items detected)
(end)
Re: Prosím o kontrolu - zamrzá internet
Zde je log z FRST a v příloze Addition.txt zabalený v RARu:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by ivana.novakova (administrator) on NOVAKOVA-HP on 11-07-2014 08:34:52
Running from C:\Users\ivana.novakova\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgrsa.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Hewlett-Packard) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(CrypKey (Canada) Ltd.) C:\Windows\System32\Crypserv.exe
(SafeNet Inc.) C:\Windows\System32\hasplms.exe
(HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(ArcSoft, Inc.) C:\Windows\system\uArcCapture.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgtray.exe
(HP) C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [1691192 2010-06-19] (Hewlett-Packard Company)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-17] (IDT, Inc.)
HKLM\...\Run: [HP Color LaserJet CM2320 MFP Series Fax] => C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [3700736 2009-09-22] (Hewlett-Packard Company)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-03-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-04] (Intel Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [563736 2009-10-23] (PDF Complete Inc)
HKLM-x32\...\Run: [File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-08-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [DTRun] => c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [518656 2009-11-19] (ArcSoft Inc.)
HKLM-x32\...\Run: [AVG_TRAY] => C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2345592 2012-08-01] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [HPPQVideo] => C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [106496 2007-05-07] (Hewlett-Packard)
HKLM-x32\...\Run: [ToolBoxFX] => C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [53248 2009-10-22] (HP)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Firebird] => C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2723840 2008-06-13] (Firebird Project)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-06-17] (Hewlett-Packard Company)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * C:\PROGRA~2\AVG\AVG10\avgchsva.exe /syncC:\PROGRA~2\AVG\AVG10\avgrsa.exe /sync /restart
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll No File
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll No File
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM-x32 {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com//activex/ractrl.cab?lmi=1058
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: 192.168.1.143 NPIAD0BD8
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 127.0.0.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{1E73965B-8B48-48be-9C8D-68B920ABC1C4}] - C:\Program Files (x86)\AVG\AVG10\Firefox4
FF Extension: AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\Firefox4 [2011-03-30]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-09-04]
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://www.google.com/"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (AVG Internet Security) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Extension: (YouTube) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-17]
CHR Extension: (Vyhledávání Google) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-17]
CHR Extension: (Peněženka Google) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-17]
CHR Extension: (Gmail) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-17]
==================== Services (Whitelisted) =================
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AESTFilters; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avgwd; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [269520 2011-02-08] (AVG Technologies CZ, s.r.o.)
R2 Crypkey License; C:\windows\system32\crypserv.exe [122880 2008-05-08] (CrypKey (Canada) Ltd.) [File not signed]
R2 hasplms; C:\windows\system32\hasplms.exe [4913608 2011-12-02] (SafeNet Inc.)
R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136192 2009-06-01] (HP) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [90112 2010-05-10] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [264248 2010-03-01] (Hewlett-Packard Company)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-11-06] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [139264 2007-11-06] (Hewlett-Packard Co.) [File not signed]
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [File not signed]
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [635416 2009-10-23] (PDF Complete Inc)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [244736 2010-03-17] (IDT, Inc.)
R2 uArcCapture; C:\windows\system\uArcCapture.exe [506472 2009-12-04] (ArcSoft, Inc.)
==================== Drivers (Whitelisted) ====================
S3 akshhl; C:\Windows\System32\DRIVERS\akshhl.sys [57088 2011-09-08] (SafeNet Inc.)
S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [21120 2011-08-09] (SafeNet Inc.)
R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32640 2009-12-04] (ArcSoft, Inc.)
R0 AVGIDSEH; C:\Windows\System32\DRIVERS\AVGIDSEH.Sys [26704 2011-02-22] (AVG Technologies CZ, s.r.o. )
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [312160 2012-11-12] (AVG Technologies CZ, s.r.o.)
R1 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [41552 2011-03-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [37456 2011-03-16] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [377936 2011-04-05] (AVG Technologies CZ, s.r.o.)
R2 hardlock; C:\windows\system32\drivers\hardlock.sys [321536 2011-10-07] (SafeNet Inc.)
R1 NetworkX; C:\Windows\system32\ckldrv.sys [28664 2008-03-17] ()
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [89216 2009-12-22] (Realtek Semiconductor Corp.)
S3 lmimirr; system32\DRIVERS\lmimirr.sys [X]
S3 MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 08:34 - 2014-07-11 08:36 - 00019991 _____ () C:\Users\ivana.novakova\Desktop\FRST.txt
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
2014-07-11 08:31 - 2014-07-11 08:34 - 00000000 ____D () C:\FRST
2014-07-11 08:30 - 2014-07-11 08:31 - 02084864 _____ (Farbar) C:\Users\ivana.novakova\Desktop\FRST64.exe
2014-07-10 15:15 - 2014-07-10 15:15 - 00000223 _____ () C:\Users\ivana.novakova\Desktop\Softline 82 - nabídka.txt
2014-07-10 09:22 - 2014-07-10 09:25 - 00000368 _____ () C:\windows\Tasks\HPCeeScheduleForivana.novakova.job
2014-07-10 09:22 - 2014-07-10 09:22 - 00003240 _____ () C:\windows\System32\Tasks\HPCeeScheduleForivana.novakova
2014-07-10 09:17 - 2014-07-10 09:17 - 00002185 _____ () C:\Users\Public\Desktop\HP Support Assistant.lnk
2014-07-10 09:17 - 2014-07-10 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-07-10 09:15 - 2014-07-10 09:15 - 00000000 ____D () C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
2014-07-10 09:10 - 2014-07-10 09:22 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\Hewlett-Packard
2014-07-10 08:40 - 2014-07-10 08:40 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-07-09 10:09 - 2014-07-09 10:09 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\gealan
2014-07-09 08:22 - 2014-07-10 09:25 - 00000902 _____ () C:\windows\setupact.log
2014-07-09 08:22 - 2014-07-10 09:25 - 00000248 _____ () C:\windows\error.log
2014-07-09 08:22 - 2014-07-10 09:24 - 00000056 _____ () C:\windows\errord.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000590 _____ () C:\windows\PFRO.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000000 _____ () C:\windows\setuperr.log
2014-07-08 13:56 - 2014-07-08 13:56 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-07 09:55 - 2014-07-07 09:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-07 09:45 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-07-04 09:25 - 2014-07-04 10:48 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\veverka
2014-07-03 08:35 - 2014-07-07 09:39 - 00000000 ____D () C:\Program Files\trend micro
2014-06-30 14:34 - 2014-07-07 13:02 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-20 09:01 - 2014-06-30 08:41 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Gealan - soubory
2014-06-20 08:20 - 2014-06-20 08:20 - 02931580 _____ () C:\Users\ivana.novakova\Downloads\Infiniti_Windows7.themepack
2014-06-20 08:18 - 2014-06-20 08:18 - 09098319 _____ () C:\Users\ivana.novakova\Downloads\Ducati2.themepack
2014-06-16 08:59 - 2014-06-16 08:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Adobe
2014-06-11 08:29 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-06-11 08:29 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-06-11 08:29 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-06-11 08:29 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-06-11 08:29 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-06-11 08:29 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-06-11 08:29 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-06-11 08:29 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-06-11 08:29 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-06-11 08:29 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-06-11 08:29 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-06-11 08:29 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-06-11 08:29 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-06-11 08:29 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-06-11 08:29 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-06-11 08:29 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2014-06-11 08:29 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2014-06-11 08:29 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2014-06-11 08:29 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2014-06-11 08:29 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2014-06-11 08:29 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-06-11 08:29 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2014-06-11 08:29 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-06-11 08:29 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2014-06-11 08:29 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2014-06-11 08:29 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2014-06-11 08:29 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2014-06-11 08:28 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-06-11 08:28 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-06-11 08:28 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-06-11 08:28 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-06-11 08:28 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-06-11 08:28 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-06-11 08:28 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-06-11 08:28 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-06-11 08:28 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-06-11 08:28 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-06-11 08:28 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-06-11 08:28 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-06-11 08:28 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-06-11 08:28 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-06-11 08:28 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-06-11 08:28 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-06-11 08:28 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-06-11 08:28 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-06-11 08:28 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-06-11 08:28 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-06-11 08:28 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-06-11 08:28 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-06-11 08:28 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-06-11 08:28 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-06-11 08:28 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-06-11 08:28 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-06-11 08:28 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-06-11 08:28 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-06-11 08:28 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-06-11 08:28 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-06-11 08:28 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-06-11 08:27 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-06-11 08:27 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
==================== One Month Modified Files and Folders =======
2014-07-11 08:36 - 2014-07-11 08:34 - 00019991 _____ () C:\Users\ivana.novakova\Desktop\FRST.txt
2014-07-11 08:35 - 2011-01-21 19:51 - 01646386 _____ () C:\windows\WindowsUpdate.log
2014-07-11 08:34 - 2014-07-11 08:31 - 00000000 ____D () C:\FRST
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
2014-07-11 08:33 - 2009-07-14 06:45 - 00020944 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 08:33 - 2009-07-14 06:45 - 00020944 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 08:31 - 2014-07-11 08:30 - 02084864 _____ (Farbar) C:\Users\ivana.novakova\Desktop\FRST64.exe
2014-07-11 08:25 - 2013-07-24 14:24 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-07-11 08:25 - 2011-11-20 19:39 - 00000968 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 08:25 - 2011-02-15 11:53 - 00000136 _____ () C:\windows\system32\config\netlogon.ftl
2014-07-10 15:15 - 2014-07-10 15:15 - 00000223 _____ () C:\Users\ivana.novakova\Desktop\Softline 82 - nabídka.txt
2014-07-10 14:09 - 2011-11-20 19:39 - 00000964 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-10 13:03 - 2014-04-16 13:22 - 00000144 _____ () C:\Users\ivana.novakova\Desktop\ukoly.txt
2014-07-10 10:06 - 2014-06-04 10:27 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\upravit do PP
2014-07-10 09:32 - 2010-12-06 01:42 - 00674178 _____ () C:\windows\system32\perfh005.dat
2014-07-10 09:32 - 2010-12-06 01:42 - 00143694 _____ () C:\windows\system32\perfc005.dat
2014-07-10 09:32 - 2009-07-14 07:13 - 01593150 _____ () C:\windows\system32\PerfStringBackup.INI
2014-07-10 09:25 - 2014-07-10 09:22 - 00000368 _____ () C:\windows\Tasks\HPCeeScheduleForivana.novakova.job
2014-07-10 09:25 - 2014-07-09 08:22 - 00000902 _____ () C:\windows\setupact.log
2014-07-10 09:25 - 2014-07-09 08:22 - 00000248 _____ () C:\windows\error.log
2014-07-10 09:25 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-07-10 09:24 - 2014-07-09 08:22 - 00000056 _____ () C:\windows\errord.log
2014-07-10 09:22 - 2014-07-10 09:22 - 00003240 _____ () C:\windows\System32\Tasks\HPCeeScheduleForivana.novakova
2014-07-10 09:22 - 2014-07-10 09:10 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\Hewlett-Packard
2014-07-10 09:22 - 2011-02-17 12:56 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Hewlett-Packard
2014-07-10 09:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\Help
2014-07-10 09:17 - 2014-07-10 09:17 - 00002185 _____ () C:\Users\Public\Desktop\HP Support Assistant.lnk
2014-07-10 09:17 - 2014-07-10 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-07-10 09:17 - 2010-12-06 01:25 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-10 09:16 - 2010-12-06 01:19 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-07-10 09:15 - 2014-07-10 09:15 - 00000000 ____D () C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
2014-07-10 09:15 - 2011-03-26 10:25 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\hpqlog
2014-07-10 09:14 - 2010-12-06 01:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-10 09:14 - 2009-07-27 18:14 - 00000000 ____D () C:\swsetup
2014-07-10 09:10 - 2010-12-06 01:36 - 00000000 ____D () C:\windows\System32\Tasks\Hewlett-Packard
2014-07-10 09:10 - 2010-12-06 01:29 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-07-10 08:40 - 2014-07-10 08:40 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-07-10 08:25 - 2011-02-10 18:52 - 00000000 ____D () C:\windows\system32\Drivers\AVG
2014-07-09 15:08 - 2011-02-17 13:26 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\CrashDumps
2014-07-09 14:46 - 2014-03-24 12:10 - 00000000 ____D () C:\ProgramData\AADServer
2014-07-09 13:39 - 2011-05-17 13:32 - 00001691 _____ () C:\Users\ivana.novakova\Desktop\Helios Orange.LNK
2014-07-09 10:45 - 2013-07-24 14:24 - 00699056 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-07-09 10:45 - 2013-07-24 14:24 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-07-09 10:45 - 2012-01-03 09:44 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-09 10:09 - 2014-07-09 10:09 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\gealan
2014-07-09 08:22 - 2014-07-09 08:22 - 00000590 _____ () C:\windows\PFRO.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000000 _____ () C:\windows\setuperr.log
2014-07-08 21:57 - 2014-02-10 16:33 - 00000000 ____D () C:\Users\ivana.novakova\Documents\Soubory aplikace Outlook
2014-07-08 21:49 - 2011-03-01 17:13 - 00000000 ____D () C:\tt
2014-07-08 21:46 - 2011-02-17 13:07 - 02010057 _____ () C:\Users\ivana.novakova\Documents\Studna splněných přání.wmv
2014-07-08 19:54 - 2014-04-29 14:49 - 00001102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-07-08 19:54 - 2014-02-24 11:35 - 00001090 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-07-08 13:56 - 2014-07-08 13:56 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-08 08:26 - 2011-02-11 02:04 - 00000000 ____D () C:\windows\rescache
2014-07-07 14:43 - 2010-12-06 01:24 - 00000000 ____D () C:\amd64
2014-07-07 13:02 - 2014-06-30 14:34 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-07-07 09:55 - 2014-07-07 09:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-07 09:48 - 2009-07-14 07:08 - 00032594 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-07-07 09:41 - 2011-02-10 17:08 - 00000000 ____D () C:\Users\uzivatel
2014-07-07 09:40 - 2014-03-24 12:11 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-07 09:40 - 2011-02-17 12:36 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\GHISLER
2014-07-07 09:40 - 2011-02-15 11:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-07 09:40 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\security
2014-07-07 09:39 - 2014-07-03 08:35 - 00000000 ____D () C:\Program Files\trend micro
2014-07-07 09:39 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files (x86)\PC Connectivity Solution
2014-07-07 09:39 - 2011-02-10 18:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2011
2014-07-07 09:39 - 2011-02-10 18:52 - 00000000 ____D () C:\ProgramData\AVG10
2014-07-07 09:38 - 2012-01-03 09:44 - 00000000 ____D () C:\windows\system32\Macromed
2014-07-07 09:38 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\registration
2014-07-07 09:37 - 2014-05-14 08:19 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-07-07 09:37 - 2012-05-29 08:25 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Recovery C
2014-07-07 09:37 - 2012-03-07 13:45 - 00000000 ____D () C:\Users\ivana.novakova\Downloads\Sentinel_LDK_Run-time_setup
2014-07-07 09:37 - 2011-10-27 17:36 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\GRETECH
2014-07-07 09:37 - 2011-02-17 13:06 - 00000000 ____D () C:\Users\ivana.novakova\Documents\DVOJSKLO
2014-07-07 09:37 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\AppCompat
2014-07-07 09:36 - 2014-03-05 18:03 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-07-07 09:36 - 2014-02-24 11:35 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-07-07 09:36 - 2013-12-30 14:44 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\Program Files (x86)\PDFCreator
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\Program Files (x86)\PDF Architect
2014-07-07 09:36 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files\DIFX
2014-07-07 09:36 - 2013-09-04 14:00 - 00000000 ____D () C:\ProgramData\Installations
2014-07-07 09:36 - 2012-05-28 08:41 - 00000000 ____D () C:\ProgramData\CrypKey
2014-07-07 09:36 - 2012-05-03 09:22 - 00000000 ____D () C:\Program Files\WinRAR
2014-07-07 09:36 - 2011-11-20 19:39 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Google
2014-07-07 09:36 - 2011-10-30 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-07-07 09:36 - 2011-10-30 21:17 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-07-07 09:35 - 2014-03-17 14:43 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-07 09:35 - 2013-12-30 14:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-07 09:35 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files (x86)\Nokia
2014-07-07 09:35 - 2012-03-07 13:16 - 00000000 ____D () C:\Program Files (x86)\Borland
2014-07-07 09:35 - 2012-03-07 13:16 - 00000000 ____D () C:\PPLAST3
2014-07-07 09:35 - 2012-03-07 11:38 - 00000000 ____D () C:\Program Files (x86)\Firebird
2014-07-07 09:35 - 2012-03-07 10:09 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-07-07 09:35 - 2011-11-20 19:39 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-07 09:35 - 2011-02-10 18:24 - 00000000 __RHD () C:\MSOCache
2014-07-07 09:28 - 2011-02-15 11:58 - 00000000 ____D () C:\Users\ivana.novakova
2014-07-07 09:28 - 2010-12-06 01:30 - 00000000 ____D () C:\ProgramData\PDFC
2014-07-04 10:48 - 2014-07-04 09:25 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\veverka
2014-07-03 13:01 - 2014-03-24 12:12 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\navod
2014-07-01 16:31 - 2012-03-07 11:29 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-07-01 16:31 - 2009-07-27 17:04 - 00000000 ____D () C:\windows\Panther
2014-07-01 09:08 - 2011-02-10 18:59 - 00003230 _____ () C:\windows\System32\Tasks\SidebarExecute
2014-07-01 09:07 - 2011-03-30 09:50 - 00000965 _____ () C:\Users\Public\Desktop\AVG 2011.lnk
2014-07-01 08:46 - 2011-02-10 18:51 - 00000000 ____D () C:\ProgramData\MFAData
2014-06-30 08:41 - 2014-06-20 09:01 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Gealan - soubory
2014-06-20 08:20 - 2014-06-20 08:20 - 02931580 _____ () C:\Users\ivana.novakova\Downloads\Infiniti_Windows7.themepack
2014-06-20 08:18 - 2014-06-20 08:18 - 09098319 _____ () C:\Users\ivana.novakova\Downloads\Ducati2.themepack
2014-06-17 14:04 - 2011-11-20 19:39 - 00003964 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-17 14:04 - 2011-11-20 19:39 - 00003712 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-16 08:59 - 2014-06-16 08:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Adobe
2014-06-13 11:26 - 2014-06-04 10:57 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\zaloha šablon (číselníky)
2014-06-12 08:35 - 2011-11-20 19:41 - 00002183 _____ () C:\Users\Public\Desktop\google chrome.lnk
2014-06-12 08:25 - 2013-12-30 14:28 - 00000000 ____D () C:\windows\system32\MRT
2014-06-12 08:22 - 2011-02-15 11:30 - 95414520 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-06-12 08:21 - 2011-02-10 18:24 - 00000000 ____D () C:\ProgramData\Microsoft Help
Some content of TEMP:
====================
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Internet Security Business Edition 2011 (Disabled - Up to date) {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
AS: AVG Internet Security Business Edition 2011 (Disabled - Up to date) {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\ivana.novakova\Desktop" je 8604 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by ivana.novakova (administrator) on NOVAKOVA-HP on 11-07-2014 08:34:52
Running from C:\Users\ivana.novakova\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgrsa.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Hewlett-Packard) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(CrypKey (Canada) Ltd.) C:\Windows\System32\Crypserv.exe
(SafeNet Inc.) C:\Windows\System32\hasplms.exe
(HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(ArcSoft, Inc.) C:\Windows\system\uArcCapture.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgtray.exe
(HP) C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [1691192 2010-06-19] (Hewlett-Packard Company)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-17] (IDT, Inc.)
HKLM\...\Run: [HP Color LaserJet CM2320 MFP Series Fax] => C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [3700736 2009-09-22] (Hewlett-Packard Company)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-03-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-04] (Intel Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [563736 2009-10-23] (PDF Complete Inc)
HKLM-x32\...\Run: [File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-08-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [DTRun] => c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [518656 2009-11-19] (ArcSoft Inc.)
HKLM-x32\...\Run: [AVG_TRAY] => C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2345592 2012-08-01] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [HPPQVideo] => C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [106496 2007-05-07] (Hewlett-Packard)
HKLM-x32\...\Run: [ToolBoxFX] => C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [53248 2009-10-22] (HP)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Firebird] => C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2723840 2008-06-13] (Firebird Project)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-06-17] (Hewlett-Packard Company)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * C:\PROGRA~2\AVG\AVG10\avgchsva.exe /syncC:\PROGRA~2\AVG\AVG10\avgrsa.exe /sync /restart
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll No File
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll No File
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM-x32 {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com//activex/ractrl.cab?lmi=1058
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: 192.168.1.143 NPIAD0BD8
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 127.0.0.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{1E73965B-8B48-48be-9C8D-68B920ABC1C4}] - C:\Program Files (x86)\AVG\AVG10\Firefox4
FF Extension: AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\Firefox4 [2011-03-30]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-09-04]
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://www.google.com/"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (AVG Internet Security) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Extension: (YouTube) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-17]
CHR Extension: (Vyhledávání Google) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-17]
CHR Extension: (Peněženka Google) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-17]
CHR Extension: (Gmail) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-17]
==================== Services (Whitelisted) =================
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AESTFilters; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avgwd; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [269520 2011-02-08] (AVG Technologies CZ, s.r.o.)
R2 Crypkey License; C:\windows\system32\crypserv.exe [122880 2008-05-08] (CrypKey (Canada) Ltd.) [File not signed]
R2 hasplms; C:\windows\system32\hasplms.exe [4913608 2011-12-02] (SafeNet Inc.)
R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136192 2009-06-01] (HP) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [90112 2010-05-10] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [264248 2010-03-01] (Hewlett-Packard Company)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-11-06] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [139264 2007-11-06] (Hewlett-Packard Co.) [File not signed]
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [File not signed]
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [635416 2009-10-23] (PDF Complete Inc)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [244736 2010-03-17] (IDT, Inc.)
R2 uArcCapture; C:\windows\system\uArcCapture.exe [506472 2009-12-04] (ArcSoft, Inc.)
==================== Drivers (Whitelisted) ====================
S3 akshhl; C:\Windows\System32\DRIVERS\akshhl.sys [57088 2011-09-08] (SafeNet Inc.)
S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [21120 2011-08-09] (SafeNet Inc.)
R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32640 2009-12-04] (ArcSoft, Inc.)
R0 AVGIDSEH; C:\Windows\System32\DRIVERS\AVGIDSEH.Sys [26704 2011-02-22] (AVG Technologies CZ, s.r.o. )
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [312160 2012-11-12] (AVG Technologies CZ, s.r.o.)
R1 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [41552 2011-03-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [37456 2011-03-16] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [377936 2011-04-05] (AVG Technologies CZ, s.r.o.)
R2 hardlock; C:\windows\system32\drivers\hardlock.sys [321536 2011-10-07] (SafeNet Inc.)
R1 NetworkX; C:\Windows\system32\ckldrv.sys [28664 2008-03-17] ()
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [89216 2009-12-22] (Realtek Semiconductor Corp.)
S3 lmimirr; system32\DRIVERS\lmimirr.sys [X]
S3 MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 08:34 - 2014-07-11 08:36 - 00019991 _____ () C:\Users\ivana.novakova\Desktop\FRST.txt
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
2014-07-11 08:31 - 2014-07-11 08:34 - 00000000 ____D () C:\FRST
2014-07-11 08:30 - 2014-07-11 08:31 - 02084864 _____ (Farbar) C:\Users\ivana.novakova\Desktop\FRST64.exe
2014-07-10 15:15 - 2014-07-10 15:15 - 00000223 _____ () C:\Users\ivana.novakova\Desktop\Softline 82 - nabídka.txt
2014-07-10 09:22 - 2014-07-10 09:25 - 00000368 _____ () C:\windows\Tasks\HPCeeScheduleForivana.novakova.job
2014-07-10 09:22 - 2014-07-10 09:22 - 00003240 _____ () C:\windows\System32\Tasks\HPCeeScheduleForivana.novakova
2014-07-10 09:17 - 2014-07-10 09:17 - 00002185 _____ () C:\Users\Public\Desktop\HP Support Assistant.lnk
2014-07-10 09:17 - 2014-07-10 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-07-10 09:15 - 2014-07-10 09:15 - 00000000 ____D () C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
2014-07-10 09:10 - 2014-07-10 09:22 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\Hewlett-Packard
2014-07-10 08:40 - 2014-07-10 08:40 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-07-09 10:09 - 2014-07-09 10:09 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\gealan
2014-07-09 08:22 - 2014-07-10 09:25 - 00000902 _____ () C:\windows\setupact.log
2014-07-09 08:22 - 2014-07-10 09:25 - 00000248 _____ () C:\windows\error.log
2014-07-09 08:22 - 2014-07-10 09:24 - 00000056 _____ () C:\windows\errord.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000590 _____ () C:\windows\PFRO.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000000 _____ () C:\windows\setuperr.log
2014-07-08 13:56 - 2014-07-08 13:56 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-07 09:55 - 2014-07-07 09:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-07 09:45 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-07-04 09:25 - 2014-07-04 10:48 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\veverka
2014-07-03 08:35 - 2014-07-07 09:39 - 00000000 ____D () C:\Program Files\trend micro
2014-06-30 14:34 - 2014-07-07 13:02 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-20 09:01 - 2014-06-30 08:41 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Gealan - soubory
2014-06-20 08:20 - 2014-06-20 08:20 - 02931580 _____ () C:\Users\ivana.novakova\Downloads\Infiniti_Windows7.themepack
2014-06-20 08:18 - 2014-06-20 08:18 - 09098319 _____ () C:\Users\ivana.novakova\Downloads\Ducati2.themepack
2014-06-16 08:59 - 2014-06-16 08:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Adobe
2014-06-11 08:29 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-06-11 08:29 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-06-11 08:29 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-06-11 08:29 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-06-11 08:29 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-06-11 08:29 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-06-11 08:29 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-06-11 08:29 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-06-11 08:29 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-06-11 08:29 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-06-11 08:29 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-06-11 08:29 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-06-11 08:29 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-06-11 08:29 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-06-11 08:29 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-06-11 08:29 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2014-06-11 08:29 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2014-06-11 08:29 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2014-06-11 08:29 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2014-06-11 08:29 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2014-06-11 08:29 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-06-11 08:29 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2014-06-11 08:29 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-06-11 08:29 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2014-06-11 08:29 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2014-06-11 08:29 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2014-06-11 08:29 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2014-06-11 08:28 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-06-11 08:28 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-06-11 08:28 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-06-11 08:28 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-06-11 08:28 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-06-11 08:28 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-06-11 08:28 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-06-11 08:28 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-06-11 08:28 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-06-11 08:28 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-06-11 08:28 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-06-11 08:28 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-06-11 08:28 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-06-11 08:28 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-06-11 08:28 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-06-11 08:28 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-06-11 08:28 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-06-11 08:28 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-06-11 08:28 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-06-11 08:28 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-06-11 08:28 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-06-11 08:28 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-06-11 08:28 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-06-11 08:28 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-06-11 08:28 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-06-11 08:28 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-06-11 08:28 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-06-11 08:28 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-06-11 08:28 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-06-11 08:28 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-06-11 08:28 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-06-11 08:27 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-06-11 08:27 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
==================== One Month Modified Files and Folders =======
2014-07-11 08:36 - 2014-07-11 08:34 - 00019991 _____ () C:\Users\ivana.novakova\Desktop\FRST.txt
2014-07-11 08:35 - 2011-01-21 19:51 - 01646386 _____ () C:\windows\WindowsUpdate.log
2014-07-11 08:34 - 2014-07-11 08:31 - 00000000 ____D () C:\FRST
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
2014-07-11 08:33 - 2009-07-14 06:45 - 00020944 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 08:33 - 2009-07-14 06:45 - 00020944 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 08:31 - 2014-07-11 08:30 - 02084864 _____ (Farbar) C:\Users\ivana.novakova\Desktop\FRST64.exe
2014-07-11 08:25 - 2013-07-24 14:24 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-07-11 08:25 - 2011-11-20 19:39 - 00000968 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 08:25 - 2011-02-15 11:53 - 00000136 _____ () C:\windows\system32\config\netlogon.ftl
2014-07-10 15:15 - 2014-07-10 15:15 - 00000223 _____ () C:\Users\ivana.novakova\Desktop\Softline 82 - nabídka.txt
2014-07-10 14:09 - 2011-11-20 19:39 - 00000964 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-10 13:03 - 2014-04-16 13:22 - 00000144 _____ () C:\Users\ivana.novakova\Desktop\ukoly.txt
2014-07-10 10:06 - 2014-06-04 10:27 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\upravit do PP
2014-07-10 09:32 - 2010-12-06 01:42 - 00674178 _____ () C:\windows\system32\perfh005.dat
2014-07-10 09:32 - 2010-12-06 01:42 - 00143694 _____ () C:\windows\system32\perfc005.dat
2014-07-10 09:32 - 2009-07-14 07:13 - 01593150 _____ () C:\windows\system32\PerfStringBackup.INI
2014-07-10 09:25 - 2014-07-10 09:22 - 00000368 _____ () C:\windows\Tasks\HPCeeScheduleForivana.novakova.job
2014-07-10 09:25 - 2014-07-09 08:22 - 00000902 _____ () C:\windows\setupact.log
2014-07-10 09:25 - 2014-07-09 08:22 - 00000248 _____ () C:\windows\error.log
2014-07-10 09:25 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-07-10 09:24 - 2014-07-09 08:22 - 00000056 _____ () C:\windows\errord.log
2014-07-10 09:22 - 2014-07-10 09:22 - 00003240 _____ () C:\windows\System32\Tasks\HPCeeScheduleForivana.novakova
2014-07-10 09:22 - 2014-07-10 09:10 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\Hewlett-Packard
2014-07-10 09:22 - 2011-02-17 12:56 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Hewlett-Packard
2014-07-10 09:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\Help
2014-07-10 09:17 - 2014-07-10 09:17 - 00002185 _____ () C:\Users\Public\Desktop\HP Support Assistant.lnk
2014-07-10 09:17 - 2014-07-10 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-07-10 09:17 - 2010-12-06 01:25 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-10 09:16 - 2010-12-06 01:19 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-07-10 09:15 - 2014-07-10 09:15 - 00000000 ____D () C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
2014-07-10 09:15 - 2011-03-26 10:25 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\hpqlog
2014-07-10 09:14 - 2010-12-06 01:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-10 09:14 - 2009-07-27 18:14 - 00000000 ____D () C:\swsetup
2014-07-10 09:10 - 2010-12-06 01:36 - 00000000 ____D () C:\windows\System32\Tasks\Hewlett-Packard
2014-07-10 09:10 - 2010-12-06 01:29 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-07-10 08:40 - 2014-07-10 08:40 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-07-10 08:25 - 2011-02-10 18:52 - 00000000 ____D () C:\windows\system32\Drivers\AVG
2014-07-09 15:08 - 2011-02-17 13:26 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\CrashDumps
2014-07-09 14:46 - 2014-03-24 12:10 - 00000000 ____D () C:\ProgramData\AADServer
2014-07-09 13:39 - 2011-05-17 13:32 - 00001691 _____ () C:\Users\ivana.novakova\Desktop\Helios Orange.LNK
2014-07-09 10:45 - 2013-07-24 14:24 - 00699056 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-07-09 10:45 - 2013-07-24 14:24 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-07-09 10:45 - 2012-01-03 09:44 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-09 10:09 - 2014-07-09 10:09 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\gealan
2014-07-09 08:22 - 2014-07-09 08:22 - 00000590 _____ () C:\windows\PFRO.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000000 _____ () C:\windows\setuperr.log
2014-07-08 21:57 - 2014-02-10 16:33 - 00000000 ____D () C:\Users\ivana.novakova\Documents\Soubory aplikace Outlook
2014-07-08 21:49 - 2011-03-01 17:13 - 00000000 ____D () C:\tt
2014-07-08 21:46 - 2011-02-17 13:07 - 02010057 _____ () C:\Users\ivana.novakova\Documents\Studna splněných přání.wmv
2014-07-08 19:54 - 2014-04-29 14:49 - 00001102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-07-08 19:54 - 2014-02-24 11:35 - 00001090 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-07-08 13:56 - 2014-07-08 13:56 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-08 08:26 - 2011-02-11 02:04 - 00000000 ____D () C:\windows\rescache
2014-07-07 14:43 - 2010-12-06 01:24 - 00000000 ____D () C:\amd64
2014-07-07 13:02 - 2014-06-30 14:34 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-07-07 09:55 - 2014-07-07 09:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-07 09:48 - 2009-07-14 07:08 - 00032594 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-07-07 09:41 - 2011-02-10 17:08 - 00000000 ____D () C:\Users\uzivatel
2014-07-07 09:40 - 2014-03-24 12:11 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-07 09:40 - 2011-02-17 12:36 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\GHISLER
2014-07-07 09:40 - 2011-02-15 11:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-07 09:40 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\security
2014-07-07 09:39 - 2014-07-03 08:35 - 00000000 ____D () C:\Program Files\trend micro
2014-07-07 09:39 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files (x86)\PC Connectivity Solution
2014-07-07 09:39 - 2011-02-10 18:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2011
2014-07-07 09:39 - 2011-02-10 18:52 - 00000000 ____D () C:\ProgramData\AVG10
2014-07-07 09:38 - 2012-01-03 09:44 - 00000000 ____D () C:\windows\system32\Macromed
2014-07-07 09:38 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\registration
2014-07-07 09:37 - 2014-05-14 08:19 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-07-07 09:37 - 2012-05-29 08:25 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Recovery C
2014-07-07 09:37 - 2012-03-07 13:45 - 00000000 ____D () C:\Users\ivana.novakova\Downloads\Sentinel_LDK_Run-time_setup
2014-07-07 09:37 - 2011-10-27 17:36 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\GRETECH
2014-07-07 09:37 - 2011-02-17 13:06 - 00000000 ____D () C:\Users\ivana.novakova\Documents\DVOJSKLO
2014-07-07 09:37 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\AppCompat
2014-07-07 09:36 - 2014-03-05 18:03 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-07-07 09:36 - 2014-02-24 11:35 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-07-07 09:36 - 2013-12-30 14:44 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\Program Files (x86)\PDFCreator
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\Program Files (x86)\PDF Architect
2014-07-07 09:36 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files\DIFX
2014-07-07 09:36 - 2013-09-04 14:00 - 00000000 ____D () C:\ProgramData\Installations
2014-07-07 09:36 - 2012-05-28 08:41 - 00000000 ____D () C:\ProgramData\CrypKey
2014-07-07 09:36 - 2012-05-03 09:22 - 00000000 ____D () C:\Program Files\WinRAR
2014-07-07 09:36 - 2011-11-20 19:39 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Google
2014-07-07 09:36 - 2011-10-30 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-07-07 09:36 - 2011-10-30 21:17 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-07-07 09:35 - 2014-03-17 14:43 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-07 09:35 - 2013-12-30 14:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-07 09:35 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files (x86)\Nokia
2014-07-07 09:35 - 2012-03-07 13:16 - 00000000 ____D () C:\Program Files (x86)\Borland
2014-07-07 09:35 - 2012-03-07 13:16 - 00000000 ____D () C:\PPLAST3
2014-07-07 09:35 - 2012-03-07 11:38 - 00000000 ____D () C:\Program Files (x86)\Firebird
2014-07-07 09:35 - 2012-03-07 10:09 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-07-07 09:35 - 2011-11-20 19:39 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-07 09:35 - 2011-02-10 18:24 - 00000000 __RHD () C:\MSOCache
2014-07-07 09:28 - 2011-02-15 11:58 - 00000000 ____D () C:\Users\ivana.novakova
2014-07-07 09:28 - 2010-12-06 01:30 - 00000000 ____D () C:\ProgramData\PDFC
2014-07-04 10:48 - 2014-07-04 09:25 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\veverka
2014-07-03 13:01 - 2014-03-24 12:12 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\navod
2014-07-01 16:31 - 2012-03-07 11:29 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-07-01 16:31 - 2009-07-27 17:04 - 00000000 ____D () C:\windows\Panther
2014-07-01 09:08 - 2011-02-10 18:59 - 00003230 _____ () C:\windows\System32\Tasks\SidebarExecute
2014-07-01 09:07 - 2011-03-30 09:50 - 00000965 _____ () C:\Users\Public\Desktop\AVG 2011.lnk
2014-07-01 08:46 - 2011-02-10 18:51 - 00000000 ____D () C:\ProgramData\MFAData
2014-06-30 08:41 - 2014-06-20 09:01 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Gealan - soubory
2014-06-20 08:20 - 2014-06-20 08:20 - 02931580 _____ () C:\Users\ivana.novakova\Downloads\Infiniti_Windows7.themepack
2014-06-20 08:18 - 2014-06-20 08:18 - 09098319 _____ () C:\Users\ivana.novakova\Downloads\Ducati2.themepack
2014-06-17 14:04 - 2011-11-20 19:39 - 00003964 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-17 14:04 - 2011-11-20 19:39 - 00003712 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-16 08:59 - 2014-06-16 08:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Adobe
2014-06-13 11:26 - 2014-06-04 10:57 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\zaloha šablon (číselníky)
2014-06-12 08:35 - 2011-11-20 19:41 - 00002183 _____ () C:\Users\Public\Desktop\google chrome.lnk
2014-06-12 08:25 - 2013-12-30 14:28 - 00000000 ____D () C:\windows\system32\MRT
2014-06-12 08:22 - 2011-02-15 11:30 - 95414520 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-06-12 08:21 - 2011-02-10 18:24 - 00000000 ____D () C:\ProgramData\Microsoft Help
Some content of TEMP:
====================
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Internet Security Business Edition 2011 (Disabled - Up to date) {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
AS: AVG Internet Security Business Edition 2011 (Disabled - Up to date) {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\ivana.novakova\Desktop" je 8604 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (7 KiB) Staženo 41 x
Re: Prosím o kontrolu - zamrzá internet
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia) SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL = 2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Hosts: Reboot: End- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST
- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
Re: Prosím o kontrolu - zamrzá internet
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-07-2014
Ran by ivana.novakova at 2014-07-14 09:30:13 Run:1
Running from C:\Users\ivana.novakova\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL =
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Hosts:
Reboot:
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\Software\Microsoft\Windows\CurrentVersion\Run\\PC Suite Tray => value deleted successfully.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe" => File/Directory not found.
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe => Moved successfully.
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe => Moved successfully.
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====
Ran by ivana.novakova at 2014-07-14 09:30:13 Run:1
Running from C:\Users\ivana.novakova\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL =
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Hosts:
Reboot:
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\Software\Microsoft\Windows\CurrentVersion\Run\\PC Suite Tray => value deleted successfully.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe" => File/Directory not found.
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe => Moved successfully.
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe => Moved successfully.
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====
Re: Prosím o kontrolu - zamrzá internet
Tak jeste uklidime
T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC
- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte
Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy
Re: Prosím o kontrolu - zamrzá internet
Projeto všemi programy. Našel jste tam nějaký problém? Má smysl stáhnout si tyto utility z vašeho posledního příspěvku (nebo nějaké jiné?) a pravidelně s nimi projíždět počítač? Ccleaner jsem si už nechal.
Jinak mnohokrát děkuji za pomoc.
Jinak mnohokrát děkuji za pomoc.



Přispějete na provoz fóra?